background image

Index 

Numerics 

802.1p priority (QoS) 

definition … 6-6 

802.1Q VLAN standard … 5-7 
802.1w as a region … 5-54 

active path … 5-5 
address 

IP … 7-8 

advertisement … 3-3 
applicable products … 1-ii 
ARP 

age setting … 7-10 
cache … 7-4 
cache table … 7-4 
configuring parameters … 7-8 
how it works … 7-8 
proxy … 7-12 

assigning 

IP address … 7-8 

auto port setting … 4-5 

bandwidth 

effect of QoS … 6-1 

bandwidth loss, spanning tree … 5-51 
blocked link from STP operation … 5-10, 5-52 
blocked port 

from IGMP operation … 4-5 
from STP operation … 5-9, 5-50 

Bootp 

gateway ignored … 2-8 

BPDU … 3-3, 5-7 
bridge protocol data unit 

See 

BPDU. 

broadcast domain … 2-4 
broadcast storm … 5-5, 5-11 
broadcast traffic 

enabling forwarding of directed … 7-13 

caches 

ARP … 7-4 
IP forwarding … 7-5 

CIDR … 7-8 
CLI 

configuring RSTP … 5-14 

configuration … 5-9, 5-50, 7-19 

ARP parameters … 7-8 
Class of Service … 6-13 
default route … 7-18 
DHCP Relay … 7-26 
factory default … 2-15, 2-21, 5-9, 5-49 
ICMP … 7-14 
IP routing forwarding parameters … 7-13 
IP routing parameters … 7-8 
IRDP … 7-22 
RSTP 

from the CLI … 5-14 
from the menu … 5-20 
per-port parameters … 5-18 
whole switch parameters … 5-16 

spanning tree protocol … 5-9, 5-50 
static IP routes … 7-16, 7-18 
VLAN … 2-4 

configuring RSTP … 5-13 
copyright … 1-ii 
CoS 

See

 Class of Service. 

data-driven IGMP … 4-15 
dedicated management VLAN … 2-7 
default route … 7-18 
DHCP 

gateway ignored … 2-8 
Option 82 … 7-28 

DHCP Relay 

configuration … 7-26 
enabling … 7-27 
helper address … 7-27 
minimum requirements … 7-27 

Index – 1 

Summary of Contents for 2610

Page 1: ...Advanced Traffic Management Guide 2610 2610 PWR ProCurve Switches R 11 XX www procurve com ...

Page 2: ......

Page 3: ...ProCurve Switch 2610 Series Switch 2610 PWR Series December 2007 Advanced Traffic Management Guide ...

Page 4: ...erein or for incidental or consequential damages in connection with the furnishing performance or use of this material The only warranties for HP products and services are set forth in the express warranty statements accompanying such products and services Nothing herein should be construed as constituting an additional warranty HP shall not be liable for technical or editorial errors or omissions...

Page 5: ...ty Examples 1 4 Sources for More Information 1 4 Need Only a Quick Start 1 5 IP Addressing 1 5 To Set Up and Install the Switch in Your Network 1 6 2 Static Virtual LANs VLANs Contents 2 1 Overview 2 3 Port Based Virtual LANs Static VLANs 2 4 Overview of Using VLANs 2 7 VLAN Support and the Default VLAN 2 7 The Primary VLAN 2 7 Per Port Static VLAN Configuration Options 2 9 General Steps for Using...

Page 6: ...llowed on the Switch 2 26 Changing the Primary VLAN 2 26 Creating a New Static VLAN Changing the VLAN Context Level 2 26 Converting a Dynamic VLAN to a Static VLAN 2 27 Configuring Static VLAN Name and Per Port Settings 2 28 Web Viewing and Configuring VLAN Parameters 2 29 802 1Q VLAN Tagging 2 30 The Secure Management VLAN 2 34 Preparation 2 36 Configuration 2 37 Operating Notes for Management VL...

Page 7: ... IGMP Features 4 3 IGMP Terms 4 4 IGMP Operating Features 4 5 Basic Operation 4 5 Enhancements 4 5 CLI Configuring and Displaying IGMP 4 6 Web Enabling or Disabling IGMP 4 11 How IGMP Operates 4 11 Message Types 4 11 IGMP Operating Notes 4 12 Displaying IGMP Data 4 12 Supported Standards and RFCs 4 13 Operation With or Without IP Addressing 4 13 Automatic Fast Leave IGMP 4 14 Using Delayed Group F...

Page 8: ...Configuring RSTP 5 13 Optimizing the RSTP Configuration 5 13 CLI Configuring RSTP 5 14 Menu Configuring RSTP 5 20 Web Enabling or Disabling RSTP 5 22 802 1D Spanning Tree Protocol STP 5 23 Menu Configuring 802 1D STP 5 23 CLI Configuring 802 1D STP 5 26 STP Fast Mode 5 30 Fast Uplink Spanning Tree Protocol STP 5 31 Terminology 5 33 Operating Rules for Fast Uplink 5 34 Menu Viewing and Configuring ...

Page 9: ...nfiguring MST Instance Per Port Parameters 5 69 Enabling or Disabling Spanning Tree Operation 5 72 Enabling an Entire MST Region at Once or Exchanging One Region Configuration for Another 5 72 Displaying MSTP Statistics and Configuration 5 74 Displaying MSTP Statistics 5 74 Displaying the MSTP Configuration 5 77 Operating Notes 5 81 Troubleshooting 5 81 6 Quality of Service QoS Managing Bandwidth ...

Page 10: ... UDP Port Number 6 24 QoS IP Device Priority 6 28 Assigning a Priority Based on IP Address 6 29 Assigning a DSCP Policy Based on IP Address 6 30 QoS IP Type of Service ToS Policy and Priority 6 34 of the ToS Precedence Bits 6 35 of Incoming DSCP 6 36 in IPv4 Packets Received from Upstream Devices 6 40 Details of QoS IP Type of Service 6 43 QoS VLAN ID VID Priority 6 46 Assigning a Priority Based o...

Page 11: ...od 7 10 Enabling Proxy ARP 7 12 Configuring Forwarding Parameters 7 13 Enabling Forwarding of Directed Broadcasts 7 13 Configuring ICMP 7 14 Disabling ICMP Messages 7 14 Disabling Replies to Broadcast Ping Requests 7 15 Disabling ICMP Destination Unreachable Messages 7 15 Disabling ICMP Redirects 7 16 Configuring Static IP Routes 7 16 Static Route Types 7 17 Static IP Route Parameters 7 17 Static ...

Page 12: ...Response Packets 7 36 Multinetted VLANs 7 38 Configuring Option 82 Operation on the Routing Switch 7 38 Operating Notes 7 40 UDP Broadcast Forwarding 7 42 Overview 7 42 Subnet Masking for UDP Forwarding Addresses 7 43 Configuring and Enabling UDP Broadcast Forwarding 7 44 Globally Enabling UDP Broadcast Forwarding 7 44 Configuring UDP Broadcast Forwarding on Individual VLANs 7 44 Displaying the Cu...

Page 13: ...Manage a Candidate Switch 8 15 Using the Commander To Manage The Stack 8 18 Configuration Changes and Monitoring Traffic 8 24 Another Stack 8 25 Monitoring Stack Status 8 26 Using the CLI To View Stack Status and Configure Stacking 8 30 Using the CLI To View Stack Status 8 32 Using the CLI To Configure a Commander Switch 8 34 Adding to a Stack or Moving Switches Between Stacks 8 36 Using the CLI T...

Page 14: ...xii ...

Page 15: ...ion and Getting Started Guide Explains how to prepare for and perform the physical installation and connect the switch to your network Electronic Publications The latest version of each of the publications listed below is available in PDF format on the ProCurve Web site as described in the Note at the top of this page Management and Configuration Guide Describes how to configure manage and monitor...

Page 16: ...n all switch models Feature Management and Configuration AdvancedTraffic Management Access Security Guide 802 1Q VLAN Tagging X 802 1X Port Based Priority X ACLs X AAA Authentication X Authorized IP Managers X Auto MDIX Configuration X BootP X Config File X Console Access X Copy Command X Debug X DHCP Configuration X DHCP Bootp Operation X DHCP Option 82 X Diagnostic Tools X Downloading Software X...

Page 17: ...ole Serial Web X Jumbo Packets X IP Addressing X IP Routing X LACP X Link X LLDP X LLDP MED X MAC Address Management X MAC Lockdown X MAC Lockout X MAC based Authentication X Monitoring and Analysis X Multicast Filtering X Multiple Configuration Files X Network Management Applications LLDP SNMP X Passwords X Ping X Port Configuration X Port Security X Port Status X Port Trunking LACP X xv ...

Page 18: ...entication and Accounting X Routing X Secure Copy X sFlow X SFTP X SNMP X Software Downloads SCP SFTP TFTP Xmodem X Source Port Filters X Spanning Tree STP RSTP MSTP X SSH Secure Shell Encryption X SSL Secure Socket Layer X Stack Management Stacking X Syslog X System Information X TACACS Authentication X Telnet Access X TFTP X Time Protocols TimeP SNTP X Traffic Security Filters X Troubleshooting ...

Page 19: ...Product Documentation Feature Management and Configuration AdvancedTraffic Management Access Security Guide VLANs X Web based Authentication X Xmodem X xvii ...

Page 20: ...Product Documentation xviii ...

Page 21: ... 2 Feature Descriptions by Model 1 2 Command Syntax Statements 1 2 Command Prompts 1 3 Screen Simulations 1 3 Port Identity Examples 1 4 Sources for More Information 1 4 Need Only a Quick Start 1 5 IP Addressing 1 5 To Set Up and Install the Switch in Your Network 1 6 1 1 ...

Page 22: ...uses the following conventions for command syntax and displayed information Feature Descriptions by Model In cases where a software feature is not available in all of the switch models coveredbythisguide thesectionheadingspecificallyindicateswhichproduct or product series offer the feature For example the switch model is highlighted here in bold italics Jumbo Packet Support on the Series 2610 Swit...

Page 23: ...s In the default configuration your switch displays a prompt as shown below ProCurve Switch 2610 To simplify recognition this guide uses ProCurve to represent command prompts for all models For example ProCurve You can use the hostname command to change the text in the CLI prompt Screen Simulations Figures containing simulated screen text and command output look like this ProCurve show version Ima...

Page 24: ... For additional information about switch operation and features not covered in this guide consult the following sources For information on which product manual to consult on a given software feature refer to Product Documentation on page xiii Note For the latest version of all ProCurve switch documentation including release notes covering recently added features visit the ProCurve Networking websi...

Page 25: ...itch technology visit the ProCurve website at www procurve com Need Only a Quick Start IP Addressing If you just want to give the switch an IP address so that it can communicate on your network or if you are not using multiple VLANs ProCurve recommends that you use the Switch Setup screen to quickly configure IP addressing To do so do one of the following Enter setup at the CLI Manager level promp...

Page 26: ...ch and its related modules Instructions for physically installing the switch in your network Quickly assigning an IP address and subnet mask setting a Manager password and optionally configuring other basic features Interpreting LED behavior For the latest version of the Installation and Getting Started Guide and other documentation for your switch visit the ProCurve website Refer to Product Docum...

Page 27: ...AN Support Settings 2 15 Adding or Editing VLAN Names 2 18 Adding or Changing a VLAN Port Assignment 2 19 CLI Configuring VLAN Parameters 2 21 Displaying the Switch s VLAN Configuration 2 22 Displaying the Configuration for a Particular VLAN 2 23 Showing Port Details for VLANs 2 24 Changing the Number of VLANs Allowed on the Switch 2 26 Changing the Primary VLAN 2 26 Creating a New Static VLAN Cha...

Page 28: ...Contents Effect of VLANs on Other Switch Features 2 38 Spanning Tree Operation with VLANs 2 38 IP Interfaces 2 39 VLAN MAC Addresses 2 39 Port Trunks 2 40 Port Monitoring 2 40 VLAN Restrictions 2 40 Jumbo Packet Support 2 40 2 2 ...

Page 29: ...d by this manual For general information on how to use the switch s built in interfaces refer to these chapters in the Management and Configuration Guide for your switch Chapter 3 Using the Menu Interface Chapter 4 Using the Command Line Interface CLI Chapter 5 Using the Web Browser Interface Chapter 6 Switch Memory and Configuration 2 3 ...

Page 30: ...LAN ID VID and port assignments For information on dynamic VLANs see chapter 3 GVRP Using a VLAN you can group users by logical function instead of physical location This helps to control bandwidth usage by allowing you to group high bandwidth users on low traffic segments and to organize users from different LAN segments according to their need for common resources By default 802 1Q VLAN support ...

Page 31: ...ng to VLAN_2 traffic from end node stations on ports A2 through A4 is restricted to only VLAN_1 while traffic from ports A5 through A7 is restricted to only VLAN_2 For nodes on VLAN_1 to communi cate with VLAN_2 their traffic must go through an external router via ports A1 and A8 Switch with Two VLANs Configured Port A2 Port A3 Port A4 VLAN_1 Port A1 External Router Port A5 Port A8 Port A6 Port A7...

Page 32: ...Ns Through the Same Link Introducing Tagged VLAN Technology into Networks Running Legacy Untagged VLANs You can introduce 802 1Q compliant devices into net works that have built untagged VLANs based on earlier VLAN technology The fundamental rule is that legacy untagged VLANs require a separate link for each VLAN while 802 1Q or tagged VLANs can combine several VLANs in one link This means that on...

Page 33: ...default configuration all ports on the switch belong to the default VLAN named DEFAULT_VLAN This places all ports in the switch into one physical broadcast domain In the factory default state the default VLAN is the primary VLAN You can partition the switch into multiple virtual broadcast domains by adding one or more additional VLANs and moving ports from the default VLAN to the new VLANs You can...

Page 34: ... resolved parameters as the TimeP server address Default TTL and IP addressing including the Gateway IP address when the switch configuration specifies DHCP as the source for these values The default VLAN continues to operate as a standard VLAN except as noted above you cannot delete it or change its VID Any ports not specifically assigned to another VLAN will remain assigned to the Default VLAN r...

Page 35: ...default with GVRP Enabled Figure 2 5 Comparing Per Port VLAN Options With and Without GVRP Table 2 2 Per Port VLAN Configuration Options Parameter Effect on Port Participation in Designated VLAN Tagged Allows the port to join multiple VLANs Untagged Allows VLAN connection to a device that is configured for an untagged VLAN instead of a tagged VLAN The switch allows no more than one untagged VLAN a...

Page 36: ...CP Bootp to acquire the switch s configuration packet time to live and TimeP information you must designate the VLAN on which DHCP is configured for this purpose as the primary VLAN In the factory default configuration the DEFAULT_VLAN is the primary VLAN IGMP and some other features operate on a per VLAN basis This means you must configure such features separately for each VLAN in which you want ...

Page 37: ...AN ID Destination Port 0004ea 84d9f4 1 A5 0004ea 84d9f4 100 A9 0004ea 84d9f4 22 A12 0060b0 880af9 105 A10 0004ea 84d9f4 44 A20 0060b0 880a81 107 A17 0060b0 880a81 33 A20 This database allows multiple destinations This database allows only one destination for the same MAC address If the switch for a MAC address If the switch detects a detects a new destination for an existing new destination for an...

Page 38: ...rding database refer to table 2 7 above because the switch allows multiple instances of a given MAC address one for each valid destination However a switch with a single forwarding database allows only one instance of a given MAC address If 1 you connect the two types of switches through multiple ports or trunks belonging to different VLANs and 2 enable routing on the switch having the multiple fo...

Page 39: ...t on to PC B Because the 8000M received the packet from the multiple forwarding database switch on VLAN 2 port B1 the 8000M s single forwarding database records the multiple forwarding database switch as being on port B1 VLAN 2 2 PC A now sends a second packet to PC B The packet again enters VLAN 1 in the Switch 8000 with the multiple forwarding database switch s MAC address in the destination fie...

Page 40: ...abase switch To increase the network bandwidth of the connection between the devices you can use a trunk of multiple physical links rather than a single physical link Multiple Forwarding Database Operation If you want to connect a switch covered by this guide to another switch that hasa multiple forwarding database you canuse eitherorbothofthe following connection options A separate port or port t...

Page 41: ... VLAN DEFAULT_VLAN and are in the same broadcast multicast domain The default VLAN is also the default primary VLAN see The Primary VLAN on page 2 7 In addition to the default VLAN you can configure up to 29 other static VLANs by changing the Maximum VLANs parameter adding new VLAN names and VIDs and then assigning one or more ports to each VLAN Note that each port can be assigned to multiple VLAN...

Page 42: ...ting options To enable or disable dynamic VLANs select the GVRP Enabled field and use the Space bar to toggle between options For GVRP information see chapter 3 GVRP Not e For optimal switch memory utilization set the number of VLANs at the number you will likely be using or a few more If you need more VLANs later you can increase this number but a switch reboot will be required at that time 3 Pre...

Page 43: ... change can take effect You can go on to configure other VLAN parameters first but remem ber to reboot the switch when you are finished If you did not change the VLAN Support option a reboot is not necessary 4 Press 0 to return to the Main Menu Adding or Editing VLAN Names Use this procedure to add a new VLAN or to edit the name of an existing VLAN 1 From the Main Menu select 2 Switch Configuratio...

Page 44: ...another VLAN The switch reserves 1 for the default VLAN Remember that a VLAN must have the same VID in every switch in which you configure that same VLAN GVRP dynamically extends VLANs with correct VID numbering to other switches See chapter 3 GVRP 4 Press v to move the cursor to the Name line and type the VLAN name up to 12 characters with no spaces of a new VLAN that you want to add then press E...

Page 45: ...ncludes any VLANs added dynamically due to GVRP operation 7 Return to the VLAN Menu to assign ports to the new VLAN s as described in the next section Adding or Changing a VLAN Port Assignment Adding or Changing a VLAN Port Assignment Use this procedure to add ports to a VLAN or to change the VLAN assign ment s for any port Ports not specifically assigned to a VLAN are automat ically in the defaul...

Page 46: ...bar to make your assignment selection No Tagged Untagged or Forbid Not e For GVRP Operation If you enable GVRP on the switch No converts to Auto which allows the VLAN to dynamically join an advertised VLAN that has the same VID See Per Port Options for Dynamic VLAN Advertising and Joining on page 3 8 Untagged VLANs OnlyoneuntaggedVLANisallowedperport Also there must be at least one VLAN assigned t...

Page 47: ...ade and to return to the Configuration menu The console then returns to the VLAN menu 3 Return to the Main menu CLI Configuring VLAN Parameters In the factory default state all ports on the switch belong to the default VLAN DEFAULT_VLAN and are in the same broadcast multicast domain The default VLAN is also the default primary VLAN see The Primary VLAN on page 2 7 You can configure additional stat...

Page 48: ...vlan vlan id page 2 27 Available if GVRP enabled Displaying the Switch s VLAN Configuration The next command lists the VLANs currently running in the switch with VID VLAN name and VLAN status Dynamic VLANs appear only if the switch is running with GVRP enabled and one or more ports has dynamically joined an advertisedVLAN Inthedefaultconfiguration GVRPisdisabled See chapter 3 GVRP Syntax show vlan...

Page 49: ...o identify and display the data for a specific static or dynamic VLAN Syntax show vlan vlan id Figure 2 18 Example of Show VLAN for a Specific Static VLAN Show VLAN lists this data when GVRP is enabled and at least oneportontheswitch has dynamically joined the designated VLAN Figure 2 19 Example of Show VLAN for a Specific Dynamic VLAN 2 23 ...

Page 50: ...is Descriptions of items displayed by the command are provided below Portname The user specified port name if one has been assigned VLAN ID The VLAN identification number or VID Name The default or specified name assigned to the VLAN For a static VLAN the default name consists of VLAN x where x matches the VID assigned to that VLAN For a dynamic VLAN the name consists of GVRP_x where x matches the...

Page 51: ...Dynamic No No ProCurve Figure 2 20 Example of Show VLAN Ports Cumulative Listing ProCurve config show vlan ports a1 a4 detail Status and Counters VLAN Information for ports A1 Port name Voice_Port VLAN ID Name Status Voice Jumbo Mode 1 DEFAULT_VLAN Port based No No Untagged 10 VLAN_10 Port based Yes No Tagged Status and Counters VLAN Information for ports A2 Port name Uplink_Port VLAN ID Name Stat...

Page 52: ...hatyoucan execute these three steps at another time Figure 2 22 Example of Command Sequence for Changing the Number of VLANs Changing the Primary VLAN In the factory default configuration the default VLAN DEFAULT_VLAN is the primary VLAN However you can designate any static VLAN on the switch as the primary VLAN For more on the primary VLAN see The Primary VLAN on page 2 7 To view the available VL...

Page 53: ...ng the new VLAN Showing the result Figure 2 23 Example of Creating a New Static VLAN To go to a different VLAN context level such as to the default VLAN ProCurve vlan 100 vlan default_vlan ProCurve vlan 1 _ Converting a Dynamic VLAN to a Static VLAN If GVRP is running on the switch and a port dynamically joins a VLAN you can use the next command to convert the dynamic VLAN to a static VLAN For GVR...

Page 54: ...ed port s as Tagged for the specified VLAN The no version sets the port s to either No or if GVRP is enabled to Auto no untagged port list Configures the indicated port s as Untagged for the specified VLAN The no version sets the port s to either No or if GVRP is enabled to Auto no forbid port list Configures the indicated port s as forbidden to participate in the designated VLAN The no version se...

Page 55: ...t level use ProCurve vlan 100 no tagged 1 5 Not e You cannot use these commands with dynamic VLANs Attempting to do so results in the message VLAN already exists and no change occurs Web Viewing and Configuring VLAN Parameters In the web browser interface you can do the following Add VLANs Rename VLANs Remove VLANs Configure GVRP mode Select a new Primary VLAN To configure static VLAN port paramet...

Page 56: ... port VLAN assignment where the port is connected to non 802 1Q compliant device or is assigned to only one VLAN Use the Tagged designation when the port is assigned to more than one VLAN or the port is connected to a device that does comply with the 802 1Q standard For example if port A7 on an 802 1Q compliant switch is assigned to only the Red VLAN the assignment can remain untagged because the ...

Page 57: ...ent per port Devices connected to these ports do not have to be 802 1Q compliant Because both the Red VLAN and the Green VLAN are assigned to port Y5 at least one of the VLANs must be tagged for this port In both switches The ports on the link between the two switches must be configured the same As shown in figure 2 24 above the Red VLAN must be untagged on port X7 and Y5 and the Green VLAN must b...

Page 58: ...y with the 802 1Q standard and are configured to use the correct VID then you can configure all VLAN assignments on a port as Tagged if doing so makes it easier to manage your VLAN assignments or for security reasons For example in the following network switches X and Y and servers S1 and S2 are 802 1Q compliant Server S3 could also be 802 1Q compliant but it makes no difference for this example R...

Page 59: ...member of the Red VLAN and does not carry Red VLAN traffic Also if GVRP were enabled Auto would appear instead of No Not e VLAN configurations on ports connected by the same link must match Because ports X2 and Y5 are opposite ends of the same point to point connec tion both ports must have the same VLAN configuration that is both ports configure the Red VLAN as Untagged and the Green VLAN as Tagg...

Page 60: ...witch s management functions Menu CLI and web browser interface is available only through ports configured as members Multiple ports on the switch can belong to the Management VLAN This allows connections for multiple management stations you want to have access to the Management VLAN while at the same time allowing Man agement VLAN links between switches configured for the same Manage ment VLAN On...

Page 61: ... to the switches through ports that are not in the managementVLANare excluded from management traffic Figure 2 27 Example of Potential Security Breaches In figure 2 28 Workstation 1 has management access to all three switches through the Management VLAN while the PCs do not This is because config uring a switch to recognize a Management VLAN automatically excludes attempts to send management traff...

Page 62: ...tations such as Port A7 in figure 2 28 Portson one switchthatyouwill use toextend the Management VLAN to ports on other ProCurve switches such as ports A1 and B2 or B4 and C2 in figure 2 28 on page 2 36 Hubs dedicated to connecting management stations to the Management VLAN can also be included in the above topology Note that any device connected to a hub in the Management VLAN will also have Mana...

Page 63: ...er of My_VLAN on an adjacent switch ProCurve Switch B ProCurve Switch A A1 B1 A2 Figure 2 29 Illustration of Configuration Example ProCurve config management vlan 100 ProCurve config vlan 100 tagged a1 ProCurve config vlan 100 tagged a2 Deleting the Management VLAN You can disable the Secure Manage ment feature without deleting the VLAN itself For example either of the following commands disables ...

Page 64: ...blocking of one or more links This may include the link carrying the Management VLAN which will cause loss of management access to some devices VLAN 20 Management VLAN VLAN 1 VLAN 40 Switch 1 Switch 2 Even though the ports on the Management VLAN link between Switch 1 and Switch 2 do not belong to the other VLANs connecting the two switches enabling Spanning Tree will block one of the two links Thi...

Page 65: ...termines the state of the IP network interface associated with that VLAN When a VLAN comes up because one or more of its ports is up the IP interface for that VLAN is also activated Likewise when a VLAN is deactivated because all of its ports are down the corresponding IP interface is also deactivated VLAN MAC Addresses Some switch models use the same MAC address for all configured VLANs while oth...

Page 66: ...r port is assigned see the appendix on troubleshooting in the Manage ment and Configuration Guide VLAN Restrictions A port must be a member of at least one VLAN In the factory default configuration all ports are assigned to the default VLAN DEFAULT_VLAN VID 1 A port can be assigned to several VLANs but only one of those assign ments can be untagged The Untagged designation enables VLAN oper ation ...

Page 67: ...ptions for Dynamic VLAN Advertising and Joining 3 8 GVRP and VLAN Access Control 3 10 Port Leave From a Dynamic VLAN 3 10 Planning for GVRP Operation 3 11 Configuring GVRP On a Switch 3 11 Menu Viewing and Configuring GVRP 3 12 CLI Viewing and Configuring GVRP 3 13 Web Viewing and Configuring GVRP 3 16 GVRP Operating Notes 3 17 3 1 ...

Page 68: ...ribed in Chapter 2 Static Virtual LANs VLANs For general information on how to use the switch s built in interfaces refer to these chapters in the Management and Configuration Guide for your switch Chapter 3 Using the Menu Interface Chapter 4 Using the Command Line Interface CLI Chapter 5 Using the Web Browser Interface Chapter 6 Switch Memory and Configuration 3 2 ...

Page 69: ...c VLANs on page 2 4 GVRP uses GVRP Bridge Protocol Data Units GVRP BPDUs to adver tise static VLANs In this manual a GVRP BPDU is termed an advertisement Advertisements are sent outbound from ports on a switch to the devices directly connected to those ports GVRP enables the switch to dynamically create 802 1Q compliant VLANs on links with other devices running GVRP This enables the switch to auto...

Page 70: ...all of its ports except the port on which the VID was learned 2 Port 1 receives advertise 4 Port 4 receives advertise ment of VIDs 1 2 3 AND ment of VIDs 1 2 3 AND becomes a member of VIDs becomes a member of VIDs 1 2 3 1 2 3 3 Port 3 advertises VIDs 1 2 5 Port 5 advertises VIDs 1 2 3 but port 3 is NOT a 3 but port 5 is NOT a member of VIDs 1 2 3 at member of VIDs 1 2 3 at Port6isstaticallyconfigu...

Page 71: ...Tagged VLAN 33 Switch C Port 5 dynamically joins VLAN 22 Ports 11 and 12 belong to Tagged VLAN 33 Switch E Port 2 dynamically joins VLANs 22 and 33 Port 7 dynamically joins VLANs 33 and 22 Switch D Port 3 dynamically joins VLANs 22 and 33 Port 6 dynamically joins VLAN 22 and 33 1 5 12 11 2 7 3 6 Figure 3 2 Example of GVRP Operation Not e A port can learn of a dynamic VLAN through devices that are ...

Page 72: ...tic VLAN Note that it is then necessary to assign ports to the VLAN in the same way that you would for a static VLAN that you created manually In the static state you can configure IP addressing on the VLAN and access it in the same way that you would any other static manually created VLAN Per Port Options for Handling GVRP Unknown VLANs An unknown VLAN is a VLAN that the switch learns of by recei...

Page 73: ...wdynamicVLANsforwhichitreceives an advertisement Allows the port to advertise other VLANs that have at least one other port as a member Disable Causes the port to ignore and drop all GVRP advertisements it receives and also prevents the port from sending any GVRP advertisements The CLI show gvrp command and the menu interface VLAN Support screen show a switch s current GVRP configuration including...

Page 74: ...topology Enabling a Port for Dynamic Joins You can configure a port to dynami cally join a static VLAN The join will then occur if that port subsequently receives an advertisement for the static VLAN This is done by using the Auto and Learn options described in table 3 2 below Parameters for Controlling VLAN Propagation Behavior You can con figure an individual port to actively or passively partic...

Page 75: ...amic VLANs that have at least one other port as a member The port Will become a member of specified VLAN if it receives advertisements for this VLAN Will advertise this VLAN Will not become a member of newdynamicVLANsforwhich it receives advertisements Will advertise dynamic VLANs that have at least one other port on the same switch as a member The port Will not become a member of the specified VL...

Page 76: ...isements and to dynamically join VLANs The two preceding sections describe the per port features you can use to control and limit VLAN propagation To summarize you can Allow a port to advertise and or join dynamic VLANs Learn mode the default Allow a port to send VLAN advertisements but not receive them from other devices that is the port cannot dynamically join a VLAN but other devices can dynami...

Page 77: ... all devices you want to use with dynamic VLANs and configure the appropriate Unknown VLAN parameter Learn Block or Disable for each port 6 Configure the static VLANs on the switch es where they are needed along with the per VLAN parameters Tagged Untagged Auto and Forbid see table 3 2 on page 3 9 on each port 7 Dynamic VLANs will then appear automatically according to the config uration options y...

Page 78: ...nabled field c Press the Space bar to select Yes d Press v again to display the Unknown VLAN fields The Unknown VLAN fields enable you to configure each port to Learn Dynamically join any advertised VLAN and advertise all VLANs learned through other ports Block Do not dynamically join any VLAN but still advertise all VLANs learnedthroughother ports Disable Ignore and drop all incoming advertisemen...

Page 79: ...onfiguring GVRP GVRP Commands Used in This Section show gvrp below gvrp page 3 14 unknown vlans page 3 14 Displaying the Switch s Current GVRP Configuration This command shows whether GVRP is disabled along with the current settings for the maximum number of VLANs and the current Primary VLAN For more on the last two parameters see Port Based Virtual LANs Static VLANs on page 2 4 Syntax show gvrp ...

Page 80: ...P operation on the switch ProCurve config no gvrp Enabling and Disabling GVRP On Individual Ports When GVRP is enabled on the switch use the unknown vlans command to change the Unknown VLAN field for one or more ports You can use this command at either the Manager level or the interface context level for the desired port s Syntax interface port list unknown vlans learn block disable Changes the Un...

Page 81: ...and port 1 configured to Learn for Unknown VLANs Switch A has GVRP enabled and has three static VLANs the default VLAN VLAN 222 and VLAN 333 In this scenario switch B will dynamically join VLAN 222 and VLAN 333 Switch B Switch A Port 1 Set to Learn Mode GVRP enabled 3 Static VLANs GVRP enabled 1 Static VLANs DEFAULT_VLAN DEFAULT_VLAN VLAN 222 VLAN 333 Figure 3 9 Example of Switches Operating with ...

Page 82: ...c 333 When you convert a dynamic VLAN to a static VLAN all ports on the switch are assigned to the VLAN in Auto mode Web Viewing and Configuring GVRP To view enable disable or reconfigure GVRP 1 Click on the Configuration tab 2 Click on VLAN Configuration and do the following To enable or disable GVRP click on GVRP Enabled To change the Unknown VLAN field for any port i Click on GVRP Security and ...

Page 83: ...e switch s VLAN configuration Within the same broadcast domain a dynamic VLAN can pass through a device that is not GVRP aware This is because a hub or a switch that is not GVRP ware will flood the GVRP multicast advertisement packets out all ports GVRP assigns dynamic VLANs as Tagged VLANs To configure the VLAN as Untagged you must first convert it to a static VLAN Rebooting a switch on which a d...

Page 84: ...GVRP Introduction 3 18 ...

Page 85: ...Notes 4 12 Displaying IGMP Data 4 12 Supported Standards and RFCs 4 13 Operation With or Without IP Addressing 4 13 Automatic Fast Leave IGMP 4 14 Using Delayed Group Flush 4 17 Forced Fast Leave IGMP 4 17 Setting Fast Leave and Forced Fast Leave from the CLI 4 18 Setting Forced Fast Leave Using the MIB 4 18 Listing the MIB Enabled Forced Fast Leave Configuration 4 19 Configuring Per Port Forced F...

Page 86: ...latest information on IGMP see the software release notes posted on the ProCurve Networking support web site at www procurve com For general information on how to use the switch s built in interfaces refer to these chapters in the Management and Configuration Guide for your switch Chapter 3 Using the Menu Interface Chapter 4 Using the Command Line Interface CLI Chapter 5 Using the Web Browser Inte...

Page 87: ...traffic it receives on a given VLAN through all ports on that VLAN except the port on which it received the traffic This can result in significant and unnecessary bandwidth usage in networks where IP multicast traffic is a factor Enabling IGMP allows the ports to detect IGMP queries and reportpackets and manage IP multicasttraffic through the switch IGMP is useful in multimedia applications such a...

Page 88: ...ulticast communication application Querier A required IGMP device that facilitates the IGMP protocol and traffic flow on a given LAN This device tracks which ports are connected to devices IGMP clients that belong to specific multicast groups and triggers updates of this information A querier uses data received from the queries to determine whether to forward or block multicast traffic on specific...

Page 89: ...traffic Auto Blocked Forward You can use the console to configure individual ports to any of the following states Auto the default Causes the switch to interpret IGMP packets and to filter IP multicast traffic based on the IGMP packet information for ports belonging to a multicast group This means that IGMP traffic will be forwarded on a specific port only if an IGMP host or multicast router is co...

Page 90: ...xcept the port on which the packets entered the switch For more on this topic see Excluding Multicast Addresses from IP Multicast Filtering on page 4 23 For more information refer to How IGMP Operates on page 4 11 CLI Configuring and Displaying IGMP IGMP Commands Used in This Section show ip igmp configuration page 4 7 config vid config group ip address ip igmp page 4 8 high priority forward page ...

Page 91: ...ulticast group IP address is registered For IGMP operating status see the appendix on monitoring and analyzing switch operation in the Management and Configuration Guide For example suppose you have the following VLAN and IGMP configurations on the switch VLAN ID VLAN Name IGMP Enabled Forward with High Priority Querier 1 DEFAULT_VLAN Yes No No 22 VLAN 2 Yes Yes Yes 33 VLAN 3 No No No You could us...

Page 92: ...disable IGMP on a selected VLAN Note that this command must be executed in a VLAN context Syntax no ip igmp For example here are methods to enable and disable IGMP on the default VLAN VID 1 ProCurve config vlan 1 ip igmp Enables IGMP on VLAN 1 ProCurve vlan 1 ip igmp Same as above ProCurve config no vlan 1 ip igmp Disables IGMP on VLAN 1 Not e If you disable IGMP on a VLAN and then later re enable...

Page 93: ...gh any of these ports that is connected to a multicast router This is the default IGMP port configuration blocked port list Drop all multicast traffic received from devices on the specified ports and prevent any outgoing multicast traffic from moving through these ports forward port list Forward all multicast traffic through the specified port For example suppose you wanted to configure IGMP as fo...

Page 94: ...orward Same as above command but in the VLAN 1 context level ProCurve vlan 1 no ip igmp high priority forward Returns IGMP traffic to normal priority ProCurve show ip igmp config Show command to display results of above high priority commands Configuring the Querier Function Initsdefaultconfiguration theswitch is capable of operating as an IGMP querier This command lets you disable or re enable th...

Page 95: ...P Operates The Internet Group Management Protocol IGMP is an internal protocol of the Internet Protocol IP suite IP manages multicast traffic by using switches multicast routers and hosts that support IGMP In ProCurve s implementation of IGMP a multicast router is not necessary as long as a switch is configured to support IGMP with the querier feature enabled A set of hosts routers and or switches...

Page 96: ...h port needs to receive multi cast traffic from a specific group it joins the group by sending an IGMP report join request to the network The multicast group specified in the join request is determined by the requesting application running on the IGMP client When a networking device with IGMP enabled receives the join request for a specific group it forwards any IP multicast traffic it receives fo...

Page 97: ... No support for the IGMPv3 Exclude Source or Include Source options in the Join Reports Rather the group is simply joined from all sources No support for becoming a version 3 Querier The switch will become a version 2 Querier in the absence of any other Querier on the network Not e IGMP is supported in the HP MIB rather than the standard IGMP MIBs as the latter reduce Group Membership detail in sw...

Page 98: ...cast router or another switch configured for IGMP operation ProCurve recommends that the VLAN also include a device operating as a backup Querier in case the device operating as the primary Querier fails for any reason Querier operation not available Operate as the Querier No Querier operation not available Available as a backup Querier No Querier operation not available Automatic Fast Leave IGMP ...

Page 99: ...ther than pruned In this scenario Fast Leave IGMP can actually increase the problem of multicast flooding by removing the IGMP group filter before the Querier has recognized the IGMP Leave The Querier will continue to transmit the multicast group during this short time and because the group is no longer registered the switch will then flood the multicast group to all ports The switches covered in ...

Page 100: ...switch detects multiple end nodes on the port automatic Fast Leave does not activate regardless of whether one or more of these end nodes are IGMP clients In the next figure automatic Fast Leave operates on the switch ports for IGMP clients 3A and 5A but not on the switch port for IGMP clients 7A and 7B Server 7C and printer 7D Routing Switch Acting as Querier ProCurve Switch with Automatic Fast L...

Page 101: ...e enabled on the Series 2610 and 2610 PWR Switches Note that this command must be executed in the configuration context of the CLI Syntax igmp delayedflush time period Enables the switch to continue to flush IGMP Left groups for a specified period of time 0 255 seconds The default setting is Disabled To disable reset the time period to zero Syntax show igmp delayedflush Displays the current settin...

Page 102: ...ts in the VLAN the default setting In the Config context use the VLAN specifier for example vlan vid ip igmp fastleave port list The no form disables Fast Leave on the specified ports no ip igmp forcedfastleave port list Forces IGMP Fast Leaves on the specified ports in the VLAN even if they are cascaded To view the IGMP Fast Leave status of a port use the show running config or show configuration...

Page 103: ...the CLI use the walkmib command as shown below 1 Enter either of the following walkmib command options walkmib hpSwitchIgmpPortForcedLeaveState OR walkmib 1 3 6 1 4 1 11 2 14 11 5 1 7 1 15 3 1 5 The resulting display lists the Forced Fast Leave state for all ports in the switch by VLAN A port belonging to more than one VLAN will be listed once for each VLAN and if multiple VLANs are not configured...

Page 104: ...uces the indicated listing The 2shows that Fast Forced Leave is disabled on the selected port The 6 specifies port A6 The 1 indicates the default VLAN See the Note on VLAN Numbers on page 4 19 Figure 4 5 Example Listing the Forced Fast Leave State for a Single Port on the Default VLAN Configuring Per Port Forced Fast Leave IGMP In thefactory defaultconfiguration Forced Fast Leave is disabled for a...

Page 105: ...hat your switch has a six port gigabit module in slot A and port C1 is a member of the default VLAN In this case the port number is 49 In the MIB slot A ports 1 24 slot B ports 25 48 slot C ports 49 72 and so on To enable Forced Fast Leave on C6 53 you would execute the following command and see the indicated result Verifies Forced Fast Leave enabled 49 indicates port C1 1 indicates the default VL...

Page 106: ...ilable on the same VLAN If the switch becomes the Querier for a particular VLAN for example the DEFAULT_VLAN then subsequently detects queries transmitted from another device on the same VLAN the switch ceases to operate as the Querier for that VLAN If this occurs the switch Event Log lists a pair of messages similar to these I 01 15 01 09 01 13 igmp DEFAULT_VLAN Other Querier detected I 01 15 01 ...

Page 107: ...Switch 2500 Series devices 4 3 IP Multicast Address Groups Excluded from IGMP Filtering Groups of Consecutive Addresses in the Range of 224 0 0 X to 239 0 0 X Groups of Consecutive Addresses in the Range of 224 128 0 X to 239 128 0 X 224 0 0 x 232 0 0 x 224 128 0 x 232 128 0 x 225 0 0 x 233 0 0 x 225 128 0 x 233 128 0 x 226 0 0 x 234 0 0 x 226 128 0 x 234 128 0 x 227 0 0 x 235 0 0 x 227 128 0 x 23...

Page 108: ...Multimedia Traffic Control with IP Multicast IGMP Excluding Multicast Addresses from IP Multicast Filtering 4 24 ...

Page 109: ...LI Configuring RSTP 5 14 Menu Configuring RSTP 5 20 Web Enabling or Disabling RSTP 5 22 802 1D Spanning Tree Protocol STP 5 23 Menu Configuring 802 1D STP 5 23 CLI Configuring 802 1D STP 5 26 STP Fast Mode 5 30 Fast Uplink Spanning Tree Protocol STP 5 31 Terminology 5 33 Operating Rules for Fast Uplink 5 34 Menu Viewing and Configuring Fast Uplink STP 5 35 CLI Viewing and Configuring Fast Uplink S...

Page 110: ...nning an MSTP Application 5 56 Steps for Configuring MSTP 5 57 Configuring MSTP Operation Mode and Global Parameters 5 59 Configuring MST Instance Parameters 5 66 Configuring MST Instance Per Port Parameters 5 69 Enabling or Disabling Spanning Tree Operation 5 72 Enabling an Entire MST Region at Once or Exchanging One Region Configuration for Another 5 72 Displaying MSTP Statistics and Configurati...

Page 111: ...Web Viewing the STP n a page 5 23 page 5 14 Configuration Enable Disable STP Disabled page 5 23 page 5 27 page 5 45 Reconfiguring General priority 32768 page 5 23 page 5 28 Operation max age 20 s hello time 2 s fwd delay 15 s Reconfiguring Per Port STP path cost var page 5 23 page 5 29 priority 128 mode norm Table 5 3 802 1w RSTP Features 802 1w Spanning Tree Protocol Default Menu CLI Web Viewing ...

Page 112: ...s Spanning Tree Protocol Default Menu CLI Web Viewing the MSTP Status n a page 5 74 and Configuration Enable Disable MSTP and Disabled page 5 59 Configure Global Parameters Configuring Basic Port edge port No page 5 63 Connectivity Parameters mcheck Yes and hello time 2 following path cost auto point to point MAC Force True priority 128 multiplier 8 Configuring MSTP Instance instance MSTPI none pa...

Page 113: ...ant paths Multiple Instance spanning tree operation 802 1s ensures that only one active path exists between any two nodes in a spanning tree instance A spanning tree instance comprises a unique set of VLANs and belongs to a specific spanning tree region A region can comprise multiple spanning tree instances each with a different set of VLANs and allows one active path among regions in a network Ap...

Page 114: ...nstance 1 VLANs 10 11 12 Switch C Instance 2 VLANs 20 21 22 Switch A Instance 2 VLANs 20 21 22 Switch B Root for Instance 2 VLANs 20 21 22 Switch C Switch A Root for Instance 1 Switch B Root for Instance 2 Path blocked for VLANs in instance 1 Path blocked for VLANs in instance 2 Region A Logical Topology Path blocked for VLANs in instance 1 PathblockedforVLANsininstance2 Region A Physical Topology...

Page 115: ...istinguish between VLANs when identifying redundant physical links In this case if VLANs are configured on the switch see STP Operation with 802 1Q VLANs on page RSTP and STP Operation with 802 1Q VLANs on page 5 9 The RSTP 802 1w and STP 802 1D Spanning Tree Options C a u t i o n Spanning tree interprets a switch mesh as a single link Because the switch automatically gives faster links a higher p...

Page 116: ...02 1w has been introduced If your network currently uses 802 1D STP and you are not yet ready to implement RSTP you can apply STP to the switch until such time as you are ready to move ahead with RSTP STP on the switches covered by this guide offers the full range of STP features found in earlier product releases including STP Fast Mode for Overcoming Server Access Failures If an end node is confi...

Page 117: ...node B 1 3 Backup redundant path from node A to node B 4 2 3 2 path cost 100 Figure 5 2 General Example of Redundant Paths Between Two Nodes In the factory default configuration spanning tree operation is off If a redun dant link loop exists between nodes in your network you should enable the spanning tree operation of your choice Not e Spanning tree retains its current parameter settings when dis...

Page 118: ...ocking any links or losing any bandwidth Problem STP enabled with 2 separate non trunked links blocks a VLAN link Solution STP enabled with one trunked link Nodes 1 and 2 cannot communicate because STP is blocking the link Nodes 1 and 2 can communicate because STP seesthe trunk as a single link and 802 1Q tagged VLANs enable the use of one trunked link for both VLANs Figure 5 3 Example of Using a ...

Page 119: ...s on port page 5 20 page 5 18 n a type Priority 8 Edge Port Yes Point to point Force true MCheck Yes As indicated in the manual the spanning tree protocol is used to ensure that only one active path ata time exists between any two end nodes in the network in which your switch is installed Multiple paths cause a loop in the network over which broadcast and multicast messages are repeated continuous...

Page 120: ...nce times though there are some changes that you should make to the RSTP default configuration See Opti mizing the RSTP Configuration below for more information on these changes Not e Under some circumstances it is possible for the rapid state transitions employed by RSTP to result in an increase in the rates of frame duplication and misordering in the switched LAN In order to allow RSTP switches ...

Page 121: ...he point to point mac value to false on all ports that are connected to shared LAN segments that is to connections to hubs CLI spanning tree ethernet port list point to point mac force false Menu Main Menu 2 Switch Configuration 4 Spanning Tree Operation for each appropriate port select Point to Point Force False 3 Set the edge port value to false for all ports connected to other switches bridges ...

Page 122: ...mcheck N Y page 5 18 mode norm fast Y N Refer to 802 1D Spanning Tree Protocol STP on page 5 23 show spanning tree This command lists additional RSTP STP MSTP monitoring data that is not covered in this section Refer to the section titled Spanning Tree Protocol Information in the Monitoring and Analyzing Switch Operation appendix of the Management and Configuration Guide for your switch Viewing th...

Page 123: ...an This command enables spanning tree with the current parameter settings or disables spanning tree using the no option without losing the most recently configured parameter settings Enabling STP Instead of RSTP If you decide for whatever reason that you would prefer to run the IEEE 802 1D STP version of spanning tree then issue the following command Syntax spanning tree protocol version stp Abbre...

Page 124: ...the spanning tree is the root The lower the priority value the higher the priority The value you enter has changed from the STP value The range is 0 61440 but for RSTP the value is entered as a multiple a step of 4096 You enter a value in the range 0 15 The default value of 32768 is derived by the default setting of 8 Displaying the RSTP configuration show spanning tree config shows 8 but displayi...

Page 125: ...ing this facility you can completely configure spanning tree the way you want and then enable it This method minimizes the impact on the network operation Syntax Abbreviations spanning tree span protocol version rstp stp prot rstp stp force version rstp operation stp compatible forc rstp stp priority 0 15 pri 0 15 maximum age 6 40 seconds max 6 40 hello time 1 10 seconds hello 1 10 forward delay 4...

Page 126: ...is available only with RSTP or MSTP operation path cost 10 Mbps 2 000 000 100 Mbps 200 000 1 Gbps 20 000 Assigns an individual port cost that the switch uses to determine which ports are the forwarding ports The range is 1 to 200 000 000 or auto Bydefault thisparameterisautomaticallydeterminedbytheporttype asshown by thedifferentdefaultvalues Ifyou havepreviouslyconfigureda specificvalue for this ...

Page 127: ...costs and new default path cost values to account for higher network speeds These values are different than the values defined by 802 1D STP as shown below Port Type 802 1D STP Path Cost RSTP and MSTP Path Cost 10 Mbps 100 2 000 000 100 Mbps 10 200 000 1 Gbps 5 20 000 Because the maximum value for the path cost allowed by 802 1D STP is 65535 devices running that version of spanning tree cannot be ...

Page 128: ...eld 4 Press the Space bar to select the version of spanning tree you wish to run RSTP or STP Note Ifyouchangetheprotocolversion youwillhavetorebootthe switch for the change to take effect See step 9 and step 10 5 Press the Tab or down arrow key to go to the STP Enabled field Note that when you do this the remaining fields on the screen will then be appro priate for the version of spanning tree tha...

Page 129: ... line then press H for Help to display the online help 8 Repeat step 6 for each additional parameter you want to change Please see Optimizing the RSTP Configuration on page 5 13 for recom mendations on configuring RSTP to make it operate the most efficiently 9 When you are finished editing parameters press Enter to return to the Actions line and press S to save the currently displayed spanning tre...

Page 130: ...elected protocol version enabling spanning tree through the web browser interface will enable RSTP with its current configuration To configure the other spanning tree features telnet to the switch console and use the CLI or menu To enable or disable spanning tree using the web browser interface 1 Click on the Configuration tab 2 Click on Device Features 3 Enable or disable spanning tree 4 Click on...

Page 131: ...P Figure 5 6 The Default Spanning Tree Operation Screen 2 Press E for Edit to highlight the Protocol Version field In the default configuration this field is set to RSTP 3 Press the Space bar once to change the field to STP This changes the Protocol Version selection to the 802 1D Spanning Tree Protocol 4 Press v to highlight the STP Enabled field 5 Press the Space bar to select Yes Yes in this fi...

Page 132: ...u need information on STP parameters press Enter to select the Actions line then press H to get help 8 Repeat step 7 for each additional parameter you want to change Note For information on the Mode parameter see STP Fast Mode on page 5 30 9 When you are finished editing parameters press Enter to return to the Actions line 10 Press S to save the currently displayed STP parameter settings You will ...

Page 133: ...cating a Reboot Is Needed to Implement a Configuration Change 11 Press 0 to return to the Main menu Figure 5 9 The Main Menu Indicating a Reboot Is Needed To Implement a Configuration Change 12 Press 6 to reboot the switch This implements the Protocol Version change steps 2 and 3 on page 5 23 5 25 ...

Page 134: ...9 priority 0 255 page 5 29 mode norm fast page 5 29 Viewing the Current STP Configuration Syntax show spanning tree config Regardless of whether STP is disabled the default this command lists the switch s full STP configuration including general settings and port settings When the switch is configured for 802 1D STP this command displays infor mation similar to the following Command Listing when S...

Page 135: ...ation on the switch use the spanning tree command again to enable STP operation Syntax spanning tree protocol version stp write memory boot For example Figure 5 11 Steps for Changing Spanning Tree Operation to the 802 1D Protocol Enabling or Disabling Spanning Tree Operation on the Switch Syntax no spanning tree This command enables or disables spanning tree operation for either spanning tree vers...

Page 136: ...dversely affect network performance ProCurve recommends that you use the default STP parameter settings You should not change these settings unless you have a strong understanding of how STP operates For more on STP see the IEEE 802 1D standard Reconfiguring General STP Operation on the Switch You can config ure one or more of the following parameters Table 5 3 General STP Operating Parameters Nam...

Page 137: ...tree port list path cost 1 65535 priority 0 255 mode norm fast Enables STP if not already enabled and configures the per port parameters listed in table 5 4 Table 5 4 Per Port STP Parameters Name Default Range Function path cost Ethernet 100 1 65535 Assignsanindividualportcostthattheswitchuses 10 100Tx 10 to determine which ports are the forwarding ports 100 Fx 10 Gigabit 5 priority mode 128 norm ...

Page 138: ...s are configured to automatically try to access a network server when ever the end node detects a network connection Typical server access includes to Novell servers DHCP servers and X terminal servers If the server access is attempted during the time that the switch port is negotiating its STP state the server access will fail To provide support for this end node behavior the switches covered by ...

Page 139: ...2 1D STP to improve the recovery convergence time in wiring closet switches with redundant uplinks Specifically a switch having redundant links toward the root device can decrease the convergence time or failover to a new uplink STP root port to as little as ten seconds To realize this performance the switch must be Used as a wiring closet switch also termed an edge switch or a leaf switch Configu...

Page 140: ...ober 1999 Not e When properly implemented fast uplink STP offers a method for achieving faster failover times than standard STP and is intended for this purpose for instances where 802 1D STP has been chosen over 802 1w RSTP To use fast uplink STP configure fast uplink Mode Uplink only on the switch s upstream ports that is two or more ports forming a group of redundant links in the direction of t...

Page 141: ...he switch For more information see Spanning Tree Protocol STP in chapter 9 Configuring Advanced Features in the Management and Configuration Guide for your switch uplink port A switch port linked to a port on another switch that is sequentially closer to the STP root upstream port device For example ports A and B in figure 5 12 on page 32 are uplink ports wiring closet switch Another term for an e...

Page 142: ... seconds Scenario 2 If Switch 1 fails then Switch 2 becomes the root switch The link between Switch 3 and Switch 2 begins forwarding The link between Switch 2 and the LAN begins forwarding Operating Rules for Fast Uplink A switch with ports configured for fast uplink must be an edge switch and not either an interior switch or the STP root switch Configure fast uplink on only the edge switch ports ...

Page 143: ...plink should not be configured on both ends of a point to point link but only on the uplink port of an edge switch Ensure that the switch you intend as a backup root device will in fact become the root if the primary root fails and that no ports on the backup root device are configured for fast uplink operation For example if the STP Priority is the same on all switches default 32768 then the swit...

Page 144: ...peration 2 In the default STP configuration RSTP is the selected protocol version If this is the case on your switch you must change the Protocol Version to STP in order to use Fast Uplink STP If the Protocol Version is set to RSTP the default as shown in this example go to step 3 IftheProtocolVersionissettoSTP therestofthescreenwillappear as shown in figure 5 17 In this case go to step 4 on page ...

Page 145: ...panning Tree Operation screen you will then see a screen with the following The asterisk indicates thatyoumustrebootthe switchtoimplementthe configuration change from RSTP to STP Figure 5 16 Changing from RSTP to STP Requires a System Reboot e Press 0 zero to return to the Main Menu then 6 to reboot the switch f After you reboot the switch enter the menu command at the CLI to return to the Main Me...

Page 146: ...ration Screen 4 On the ports and or trunks you want to use for redundant fast uplink connections change the mode to Uplink In this example port A1 and Trk1 using ports A2 and A3 provide the redundant uplinks for STP a Press E for Edit then enable STP on the switch by using the Space bar to select Yes in the Spanning Tree Enabled field b Use Tab to move to the Mode field for port A1 c Use the Space...

Page 147: ...nks Configured for Fast Uplink STP 5 Press S forSave tosavetheconfigurationchangestoflash non volatile memory To View Fast Uplink STP Status Continuing from figures 5 17 and 5 18 in the preceding procedure this task uses the same screen that you would use to view STP status for other operating modes 1 From the Main Menu select 1 Status and Counters 7 Spanning Tree Information 5 39 ...

Page 148: ... be the STP root device Figure 5 19 Example of STP Status with Trk1 Trunk 1 as the Path to the STP Root Device 2 Press S for Show ports to display the status of individual ports Links to PC or Workstation End Nodes Redundant STP Link in Fast Uplink Mode Redundant STP Link in Fast Uplink Mode Figure 5 20 Example of STP Port Status with Two Redundant STP Links 5 40 ...

Page 149: ...t Uplink STP You can view fast uplink STP using the same show commands that you would use for standard STP opera tion Syntax show spanning tree Lists STP status Syntax show spanning tree config Lists STP configuration for the switch and for individual ports For example figures 5 21 and 5 22 illustrate a possible topology STP status listing and STP configuration for a switch with STP enabled and th...

Page 150: ... field above This is the currently active path to the STP root device Indicates that Trk1 Trunk 1 providesthecurrentlyactivepath to the STP root device RedundantSTPlinkintheBlocking state Links to PC or Workstation End Nodes Figure 5 22 Example of a Show Spanning Tree Listing for the Topology Shown in Figure 5 21 5 42 ...

Page 151: ...ses the CLI to configure the switch for the fast uplink operation shown in figures 5 21 5 22 and 5 23 The example assumes that ports A2 and A3 are already configured as members of the port trunk Trk1 and all other STP parameters are left in their default state Note that the default STP Protocol Version is RSTP Rapid STP or 802 1w Thus if the switch is set to the STP default you must change it to t...

Page 152: ...When configured fast uplink STP operates on the designated ports in a running switch How ever if the switch experiences a reboot the fast uplink ports Mode Uplink use the longer forwarding delay used by ports on standard 802 1D STP non fast uplink This prevents temporary loops that could otherwise result while the switch is determining the STP status for all ports That is on ports configured for f...

Page 153: ...ts in the trunk are set to fast uplink Mode Uplink You must still specifically configure the trunk Mode setting to Uplink Similarly if you eliminate a trunk the Mode setting on the individual ports in the trunk will return to their previous settings For Troubleshooting Information on Fast Uplink Refer to the section titled Spanning Tree Protocol STP and Fast Uplink Problems in appendix C Troublesh...

Page 154: ...a port belongs to multiple VLANs it may be dynamically blocked in one spanning tree instance but forwarding in another instance This achieves load balancing across the net work while keeping the switch s CPU load at a moderate level by aggregating multiple VLANs in a single spanning tree instance Like RSTP MSTP provides fault tolerance through rapid automatic reconfiguration if there is a failure ...

Page 155: ...witch Running STP Switch Running STP Switch Running RSTP Switch Running RSTP Switch Running RSTP Common Spanning Tree CST MST Region MST Region Common and Internal Spanning Tree CIST Figure 5 25 Example of MSTP Network with Legacy STP and RSTP Devices Connected Common and Internal Spanning Tree CIST The CIST identifies the regions in a network and administers the CIST root bridge for the network t...

Page 156: ...rk An STP or RSTP network operates as a single instance network A region can include two types of STP instances Internal Spanning Tree Instance IST Instance This is the default spanning tree instance in any MST region It provides the root switch for the region and comprises all VLANs configured on the switches in the region that are not specifically assigned to Multiple Spanning Tree Instances MST...

Page 157: ...ing feature that enables you to exchange MSTP config urations with a single command Refer to Enabling an Entire MST Region at Once or Exchanging One Region Configuration for Another on page 5 72 Not e The switch automatically senses port identity and type and automatically defines spanning tree parameters for each type as well as parameters that applyacrosstheswitch Althoughtheseparameterscanbeadj...

Page 158: ...B Blocks redundant link for MSTI A Blocks redundant link for IST instance While allowing only one active path through a given instance MSTP retains any redundant physical paths in the instance to serve as backups blocked paths in case the existing active path fails Thus if an active path in an instance fails MSTP automatically activates unblocks an available backup to serve as the new active path ...

Page 159: ... Spanning Tree instance MSTI in a region the regional root may be a different switch that is not necessarily connected to another region The MSTP switches block redundant links within each LAN segment across all instances and between regions to prevent any traffic loops As a result each individual instance spanning tree within a region deter mines its regional root bridge designated bridges and de...

Page 160: ...ink and 802 1Q tagged VLANs enable the use of one trunked link for both VLANs Figure 5 27 Example of Using a Trunked Link To Support Multiple VLAN Connectivity within the Same MST Instance Not e All switches in a region should be configured with the VLANs used in that region and all ports linking MSTP switches together should be members of all VLANs in the region Otherwise the path to the root for...

Page 161: ...Spanning Tree Protocol A network supporting MSTP allows multiple spanning tree instances within configured regions and a single spanning tree among regions STP bridges and RSTP bridges MSTP BPDU MSTP Bridge Protocol Data Unit These BPDUs carry region specific information such as the region identifier region name and revision number If a switch receives an MSTP BPDU with a region identifier that di...

Page 162: ...ive physical communication path between any two regions or between an MST region and an STP or RSTP switch MSTP blocks any other physical paths as long as the currently active path remains in service Within a network an MST region appears as a virtual RSTP bridge to other spanning tree entities other MST regions and any switches running 802 1D or 802 1w spanning tree protocols Within an MSTI there...

Page 163: ...devices using 802 1D or 802 1w STP BPDU packets as appropriate Because MSTP is so efficient at establishing the network path ProCurve highly recommends that you update all of your switches to support 802 1s MSTP For switches that do not support 802 1s MSTP ProCurve recommends that you update to RSTP to benefit from the convergence times of less than one second under optimal circumstances To make t...

Page 164: ...STP switches in a given region supporting the same set of VLANs Within each region determine the VLAN membership for each spanning tree instance Eachinstancerepresentsa singleforwardingpathforallVLANs in that instance There is one logical spanning tree path through the following Any inter regional links Any IST or MST instance within a region Any legacy 802 1D or 802 1w switch or group of switches...

Page 165: ...g sections The switch supports MSTP configuration through the CLI After you specify MSTP and reboot the switch as described above the switch removes the Spanning Tree option from the Menu interface If you later reconfigure the switch to use STP or RSTP the switch returns the Spanning Tree option to the Menu interface This section assumes that you have already 1 Configured the MSTP operation mode T...

Page 166: ...t include a minimum of one VID You can add more VIDs later if desired spanning tree instance 1 16 vlan vid To move a VLAN from one instance to another first use no spanning tree instance n vlan vid to unmap the VLAN from the current instance then add the VLAN to the other instance While the VLAN is unmapped from an MSTI it is associated with the region s IST instance 4 Configure the priority for e...

Page 167: ...0 spanning tree config name ascii string page 5 60 spanning tree config revision revision number page 5 61 spanning tree max hops hop count page 5 61 spanning tree force version stp compatible rstp operation mstp operation page 5 62 spanning tree hello time 1 10 page 5 62 The commands in this section apply on the switch level and do not affect individual port configurations 5 59 ...

Page 168: ... MST Region at Once or Exchanging One Region Configuration for Another on page 5 72 The following commands are available only when the switch is configured for MSTP protocol operation Syntax no spanning tree config name ascii string This command resets the configuration name of the MST region in which the switch resides This name can include up to 32 nonblank characters and is case sensitive On al...

Page 169: ...want to maintain the same region name Using the pending option to maintain two different configuration options for the same physical region Note that this setting must be the same for all MSTP switches in the same MST region Range 0 65535 Default 0 Note This option is available only when the switch is configured for MSTP operation Syntax spanning tree max hops hop count This command resets the num...

Page 170: ...ee protocols is not required This command is available when the protocol version is set to mstp see protocol version later Note that even when mstp operation is selected if the switch detects an 802 1D BPDU or an 802 1w BPDU on a port it communicates with the device linked to that port using STP or RSTP BPDU packets Also if errors are encountered as described in the Note on MSTP Rapid State Transi...

Page 171: ...ks at the global level In most cases ProCurve recommends that you use the default settings for these parameters and apply changes on a per port basis only where a nondefault setting is clearly indicated by the circumstances of individual links Syntax no spanning tree port list edge port mcheck edge port Enable edge port on ports connected to end nodes During spanning tree establishment ports with ...

Page 172: ...llo time global 1 10 When the switch is the CIST root this parameter specifies the interval in seconds between periodic BPDU transmissions by the designated ports This interval also applies to all ports in all switches downstream from each port in the port list A setting of global indicates that the ports in port list on the CIST root are using the value set by the global spanning tree hello time ...

Page 173: ... to point link to a device such as a switch bridge or end node Force False Indicates a connection to a hub which is a shared LAN segment Auto Causes the switch to set Force False on the port if it is not running at full duplex Connections to hubs are half duplex priority 0 15 MSTP uses this parameter to determine the port s to use for forwarding The port with the lowest priority number has the hig...

Page 174: ...nning tree instance 1 16 vlan vid vid vid page no spanning tree instance 1 16 5 63 spanning tree instance 1 16 priority 0 15 page 5 66 spanning tree priority 0 15 page 5 67 Syntax spanning tree instance 1 16 vlan vid vid vid no spanning tree instance 1 16 Configuring MSTP on the switch automatically configures the IST instance and places all statically configured VLANs on the switch into the IST i...

Page 175: ...f the same VLAN s Traffic in VLANs assigned to a numbered STP instance in a given region moves to other regions through the root switch for that instance The priority range for an MSTP switch is 0 61440 However this command specifies the instance priority as a multiplier 0 15 of 4096 That is when you specify an instance pri ority value of 0 15 the actual priority assigned to the switch for the spe...

Page 176: ...nnected regions for the traffic in VLANs assigned to the region s IST instance Traffic in VLANs assigned to a numbered STP instance in a given region moves to other regions through the root switch for that instance The priority range for an MSTP switch is 0 61440 However this command specifies the priority as a multiplier 0 15 of 4096 That is when you specify a priority value of 0 15 the actual pr...

Page 177: ...auto 1 200000000 This command assigns an individual port cost for the specified MST instance For a given port the path cost setting can be different for different MST instances to which the port may belong The switch uses the path cost to determine which ports are the forwarding ports in the instance that is which links to use for the active topology of the instance and which ports to block The se...

Page 178: ...h is priority multiplier x 16 For example if you configure 2 as the priority multiplier on a given port in an MST instance then the actualPriority setting is 32 Thus after you specify the port priority multiplier in an instance the switch displays the actual port priority and not the multiplier in the show spanning tree instance 1 16 or show spanning tree port list instance 1 16 displays You can v...

Page 179: ...rity as a multiplier 0 15 of 16 That is when you specify a priority multiplier of 0 15 the actual priority assigned to the switch is priority multiplier x 16 For example configuring 5 as the priority multiplier on a given port in the IST instance for a region creates an actual Priority setting of 80 Thus after you specify the port priority multiplier for the IST instance the switch displays the ac...

Page 180: ...ing tree pending apply config name config revision instance reset page 5 73 This operation exchanges the currently active MSTP configuration with the currently pending MSTP configuration It enables you to implement a new MSTP configuration with minimal network disruption or to exchange MSTP configurations for testing or troubleshooting purposes When you configure or reconfigure MSTP the switch re ...

Page 181: ...ou want to configure 7 Use the show spanning tree pending command to review your pending configuration page 80 8 Use the spanning tree pending apply command to exchange the currently active MSTP configuration with the pending MSTP configuration Syntax spanning tree pending apply config name config revision instance reset apply Exchanges the currently active MSTP configuration with the pending MSTP...

Page 182: ...the Common Spanning Tree This command displays the MSTP statistics for the connections between MST regions in a network Syntax show spanning tree This command displays the switch s global and regional spanning tree status plus the per port spanning tree operation at the regional level Note that values for the following parameters appear only for ports connected to active devices Designated Bridge ...

Page 183: ...iondisabled indicates the port is configured for connecting to a LAN segment that includes a bridge or switch Yes indicates the port is configured for a host end node link Refer to the edge port description under Configuring Basic Port Connectivity Parameters on page 5 63 Yes means the switch is operating the port as if it is connected to switch bridge or end node but not a hub Identifies the over...

Page 184: ...Statistics for a Specific MST Instance Syntax show spanning tree instance ist 1 16 This command displays the MSTP statistics for either the IST instance or a numbered MST instance running on the switch Figure 5 29 Example of MSTP Statistics for a Specific Instance on an MSTP Switch 5 76 ...

Page 185: ...ommand For information on these parameters refer to Configuring Basic Port Connectivity Parameters on page 5 63 Syntax show spanning tree port list config This command shows the same data as the above command but lists the spanning tree port parameter settings for only the specified port s and or trunk s You can list data for a series of ports and port trunks by specifying the first and last port ...

Page 186: ...for the specified instance Syntax show spanning tree port list config instance ist 1 16 This command shows the same data as the above command but lists the spanning tree port parameter settings for only the specified port s and or trunk s You can list data for a series of ports and port trunks by specifying the first and last port or trunk of any consecutive series of ports and trunks For example ...

Page 187: ...figuration Digest from the VID to MSTI configuration mappings on the switch itself As required by the 802 1s standard all MSTP switches within the same region must have the same VID to MSTI assignments and any given VID can be assigned to either the IST or one of the MSTIs within the region Thus the MSTP Configuration Digest must be identical for all MSTP switches intended to belong to the same re...

Page 188: ... Enabling an Entire MST Region at Once or Exchanging One Region Configuration for Another on page 5 72 Syntax show spanning tree pending instance mst config instance 1 16 ist Lists region instance I D and VLAN information for the specified pending instance mst config Lists region IST instance VLAN s numbered instances and assigned VLAN information for the pending MSTP configuration Figure 5 33 Exa...

Page 189: ...l switches in a region A Switch Intended To Operate Within a Region Does Not Receive Traffic from Other Switches in the Region An MSTP switch intended for a particular region may not have the same configuration name or region revisionnumberasthe otherswitchesintendedforthesame region TheMSTP Configuration Name and MSTP Configuration Revision number must be iden tical on all MSTP switches intended ...

Page 190: ...Spanning Tree Operation 802 1s Multiple Spanning Tree Protocol MSTP 5 82 ...

Page 191: ...gine 6 15 QoS Resource Usage and Monitoring 6 15 Planning and Monitoring Rule Usage 6 16 Managing QoS Resource Consumption 6 16 Troubleshooting a Shortage of Rule Resources 6 17 Examples of QoS Resource Usage 6 18 Using QoS Classifiers To Configure QoS for Outbound Traffic 6 20 Viewing the QoS Configuration 6 20 No Override 6 21 QoS UDP TCP Priority 6 21 Assigning 802 1p Priority Based on TCP or U...

Page 192: ...igning a DSCP Policy Based on VLAN ID VID 6 48 QoS Source Port Priority 6 52 Assigning a Priority Based on Source Port 6 52 Assigning a DSCP Policy Based on the Source Port 6 54 Steps for Creating a Policy Based on Source Port Classifiers 6 54 Differentiated Services Codepoint DSCP Mapping 6 58 Default Priority Settings for Selected Codepoints 6 59 Quickly Listing Non Default Codepoint Settings 6 ...

Page 193: ...sible and does not completely eliminate the potential for network congestion There will alwaysbepointsinthenetworkwheremultipletrafficstreamsmergeorwhere network links will change speed and capacity The impactand numberofthese congestion points will increase over time as more applications and devices are added to the network When not if network congestion occurs it is important to move traffic on ...

Page 194: ...ic ports on CoS types Source Port Traffic arrives with Traffic arrives with the Change priority on Apply 802 1p priority to priority set by edge priority set in the VLAN selected CoS type s selected outbound switch tag Carry priority traffic on tagged VLANs Forward with 802 1p downstream on tagged priority Forward with 802 1p VLANs Set Priority priority Change Priority Figure 6 1 Example of 802 1p...

Page 195: ...or lower priority regardless of current network bandwidth or the relative priority setting of the traffic when it is received on the switch Change upgrade or downgrade the priority of outbound traffic Override illegal packetprioritiessetbyupstreamdevicesorapplications that use 802 1Q VLAN tagging with 802 1p priority tags Avoid or delay the need to add higher cost NICs network interface cards to i...

Page 196: ...odepoints In the default QoS configuration for the switches covered in this chapter one codepoint 101110 is set for Expedited Forwarding All other codepoints are unused and listed with No override for a priority DSCP policy A DSCP configured with a specific 802 1p priority 0 7 Default No override Using a DSCP policy you can configure the switch to assign priority to IP packets That is for an IP pa...

Page 197: ...Type of Service field ToS byte Later implementations may use this byte as a six bit high order Differentiated Services field and a two bit low order reserved field See also IP precedence bits and DSCP elsewhere in this table upstream A device linked directly or indirectly to an inbound switch port That is the switch receives traffic from device upstream devices Overview QoS settings operate on two...

Page 198: ...y that can be usedbydownstreamdeviceshavingmoreorlessthanthefourpriority levels in the switches covered by this guide Also if the packet enters the switch with an 802 1p priority setting QoS can override this setting if configured with an 802 1p priority rule to do so If your network uses only one VLAN and therefore does not require VLAN tagged ports you can still preserve 802 1p priority settings...

Page 199: ... Leaving the Switch 8 Queues 3 Queues 2 Queues 1 2 Queue 1 1 low priority 2 Queue 1 Queue 2 Queue 1 Queue 1 0 3 Queue 2 0 normal priority 3 Queue 3 Queue 4 Queue 2 4 5 Queue 3 4 medium priority 5 Queue 5 Queue 6 Queue 7 Queue 8 Queue 3 Queue 2 6 7 Queue 4 6 high priority 7 Not e On Using Mult ipl e Cr iter ia Classifiers for Prioritizing Outbound Packets ProCurve recommends that you configure a mi...

Page 200: ...or the packet is changed Not e On switches covered in this guide intermixing lower precedence classifiers configured with DSCP policies and higher precedence classifiers configured with 802 1p priority rules is not recommended as this can result in a packet with an 802 1p priority assignedby one classifier and a DSCP policy by another classifier This is because the search order would allow a lower...

Page 201: ...Service IP Precedence Mode QoS reads an inbound packet s IP precedence upper three bits in IP ToS the Type of Service ToS byte and automatically assigns an 802 1p priority to the packet if specified in the QoS configuration for outbound transmission Differentiated Services Diffserve Mode QoS reads an inbound IP packet s differentiated services or codepoint upper six bits of the Type of Service TOS...

Page 202: ...there is no change to its 802 1p priority setting If the packet leaves the switch through a port that is an untagged member of the VLAN the 802 1p priority is dropped Entering Outbound Port Exiting Inbound 802 1p Queue Outbound Priority 802 1p Priority 1 2 Low 1 2 0 3 Normal 0 3 4 5 Medium 4 5 6 7 High 6 7 If a packet does not meet the criteria for Incoming 802 1p priority then the packet goes to ...

Page 203: ...y option Also to use a service policy in this manner the downstream devices must be configured to interpret and use the DSCP carried in the IP packets 2 This priority corresponds to the 802 1p priority scheme and is used to determine the packet s port queue priority When used in a VLAN tagged environment this priority is also assigned as the 802 1p priority carried outbound in packets having an 80...

Page 204: ...witch Propagate a service policy by reconfiguring the DSCP in outbound IP packets according to packettype Thepacketisplacedinanoutbound port queue according to the 802 1p priority configured for that DSCP policy The policy assumes that downstream devices can be configured to recognize the DSCP in IP packets and implement the service policy it indicates Use VLAN tagged ports to include packet prior...

Page 205: ...igure your QoS resource usage first for the most important traffic type before configuring QoS resource usage for other traffic types If insufficient resources remain for all of the QoS implementation you want try spreading this implementation across multiple switches Policy Enforcement Engine The Policy Enforcement engine is the hardware element in the switch that manages quality of service and A...

Page 206: ... the number of rules that have been used out of the total rules available for that feature This command is useful for verifying rule availability as you proceed with configuring QoS Managing QoS Resource Consumption As shown in table 6 8 QoS classifiers use 1 2 or 8 rules depending on the classifier selected Extensive QoS configurations can either fully subscribe the rules available or leave an in...

Page 207: ...o the port which means that the port does not honor the QoS policies configured for the VLAN The switch generates an Event Log message similar to the following cos Vlan 1 QoS not configured on all new ports Some QoS resources exceeded Troubleshooting a Shortage of Rule Resources ThelackofavailablerulesiscausedbyexistingQoSconfigurationsconsuming the available rules Do the following to enable confi...

Page 208: ...oS Ports 1 and 2 belong to both VLANs Ports 3 and 4 belong only to VLAN 222 Also device priority QoS is configured for five IP addresses ProCurve config qos device priority 10 10 10 150 priority 6 ProCurve config qos device priority 10 10 10 153 priority 6 ProCurve config qos device priority 10 10 10 155 priority 6 ProCurve config qos device priority 10 10 10 157 priority 6 ProCurve config qos dev...

Page 209: ...diately used for this codepoint Adding a new DSCP policy for example 001111 with a 5 priority and then configuring ToS Diff Services to assign inbound packets with a codepoint of 001010 to the 001111 policy implements all policies configured in the DSCP map and in this case uses three rules that is one rule for each codepoint invoked in the switch s current DSCP configuration 101110 the default 00...

Page 210: ... various QoS classifiers refer to QoS Operating Notes and Restrictions on page 6 66 Viewing the QoS Configuration Examples of the show qos output are included with the example for each priority type Syntax show qos priority classifier tcp udp port priority Displays the current TCP UDP port priority configuration Refer to figure 6 9 on page 6 27 device priority Displays the current device IP addres...

Page 211: ... the packet s header VLAN tagged packets received through an untagged port are handled in the switch with normal priority For example figure 6 5 below shows a qos VLAN priority output in a switch where nondefault priorities exist for VLANs 22 and 33 while VLAN 1 remains in the default configuration This output shows that VLAN 1 is in the default state while VLANs 22 and 33 have been configured for...

Page 212: ...d or Private Ports 49152 65535 For more information including a listing of UDP TCP port numbers go to the Internet Assigned Numbers Authority IANA website at www iana org Then click on Protocol Number Assignment Services P Under Directory of General Assigned Numbers heading Port Numbers Assigning 802 1p Priority Based on TCP or UDP Port Number This option assigns an 802 1p priority to IPv4 TCP or ...

Page 213: ...ort 80 World Wide Web HTTP 1 1 ProCurve config qos tcp port 23 priority 7 ProCurve config qos udp port 23 priority 7 ProCurve config qos tcp port 80 priority 2 ProCurve config qos udp port 80 priority 1 ProCurve config show qos tcp udp port priority TCP UDP port based priorities Application Protocol Port Apply rule DSCP Priority TCP 23 Priority 7 UDP 23 Priority 7 TCP 80 Priority 2 UDP 80 Priority...

Page 214: ...e N o t e o n On switches covered in this guide mixing ToS DSCP policies and 802 1p C o m b i n i n g priorities is not recommended Refer to the Note on page 6 10 P o l i c y Typ e s For more on DSCP refer to Terminology on page 6 6 Steps for Creating a DSCP Policy Based on TCP UDP Port Number Classifiers This procedure creates a DSCP policy for IPv4 packets carrying the selected UDP or TCP port n...

Page 215: ...he packet leaves the switch on a tagged port it carries the 802 1p priority with it to the next downstream device For IPv4 packets the DSCP will be replaced by the codepoint specified in this command Default No override for most codepoints See table 6 11 on page 6 59 Syntax qos udp port tcp port tcp or udp port number dscp codepoint Assigns a DSCP policy to outbound packets having the specified TC...

Page 216: ...rity 23 UDP 000111 7 80 TCP 000101 5 914 TCP 000010 1 1001 UDP 000010 1 1 Determine whether the DSCPs already have priority assignments which could indicate use by existing applications Also a DSCP must have a priority configured before you can assign any QoS classifiers to use it The DSCPs for this example have not yet been assigned an 802 1p priority level Figure 6 7 Display the Current DSCP Map...

Page 217: ...play the result Classifier DSCP Policy Figure 6 9 The Completed DSCP Policy Configuration for the Specified UDP TCP Port Applications The switch will now apply the DSCP policies in figure 6 9 to IPv4 packets received in the switch with the specified UDP TCP port applications This means the switch will Overwrite the original DSCPs in the selected packets with the new DSCPs specified in the above po...

Page 218: ...or the Management VLAN IP address if configured If there is no Management VLAN configured then the switch does not allow configuring a QoS IP device priority for the Default VLAN IP address IP address QoS does not support layer 2 SAP encapsulation For more information on packet type restrictions refer to Details of Packet Criteria and Restrictions for QoS Support on page 6 66 Options for Assigning...

Page 219: ...P address This priority determines the packet s queue in the outbound port to which it is sent If the packet leaves the switch on a tagged port it carries the 802 1p priority with it to the next downstream device Default Disabled no qos device priority ip address Removes the specified IP device priority QoS classifier and resets the priority for that VLAN to No override show qos device priority Di...

Page 220: ...Overwrites the packet s DSCP with the DSCP configured in the switch for such packets and assigns the 802 1p priority configured in the switch for the new DSCP Refer to Differentiated Services Codepoint DSCP Mapping on page 6 58 3 Forwards the packet through the appropriate outbound port queue N o t e o n On switches covered in this guide mixing ToS DSCP policies and 802 1p C o m b i n i n g priori...

Page 221: ...gn the DSCP policy to packets with the specified IP address Syntax qos dscp map codepoint priority 0 7 This command is optional if a priority has already been assigned to the codepoint The command creates a DSCP policy by assigning an 802 1p priority to a specific DSCP When the switch applies this policy to a packet the priority determines the packet s queue in the outbound port to which it is sen...

Page 222: ...ddress DSCP Policies DSCP Priority 10 28 31 1 000111 7 10 28 31 130 000101 5 10 28 31 100 000010 1 10 28 31 101 000010 1 1 Determine whether the DSCPs already have priority assignments which could indicate use by existing applications This is not a problem if the configured priorities are acceptable for all applications using the same DSCP Refer to the Note On Changing a Priority Setting on page 6...

Page 223: ...licies to the selected device IP addresses and display the result Figure 6 13 The Completed Device Priority Codepoint Configuration The switch will now apply the DSCP policies in figure 6 12 to IPv4 packets received on the switch with the specified IP addresses source or destination This means the switch will Overwrite the original DSCPs in the selected packets with the new DSCPs specified in the ...

Page 224: ... qos dscp map command to specify a priority for any codepoint page 6 58 Assign an 802 1p Priority This option reads the DSCP of an incoming IPv4 packet and without changing this codepoint assigns the 802 1p priority to the packet as configured in the DSCP Policy Table page 6 58 This means that a priority value of 0 7 must be configured for a DSCP before the switch will attempt to perform a QoS mat...

Page 225: ...ermines the packet s queue in the outbound port to which it is sent If the packet leaves the switch on a tagged port it carries the 802 1p priority with it to the next downstream device ToS IP Precedence Default Disabled no qos type of service Disables all ToS classifier operation including prioritization using the precedence bits show qos type of service When ip precedence is enabled or if neithe...

Page 226: ...packets received on port A5 with a particular DSCP you can configure a downstream interior switch B to handle such packets with the desired priority regardless of whether 802 1Q tagged VLANs are in use LAN A5 Edge Switch A LAN Interior Switch B Work Group Work Group Marked Traffic from port A5 on Edge Switch A Other Traffic Figure 6 15 Interior Switch B Honors the Policy Established in Edge Switch...

Page 227: ...configured with No override are not used The codepoint is not configured for a new DSCP policy assignment Thus the switch does not allow the same incoming codepoint DSCP to be used simultaneously for directly assigning an 802 1p priority and also assigning a DSCP policy For a given incoming codepoint if you configure one option and then the other the second overwrites the first To use this option ...

Page 228: ...icy before you can disable or change the codepoint For example in figure 6 16 you cannot change the priority for the 000000 codepoint until you redirect the DSCP policy for 000001 away from using 000000 as a policy Refer to Note On Changing a Priority Setting on page 6 61 Refer also to Differentiated Services Codepoint DSCP Mapping on page 6 58 show qos type of service Displays current Type of Ser...

Page 229: ...All codepoints without a DSCP Policy entry are availablefordirect802 1ppriority assignment Figure 6 16 Example Showing Codepoints Available for Direct 802 1p Priority Assignments Notice that codepoints 000000 and 001001 are named as DSCP policies by other codepoints 000001 and 000110 respectively This meanstheyarenotavailableforchangingtoadifferent802 1ppriority Outbound IP packets with a DSCP of ...

Page 230: ...7 to configure an 802 1p priority for the codepoint you will use to overwrite the DSCP the packet carries from upstream For more on this topic refer to Differentiated Services Codepoint DSCP Mapping on page 6 58 3 Use qos type of service diff services incoming DSCP dscp outgoing DSCP to change the policy on packets coming from the edge or upstream switch with the specified incoming DSCP Figure 6 1...

Page 231: ...of codepoints with any corresponding DSCP policy re assignments for outbound packets Also lists the 802 1p priority for each codepoint that does not have a DSCP policy assigned to it For example suppose you want to configure the following two DSCP policies for packets received with the indicated DSCPs Received Policy 802 1p Policy Name DSCP DSCP Priority Optional 001100 000010 6 Level 6 001101 000...

Page 232: ...SCPs for this example have not yet been assigned an 802 1p priority level Figure 6 18 Display the Current DSCP Map Configuration 2 Configure the policies in the DSCP table Figure 6 19 Example of Policies Configured with Optional Names in the DSCP Table 3 Assign the policies to the codepoints in the selected packet types 6 42 ...

Page 233: ...he ToS byte There are 64 possible codepoints In the switches covered by this manual the default qos configuration includes the codepoint having the 802 1p priority setting for Expedited Forwarding while all others including the Assured Forward ing codepoints are unused and listed with No override for a Priority Refer to figure 6 11 on page 6 59 for an illustration of the default DSCP policy table ...

Page 234: ...not recommended Refer to the Note on page 6 10 Precedence Bits This element is a subset of the DSCP and is comprised of the upper three bits of the ToS byte When configured to do so the switch uses the precedence bits to determine a priority for handling the associated packet The switch does not change the setting of the prece dence bits Using the ToS Precedence bits to prioritize IPv4 packets rel...

Page 235: ... on the 802 1p priority used the packet will leave the switch through one of the following queues 1 2 low priority 0 3 normal priority 4 5 high priority 6 7 high priority If No override the default has been configured for a specified codepoint then the packet is not prioritized by ToS and by default is sent to the normal priority queue IPPacketSentOut an Untagged Port in a VLAN Same as above plus ...

Page 236: ...clude 802 1p priority DSCP policy Assigning a new DSCP and an associated 802 1p priority inbound packets must be IPv4 For operation when other QoS classifiers apply to the same traffic refer to Classifiers for Prioritizing Outbound Packets on page 6 9 Not e QoS with VID priority applies to static VLANs only and applying QoS to dynamic VLANs created by GVRP operation is not supported A VLAN must ex...

Page 237: ...configure one QoS classifier for each VLAN ID Default No override no vlan vid qos Removes the specified VLAN ID as a QoS classifier and resets the priority for that VLAN to No override show qos vlan priority Displays a listing of the QoS VLAN ID classifiers currently in the running config file with their priority data 1 For example suppose that you have the following VLANs configured on the switch...

Page 238: ... Status Assigning a DSCP Policy Based on VLAN ID VID This option assigns a previously configured DSCP policy codepoint and 802 1p priority to outbound IP packets having the specified VLAN ID VID That is the switch 1 Selects an incoming IP packet on the basis of the VLAN ID it carries 2 Overwrites the packet s DSCP with the DSCP configured in the switch for such packets 3 Assigns the 802 1p priorit...

Page 239: ...to Differentiated Services Codepoint DSCP Mapping on page 6 58 Not e A codepoint must have an 802 1p priority 0 7 before you can configure the codepoint for use in prioritizing packets by VLAN ID If a codepoint you want to use shows No override in the Priority column of the DSCP Policy table show qos dscp map then assign a priority before proceeding 4 Configure the switch to assign the DSCP policy...

Page 240: ...ecified VLAN show qos device priority Displays a listing of all QoS VLAN ID classifiers currently in the running config file For example suppose you wanted to assign this set of priorities VLAN ID DSCP Priority 40 000111 7 30 000101 5 20 000010 1 1 000010 1 1 Determine whether the DSCPs already have priority assignments which could indicate use by existing applications This is not a problem as lon...

Page 241: ... 3 Assign the DSCP policies to the selected VIDs and display the result Figure 6 27 The Completed VID DSCP Priority Configuration The switch will now apply the DSCP policies in figure 6 27 to packets received on the switch with the specified VLAN IDs This means the switch will Overwrite the original DSCPs in the selected packets with the new DSCPs specified in the above policies Assign the 802 1p ...

Page 242: ...t This option assigns a priority to outbound packets having the specified source port Configure this option by either specifying the source port ahead of the qos command or moving to the port context for the port you want to configure for priority For configuring multiple source ports with the same priority you may find it easier to use the interface port list command to go to the port context ins...

Page 243: ...ng source ports Source Port Priority 1 3 2 4 3 5 8 5 9 11 6 1 Execute the following commands to prioritize traffic received on the above ports Figure 6 28 Configuring and Displaying Source Port QoS Priorities 2 Remove port 1 from QoS prioritization In this instance No override indicates that port A1 is not prioritized by QoS Figure 6 29 Returning a QoS Prioritized VLAN to No override Status 6 53 ...

Page 244: ...priorities is not recommended Refer to the Note on page 6 10 For more on DSCP refer to Terminology on page 6 6 Steps for Creating a Policy Based on Source Port Classifiers Not e You can select one DSCP per source port Also configuring a new DSCP for a source port automatically overwrites replaces any previous DSCP or 802 1p priority configuration for that port 1 Identify the source port classifier...

Page 245: ...s this priority to a packet the priority determines the packet s queue in the outbound port to which it is sent If the packet leaves the switch on a tagged port it carries the 802 1p priority with it to the next downstream device Default For most codepoints No override See figure 6 11 on page 6 59 on page 6 59 Syntax interface port list qos dscp codepoint Assigns a DSCP policy to packets from the ...

Page 246: ... indicate use by existing applications This is not a problem as long as the configured priorities are acceptable for all applications using the same DSCP Refer to the Note On Changing a Priority Setting on page 6 61 Also a DSCP must have a priority configured before you can assign any QoS classifiers to use it The DSCPs for this example have not yet been assigned an 802 1p priority level Figure 6 ...

Page 247: ...ers To Configure QoS for Outbound Traffic Priorities Configured in this step Figure 6 31 Assign Priorities to the Selected DSCPs 3 Assign the DSCP policies to the selected source ports and display the result Figure 6 32 The Completed Source Port DSCP Priority Configuration 6 57 ...

Page 248: ...iority as indicated by No override in table 6 11 on page 6 59 You can list the current DSCP Policy table change the codepoint priority assignments and assign optional names to the codepoints Syntax show qos dscp map Displays the DSCP Policy Table qos dscp map codepoint priority 0 7 name ascii string Configures an 802 1p priority for the specified codepoint and optionally an identifying policy name...

Page 249: ...rride No override No override No override 101011 101100 101101 101110 101111 110000 110001 110010 110011 110100 110101 110110 110111 111000 111001 111010 111011 111100 111101 111110 111111 No override No override No override 7 No override No override No override No override No override No override No override No override No override No override No override No override No override No override No ov...

Page 250: ...the non default setting in the show config display For example in the default configuration the following codepoint settings are true Codepoint Default Priority 001100 1 001101 No override 001110 2 If you change all three settings to a priority of 3 and then execute write memory the switch will reflect these changes in the show config listing Configure these three codepoints with non default prior...

Page 251: ...e DSCP Policy table you must delete or change this usage before you can change the priority setting on the codepoint Otherwise the switch blocks the change and displays this message Cannot modify DSCP Policy codepoint in use by other qos rules In this case use show qos classifier to identify the specific classifiers using the policy you want to change that is show qos device priority show qos port...

Page 252: ...urrently Using the Policy Suppose that codepoint 000001 is in use by one or more classifiers If you try to change its priority you see a result similar to the following Figure 6 34 Example of Trying To Change the Priority on a Policy In Use by a Classifier In this case you would use steps similar to the following to change the priority 1 Identify which classifiers use the codepoint you want to cha...

Page 253: ...is to be changed Figure 6 35 Example of a Search to Identify Classifiers Using a Codepoint You Want To Change 2 ChangetheclassifierconfigurationsbyassigningthemtoadifferentDSCP policy or to an 802 1p priority or to No override For example a Delete the policy assignment for the device priority classifier That is assign it to No override b Create a new DSCP policy to use for re assigning the remaini...

Page 254: ... port priority classifier to the new DSCP policy d Assign the udp port 1260 classifier to an 802 1p priority 3 Reconfigure the desired priority for the 000001 codepoint ProCurve config qos dscp map 000001 priority 4 4 You could now re assign the classifiers to the original policy codepoint or leave them as currently configured 6 64 ...

Page 255: ... packet is serviced by the high priority queue when leaving the switch IGMP High Priority QoSConfiguration Affects Packet Switch Port Output Queue Outbound 802 1p Setting Requires Tagged VLAN Not Enabled Yes Determined by QoS Determined by QoS Enabled See above para High As determined by QoS if QoS is graph active QoS Messages in the CLI Message Meaning DSCP Policy decimal codepoint not configured...

Page 256: ...configuring VLAN based classifiers for those VLANs For Devices that Do Not Support 802 1Q VLAN Tagged Ports For communication between these devices and the switch connect the device to a switch port configured as Untagged for the VLAN in which you want the device s traffic to move Port Tagging Rules For a port on the switch to be a member of a VLAN the port must be configured as either Tagged or U...

Page 257: ...ntry already reached All Switches Not Supported Useofaninbound802 1ppacketpriority as a classifier for remapping a packet s outbound priority to different 802 1p priority For example where inbound packets carry an 802 1p priority of 1 QoS cannot be configured use this priority as a classifier for changing the outbound priority to 0 Not Supported TCP UDP QoS is not supported on fragmented packets Q...

Page 258: ...Quality of Service QoS Managing Bandwidth More Effectively QoS Operating Notes and Restrictions 6 68 ...

Page 259: ...riod 7 10 Enabling Proxy ARP 7 12 Configuring Forwarding Parameters 7 13 Enabling Forwarding of Directed Broadcasts 7 13 Configuring ICMP 7 15 Disabling ICMP Messages 7 15 Disabling Replies to Broadcast Ping Requests 7 15 Disabling ICMP Destination Unreachable Messages 7 16 Disabling ICMP Redirects 7 17 Configuring Static IP Routes 7 17 Static Route Types 7 17 Static IP Route Parameters 7 18 Stati...

Page 260: ...7 30 Option 82 Field Content 7 32 Forwarding Policies 7 34 Multiple Option 82 Relay Agents in a Client Request Path 7 35 Validation of Server Response Packets 7 36 Multinetted VLANs 7 38 Configuring Option 82 Operation on the Routing Switch 7 38 Operating Notes 7 40 UDP Broadcast Forwarding 7 42 Overview 7 42 Subnet Masking for UDP Forwarding Addresses 7 43 Configuring and Enabling UDP Broadcast F...

Page 261: ... single VLAN Default_VLAN on the routing switch In that configuration a single IP address serves as the management access address for the entire routing switch If routing is enabled on the routing switch the IP address on the single VLAN also acts as the routing interface Each IP address range specified by an IP address and a subnet mask or mask bits must be in a single subnet and must be configur...

Page 262: ... Table The ARP cache contains entries that map IP addresses to MAC addresses Generally the entries are for devices that are directly attached to the routing switch ARP Cache The ARP cache contains dynamic learned entries The soft ware places a dynamic entry in the ARP cache when the routing switch learns a device s MAC address from an ARP request or ARP reply from the device The software can learn...

Page 263: ...l independent value from 1 255 The IP route table is displayed by entering the CLI command show ip route from any context level in the console CLI Here is an example of an entry in the IP route table Destination Network Mask Gateway Type Sub Type Metric 1 1 0 0 255 255 0 0 99 1 1 2 connected 1 Figure 7 2 Example of IP Route Table Entry Each IP route table entry contains the destination s IP addres...

Page 264: ... address of a device on the network The router sends the IP address of a device in the ARP request and receives the device s MAC address in an ARP reply Enabled 7 8 ARP age The amount of time the device keeps a MAC address learned through ARPinthe device sARPcache Thedeviceresetsthetimertozeroeach time the ARP entry is refreshed and removes the entry if the timer reaches the ARP age 20 minutes 7 1...

Page 265: ...ute table does not containaroutetothedestination FortheSwitch5300XLSeriesdevices enteranexplicitdefaultroute 0 0 0 00 0 0 0or0 0 0 0 0 as a staticroute in the IP route table None configured 7 18 IP Interface Parameters for Routing Switches Table 7 2 lists the interface level IP parameters for routing switches Table 7 2 IP Interface Parameters Routing Switches Parameter Description Default See page...

Page 266: ...ameters Address Resolution Protocol ARP is a standard IP protocol that enables an IP routing switch to obtain the MAC address of another device s interface when the routing switch knows the IP address of the interface ARP is enabled by default and cannot be disabled How ARP Works A routing switch needs to know a destination s MAC address when forwarding traffic because the routing switch encapsula...

Page 267: ...ress and MAC address A static entry enters the ARP cache from the static ARP table which is a separate table when the interface for the entry comes up To ensure the accuracy of the ARP cache each dynamic entry has its own age timer The timer is reset to zero each time the routing switch receives an ARP reply or ARP request containing the IP address and MAC address of the entry If a dynamic entry r...

Page 268: ...n the ARP cache The switch resets the timer to zero each time the ARP entry is refreshed and removes the entry if the timer reaches the ARP age You can increase the ARP age timeout maximum to 24 hours or more with this command Syntax no ip arp age 1 1440 infinite Allows the ARP age to be set from 1 to 1440 minutes 24 hours If the option infinite is configured the internal ARP age timeout is set to...

Page 269: ...also view the value of the Arp Age timer in the configuration file ProCurve config show running config Running configuration J9091A Configuration Editor Created on release K 12 XX hostname 8200LP module 2 type J8702A module 3 type J8702A module 4 type J8702A ip default gateway 15 255 120 1 ip arp age 1000 snmp server community public Unrestricted snmp server host 16 180 1 240 public vlan 1 name DE...

Page 270: ...che To remove a specific entry in the ARP cache enter this command Syntax no arp IP ADDRESS Allows removal of any dynamic entry in the ARP cache Enabling Proxy ARP Proxy ARP allows a routing switch to answer ARP requests from devices on one network on behalf of devices in another network Since ARP requests are MAC layer broadcasts they reach only the devices that are directly connected to the send...

Page 271: ...this parameter is covered in the chapter on IP addressing in the Management and Configuration Guide Forwarding of directed broadcasts see below Not e These parameters are global and thus affect all IP interfaces configured on the routing switch Enabling Forwarding of Directed Broadcasts A directed broadcast is an IP broadcast to all devices within a single directly attached network or sub net A ne...

Page 272: ...gure the following ICMP limits Burst Normal The maximum number of ICMP replies to send per second Reply Limit You can enable or disable ICMP reply rate limiting Disabling ICMP Messages ProCurve devices are enabled to reply to ICMP echo messages and send ICMP Destination Unreachable messages by default You can selectively disable the following types of Internet Control Message Protocol ICMP message...

Page 273: ...ver the device sends an ICMP Unreachable message back to the host that sent the packet The following types of ICMP Unreachable messages are generated Administration The packet was dropped by the ProCurve device due to a filter or ACL configured on the device Fragmentation needed The packet has the Don t Fragment bit set in the IP Flag field but the ProCurve device cannot forward the packet without...

Page 274: ...ble messages enter the following command ProCurve config no ip icmp unreachable Syntax no ip icmp unreachable Disabling ICMP Redirects You can disable ICMP redirects on the ProCurve routing switch only on a global basis for all the routing switch interfaces To disable ICMP redirects globally enter the following command at the global CONFIG level of the CLI ProCurve config no ip icmp redirects Synt...

Page 275: ...o the loop back network with the single exception of traffic to the host address of the switch s loopback interface 127 0 0 1 32 Figure Figure 7 8 on page zBlue 21 illustrates the default Null route entry in the switch s routing table Static IP Route Parameters When you configure a static IP route you must specify the following param eters The IP address and network mask for the route s destinatio...

Page 276: ...5 0 matches all hosts within the Class C sub net address specified by the dest ip addr Alternatively you can use CIDR notation and specify the number of bits in the network mask For example you can enter 209 157 22 0 24 instead of 209 157 22 0 255 255 255 0 The next hop ip addr is the IP address of the next router in the path to the destination Not e The switch allows one static route configured f...

Page 277: ... reject or ip route ip addr mask bits reject Using this command the routing switch will drop packets that contain the specified IP address in the destination field instead of forwarding them The reject parameter indicates that this is a null route You must specify this parameter to make this a null route Displaying Static Route Information The show ip route command provides several options for dis...

Page 278: ...VLAN 30 10 30 224 3 Switch A VLAN 29 10 29 224 2 VLAN 30 10 30 224 1 Switch B VLAN 30 10 30 224 2 VLAN 31 10 31 224 1 Switch C Destination Network In this example a static route to the 10 31 224 0 network has been configured in switch A In this case 10 30 224 1istheconfigured gateway Figure 7 7 Example of a Routed Network Figure 7 8 illustrates the show ip route output describing the routes availa...

Page 279: ...P Routes Default Loopback Network Default Loopback Interface Default Null Route Configured Static Route Destinations Directly Connected to the Switch Lists the Data for the Specified Route Figure 7 8 Examples of the Show IP Route Command 7 21 ...

Page 280: ...RDP uses the following parameters If you enable IRDP on individual VLAN interfaces you can configure these parameters on an individual VLAN inter face basis Packet type The routing switch can send Router Advertisement messages as IP broadcasts or as IP multicasts addressed to IP multicast group 224 0 0 1 The default packet type is IP broadcast Hold time Each Router Advertisement message contains a...

Page 281: ...eway The preference can be a number from 4294967296 to 4294967295 The default is 0 Enabling IRDP Globally To enable IRDP globally enter the following command ProCurve config ip irdp This command enables IRDP on the IP interfaces on all ports Each port uses the default values for the IRDP parameters Enabling IRDP on an Individual VLAN Interface To enable IRDP on an individual VLAN interface and con...

Page 282: ...sement to be valid When a host receives a new Router Advertisement message from the routing switch the host resets the hold time for the routing switch to the hold time specified in the new advertisement If the hold time of an advertisement expires the host discards the advertisement concluding that the router interface that sent the advertisement is no longer available The value must be greater t...

Page 283: ...eference number This parameter specifies the IRDP preference level of this routing switch If a host receives Router Advertisements from multiple routers the host selects the router interface that sent the message with the highest preference as the host s default gateway The valid range is 4294967296 to 4294967295 Default 0 Displaying IRDP Information To display IRDP information enter the following...

Page 284: ...ents The DHCP relay agent transfers the DHCP messages from DHCP clients located on a subnet without DHCP server to other subnets It also relays answers from DHCP servers to DHCP clients DHCP Packet Forwarding The DHCP relay agent on the routing switch forwards DHCP client packets to all DHCP servers that are configured in the table administrated for each VLAN Unicast Forwarding The packets are for...

Page 285: ...d to the DHCP Client Enabling DHCP Relay To enable the DHCP Relay function for the routing switch at the Config CLI context level enter the command ProCurve config dhcp relay To disable the DHCP Relay function enter the command ProCurve config no dhcp relay Configuring a Helper Address At the VLAN configuration CLI context level enter the commands to add the DHCP server s IP address to the VLANs l...

Page 286: ... clients requesting an IP address can enhance network access protection by blocking attempts to use an invalid Option 82 field to imitate an authorized client or by blocking attempts to use response packets with missing or invalid Option 82 suboptions to imitate valid response packets from an authorized DHCP server An Option 82 relay agent can also eliminate unnecessary broadcast traffic by forwar...

Page 287: ...ent 3 DHCP Option 82 Server Subnets 10 and 20 in relay agent 1 form policy boundaries that can be defined by the IP address of the subnet on which the client request is received Relay Agent 1 Routing Switch with DHCP Option 82 Enabled Client 1 Client 2 VLAN 20 10 10 20 1 Switch B 10 10 20 3 Client 6 Client 4 Client 5 10 10 20 2 10 10 30 1 Relay Agent 2 Routing Switch without DHCP Option 82 Enabled...

Page 288: ... unique forwarding policy which enhances DHCP policy control over discrete areas of a network Primary Relay Agent In the path between a DHCP client and a DHCP server the first routing switch configured to support DHCP operation that a client DHCP request encounters in the path from the client to a DHCP server Relay Agent A routing switch that is configured to support DHCP operation Remote ID In Op...

Page 289: ... data theserverreceivedwiththeclientrequest TherelayagentstripsofftheOption 82 data and forwards the response packet out the port indicated in the response as the Circuit ID client access port Under certain validation conditions described later in this section a relay agent detecting invalid Option 82 data in a response packet may drop the packet Switch Client DHCP Option82 Server Relay Agent 1 ad...

Page 290: ...he routing switch by using the IP address of the VLAN receiving the client request Use the IP address option if the server will apply different IP addressing policies to DHCP client requests from ports in different VLANs on the same routing switch Use the MAC address option if on a given routing switch it does not matter to the DHCP server which VLAN is the source of a client request that is use t...

Page 291: ...ess of whether a slot is occupied the circuitIDforagivenportisthesequential indexnumber for that port position in the slot To view the Index number assign ments for ports in the routing switch use the walkmib ifname command For example the circuit ID for a client connected to port 11 on a ProCurve 2650 PWR J8165A switch is 11 However the Circuit ID for port B11 on a ProCurve 5304xl J4850A is 37 Se...

Page 292: ... can define a DHCP policy boundaryandappenditsownOption82fieldtotheclientrequestpacket Theserver can then determine in detail the agent hops the packet took and can be configured with a policy appropriate for any policy boundary on the path Note In networks with multiple relay agents between a client and an Option 82 server append can be used only if the server supports multiple Option 82 fields i...

Page 293: ... the request As a general guideline configure drop on relay agents at the edge of a network where an inbound client request with an appended Option 82 field may be unauthorized a security risk or for some other reason should not be allowed Multiple Option 82 Relay Agents in a Client Request Path Where the client is one router hop away from the DHCP server only the Option 82 field from the first an...

Page 294: ...licy boundary is at relay agent A but more global policy boundaries can exist at relay agents B and C Figure 7 16 Example Allowing Only an Upstream Relay Agent To Contribute an Option 82 Field VLAN 10 DHCP Option 82 Server Client DROP VLAN 20 VLAN 20 VLAN 30 VLAN 10 VLAN 20 No Option 82 REPLACE Relay Agent A Relay Agent B Relay Agent C Like the first example above this configuration drops client r...

Page 295: ... ID combination that did not origi nate with the given relay agent append Drop the server response packet Forward server response packet to a downstream device replace or drop1 Drop the server response packet Drop the server response packet keep2 Forward server response packet to a downstream device Forward server response packet to a downstream device The server response packet carries data indic...

Page 296: ...igured on that VLAN Configuring Option 82 Operation on the Routing Switch Syntax dhcp relay option 82 append validate replace validate drop validate keep ip mac append Configures the routing switch to append an Option 82 field to the client DHCP packet If the client packet has any existing Option 82 field s assigned by another device then the new field is appended to the existing field s The appen...

Page 297: ...Blue 33 validate This option operates when the routing switch is configured with append replace or drop as a forwarding policy With validate enabled the routing switch applies stricter rules to an incoming Option 82 server response to determine whether to forward or drop the response For more information refer to Validation of Server Response Packets on page 7 36 ip mac This option specifies the r...

Page 298: ...e same DHCP server s Note that when using 802 1X on a 5300xl switch running software release E 09 xx or greater a port s VLAN membership may be changed by a RADIUS server responding to a client authentication request In this case the DHCP server s accessible from the port may change if the VLAN assigned by the RADIUS server has different DHCP helper addresses than the VLAN used by unauthenticated ...

Page 299: ...d client requests and server responses without any effect on Option 82 fields in the packets If the routing switch is not able to add an Option 82 field to a client s DHCP request due to the message size exceeding the MTU Maximum Transmission Unit size then the request is forwarded to the DHCP server without Option 82 information and an error message is logged in the switch s Event Log 7 41 ...

Page 300: ...vice or a single subnet The switch ignores any entry that designates multiple subnets Not e The number of UDP broadcast forwarding entries supported is affected by the number of IP helper addresses configured to support DHCP Relay Refer to Operating Notes for UDP Broadcast Forwarding on page 7 47 A UDP forwarding entry includes the desired UDP port number and can be either an IP unicast address or...

Page 301: ...estination VLAN for UDP 1812 from clients on VLAN 1 VLAN 3 15 75 12 1 255 255 255 0 None N A Destination VLAN for UDP 1813 broadcasts from clients on VLAN 1 Not e If an IP server or subnet entry is invalid a switch will not try to forward UDP packets to the configured device or subnet address Subnet Masking for UDP Forwarding Addresses The subnet mask for a UDP forwarding address is the same as th...

Page 302: ... configured in VLANs on the switch Default Disabled Configuring UDP Broadcast Forwarding on Individual VLANs This command routes an inbound UDP broadcast packet received from a client on the VLAN to the unicast or broadcast address configured for the UDP port type Syntax no ip forward protocol udp ip address port number port name Used in a VLAN context to configure or remove a server or broadcast ...

Page 303: ...e specified broadcast address For more information on UDP port numbers refer to TCP UDP Port Number Ranges on page 7 47 port name Allows use of common names for certain well known UDP port numbers You can type in the specific name instead of having to recall the corresponding number dns Domain Name Service 53 ntp Network Time Protocol 123 netbios ns NetBIOS Name Service 137 netbios dgm NetBIOS Dat...

Page 304: ...h or on a specific VLAN Global Display Showing UDP Broadcast ForwardingStatus and Configured Forwarding Addresses for Inbound UDP Broadcast Traffic for All VLANs Configured on the routing switch Figure 7 17 Displaying Global IP Forward Protocol Status and Configuration Display Showing UDP Broadcast Forwarding Status and the Configured Forwarding Addresses for inbound UDP Broadcast Traffic on VLAN ...

Page 305: ...tocol Number Assignment Services P Under Directory of General Assigned Numbers heading Port Numbers Messages Related to UDP Broadcast Forwarding Message Meaning udp bcast forward IP Routing support must be enabled first Appears in the CLI if an attempt to enable UDP broadcast forwarding has been made without IP routing being enabled first Enable IP routing then enable UDP broadcast forwarding UDP ...

Page 306: ...IP Routing Features UDP Broadcast Forwarding 7 48 ...

Page 307: ...f Another Stack Using the CLI To Access Member Switches for Configuration Overview of Configuring and Bringing Up a Stack 8 10 General Steps for Creating a Stack 8 12 8 14 Switch 8 14 Using the Menu To Manage a Candidate Switch 8 16 Using the Commander To Manage The Stack 8 18 Configuration Changes and Monitoring Traffic 8 25 8 26 Monitoring Stack Status 8 27 Using the CLI To View Stack Status and...

Page 308: ...nagement Contents Using the CLI To Disable or Re Enable Stacking 8 46 Transmission Interval 8 46 Stacking Operation with Multiple VLANs Configured 8 46 Web Viewing and Configuring Stacking 8 47 Status Messages 8 48 8 2 ...

Page 309: ...y specialized cabling For an overview of stacking features refer to the table on page 8 4 For general information on how to use the switch s built in interfaces see Chapter 3 Using the Menu Interface Chapter 4 Using the Command Line Interface CLI Chapter 5 Using the Web Browser Interface Chapter 6 Switch Memory and Configuration 8 3 ...

Page 310: ...er into another stack n a page 8 25 page 8 40 remove a member from a stack n a page 8 22 page 8 41 or page 8 42 pull a candidate into a stack n a page 8 18 page 8 37 pull a member from another stack n a page 8 20 page 8 39 convert a commander or member to a n a page 8 25 page 8 40 member of another stack access member switches for n a page 8 24 page 8 43 configuration and traffic monitoring disabl...

Page 311: ...t Stacking As of December 2007 the following ProCurve devices support stacking ProCurve Switch 6108 ProCurve Switch 4104GL ProCurve Switch 4108GL ProCurve Switch 2650 ProCurve Switch 2626 ProCurve Switch 2610 ProCurve Switch 2610 PWR ProCurve Switch 2512 ProCurve Switch 2524 ProCurve Switch 8000M ProCurve Switch 4000M ProCurve Switch 2424M ProCurve Switch 2400M ProCurve Switch 1600M Requires softw...

Page 312: ...e Switch B Before Stack named Engineering consists of Commander and Switch C Switch B is a Candidate eligible to join the stack Commander Switch A Member Switch C Member Switch B After Switch B joins the stack thus changing from a Candidate to a Member of the stack Stack Stack Name Engineering Stack Name Engineering General Stacking Operation After you configure one switch to operate as the Comman...

Page 313: ...tion on how to use the web browser interface to configure stacking see the online Help for the web browser interface Web Browser Interface Window for Commander Switches The web browser interface window for a Commander switch differs in appearance from the same window for non commander switches See figure 8 38 on page 8 46 Operating Rules for Stacking General Rules Stacking is an optional feature e...

Page 314: ...k Name Required Only one Commander switch is allowed per stack The Commander s Manager and Operator passwords are assigned to any switch becoming a Member of the stack If you change the Commander s passwords the Commander propagates the new passwords to all stack Members StandardSNMPcommunity operation The Commander also operates as an SNMP proxy to Members for all SNMP communities config ured in ...

Page 315: ...forcommunitiesto which the Commander belongs To join other communities that exclude the Commander the Member must have its own IP address Loss of stack membership means loss of membership in any commu nity that is configured only in the Commander See SNMP Community Opera tion in a Stack on page 8 44 Not e In the default stack configuration the Candidate Auto Join parameter is enabled but the Comma...

Page 316: ...3 or later You can get a copy of the latest software version from the ProCurve Networking website and or copy it from one switch to another For downloading instructions see appendix A File Transfers in the Management and Configuration Guide for these switch models Options for Configuring a Commander and Candidates Depending on how Commander and Candidate switches are configured Candidates can join...

Page 317: ...create a stack is to 1 Configure a switch as a Commander 2 Configure IP addressing and a stack name on the Commander 3 Set the Commander s Auto Grab parameter to Yes 4 Connect Candidate switches in their factory default configuration to the network This approach automatically creates a stack of up to 16 switches including the Commander However this replaces manual control with an automatic process...

Page 318: ...e the table on page 8 47 Stack with unique systemnameforeach switch Figure 8 4 Using the System Name to Help Identify Individual Switches 2 Configure the Commander switch Doing this first helps to establish consistency in your stack configuration which can help prevent startup problems AstackrequiresoneCommanderswitch Ifyouplantoimplement more than one stack in a subnet broadcast domain the easies...

Page 319: ...will begin discovering the available Candidates in the subnet If you configured the Commander to automatically add Members Auto Grab Yes the first fifteen discovered Candidates meeting both of the following criteria will automatically join the stack Auto Join parameter set to Yes the default Manager password not configured If you configured the Commander to manually add Members Auto Grab set to No...

Page 320: ...enu by pressing 3 to select Stack Configuration Figure 8 6 The Default Stack Configuration Screen 4 Move the cursor to the Stack State field by pressing E for Edit Then use the Space bar to select the Commander option 5 Press the downarrow key to display the Commander configuration fields in the Stack Configuration screen 8 14 ...

Page 321: ...et to Yes the default Candidate setting and does not have a previously configured password 8 Accept or change the transmission interval default 60 seconds then press Enter to return the cursor to the Actions line 9 Press S for Save to save your configuration changes and return to the Stacking menu Your Commander switch should now be ready to automatically or manually acquire Member switches from t...

Page 322: ...lt Setting Other Settings Stack State Candidate Commander Member or Disabled Auto Join Yes No Transmission 60 Seconds Range 1 to 300 seconds Interval Using the Menu To Push a Switch Into a Stack Modify the Switch s Configuration or Disable Stacking on the Switch Use Telnet or the web browser interface to access the Candidate if it has an IP address Other wise use a direct connection from a termina...

Page 323: ...idate into a specific Commander s stack i Use the space bar to select Member ii Press Tab once to display the Commander MAC Address param eter then enter the MAC address of the desired Commander To change Auto Join or Transmission Interval use Tab to select the desired parameter and To change Auto Join use the Space bar To change Transmission Interval type in the new value in the range of 1 to 300...

Page 324: ...Menu To Manually Add a Candidate to a Stack In the default configuration you must manually add stack Members from the Candidate pool Reasons for a switch remaining a Candidate instead of becoming a Member include any of the following Auto Grab in the Commander is set to No the default Auto Join in the Candidate is set to No Note When a switch leaves a stack and returns to Candidate status its Auto...

Page 325: ...available switch number SN You have the optionofassigninganyotheravailablenumber Candidate List Figure 8 10 Example of Candidate List in Stack Management Screen 3 Either accept the displayed switch number or enter another available number The range is 0 15 with 0 reserved for the Commander 4 Use the downarrow key to move the cursor to the MAC Address field then type the MAC address of the desired ...

Page 326: ...ager password For status descriptions see the table on page 8 47 New Member added in step 6 Figure 8 11 Example of Stack Management Screen After New Member Added Using the Commander s Menu To Move a Member From One Stack to Another Where two or more stacks exist in the same subnet broadcast domain you can easily move a Member of one stack to another stack if the destination stack is not full If yo...

Page 327: ...ample of How the Stacking Status All Screen Helps You Find Member MAC Addresses 3 In the Stacking Status All screen find the Member switch that you want to move and note its MAC address then press B for Back to return to the Stacking Menu 4 Display the Commander s Stack Management screen by selecting 4 Stack Management For an example of this screen see figure 8 9 on page 8 19 5 Press A for Add to ...

Page 328: ...d You can push a Member from one stack to another by going to the Member s interface and entering the MAC address of the destination stack Commander in the Member s Commander MAC Address field Using this method moves the Member to another stack without a need for knowing the Manager password in that stack but also blocks access to the Member from the original Commander Using the Commander s Menu T...

Page 329: ... the table on page 8 47 Stack Member List Figure 8 13 Example of Stack Management Screen with Stack Members Listed 2 Use the downarrow key to select the Member you want to remove from the stack Figure 8 14 Example of Selecting a Member for Removal from the Stack 3 Type D for Delete to remove the selected Member from the stack You will then see the following prompt Figure 8 15 The Prompt for Comple...

Page 330: ... to access the Member s console interface for the same configu ration and monitoring that you would do through a Telnet or direct connect access 1 From the Main Menu select 9 Stacking 5 Stack Access You will then see the Stack Access screen For status descriptions see the table on page 8 47 Figure 8 16 Example of the Stack Access Screen Use the downarrow key to select the stack Member you want to ...

Page 331: ... Member s Main Menu b Press 0 for Logout then Y for Yes c Press Return You should now see the Commander s Stack Access screen For an example see figure 8 16 on page 8 24 Converting a Commander or Member to a Member of Another Stack When moving a commander the following procedure returns the stack mem bers to Candidate status with Auto Join set to No and converts the stack Commander to a Member of ...

Page 332: ...ion with a Tagged VLAN on page 8 45 This can help you in such ways as determining the stacking configuration for individual switches identifying stack Members and Candidates and determining the status of individual switches in a stack See table 8 5 on page 8 26 Table 8 5 Stack Status Environments Screen Name Commander Member Candidate Stack Status This Switch Commander s stacking configuration Dat...

Page 333: ...acking Status All You will then see a Stacking Status screen similar to the following For status descriptions see the table on page 8 47 Figure 8 18 Example of Stacking Status for All Detected Switches Configured for Stacking Viewing Commander Status This procedure displays the Commander and stack configuration plus information identifying each stack member To display the status for a Commander go...

Page 334: ...address To display the status for a Member 1 Go to the console Main Menu of the Commander switch and select 9 Stacking 5 Stack Access 2 Use the downarrow key to select the Member switch whose status you want to view then press X for eXecute You will then see the Main Menu for the selected Member switch 3 In the Member s Main Menu screen select 9 Stacking 1 Stacking Status This Switch You will then...

Page 335: ...configuration To display the status for a Candidate 1 Use Telnet if the Candidate has a valid IP address for your network or a direct serial port connection to access the menu interface Main Menu for the Candidate switch and select 9 Stacking 1 Stacking Status This Switch You will then see the Candidate s Stacking Status screen Figure 8 21 Example of a Candidate s Stacking Screen 8 29 ...

Page 336: ...l Lists all stack Commanders Members and Candidates with their individual status no stack Any Stacking Capable Switch Enables or disables stacking on the switch Default Stacking Enabled no stackcommander stackname Candidate or Commander Converts a Candidate to a Commander or changes the stack name of an existing commander No form eliminates named stack and returns Commander and stack Members to Ca...

Page 337: ...iew the list of SN assignments for a stack execute the show stack command in the Commander s CLI no stack join mac addr Candidate Causes the Candidate to join the stack whose Commander has the indicatedMAC address No form isusedin a Member to remove it from the stack of the Commander having the specified address Member Pushes the member to another stack whose Commander has the indicated MAC addres...

Page 338: ...e CLI in a to display the stack status for that switch In this case the switch is in the default stacking configuration Syntax show stack Figure 8 22 Example of Using the Show Stack Command To List the Stacking Configuration for an Individual Switch Viewing the Status of Candidates the Commander Has Detected This example illustrates how to list stack candidates the Commander has discovered in the ...

Page 339: ... was executed is a candidate it is included in the Others category Syntax show stack all Figure 8 24 Result of Using the Show Stack All Command To List Discovered Switches in the IP Subnet Viewing the Status of the Commander and Current Members of the Commander s Stack The next example lists all switches in the stack of the selected switch Syntax show stack view Figure 8 25 Example of the Show Sta...

Page 340: ... IP address in order for stacking to operate properly For more on the primary VLAN see The Primary VLAN on page 2 7 2 Configure a Manager password on the switch intended for commander The Commander s Manager password controls access to stack Mem bers For more on passwords see the local manager and operator pass word information in the Access Security Guide for your switch Configure the Stack Comma...

Page 341: ...er to the Commander of a New Stack This procedure requires that you first remove the Member from its current stack then create the new stack If you do not know the MAC address for the Commander of the current stack use show stack to list it Syntax no stack stack commander stack name Suppose forexample thataProCurveswitchnamed BeringSea isaMember of a stack named Big_Waters To use the switch s CLI ...

Page 342: ... that may exist in the same subnet You cannot add a Candidate that the Commander has not discovered In its default configuration the Commander s Auto Grab parameter is set to No to give you manual control over which switches join the stack and when they join This prevents the Commander from automatically trying to add every Candidate it finds that has Auto Join set to Yes the default for the Candi...

Page 343: ...ly adds a new Member it assigns an SN from the available pool of unused SNs In this stack the only SNs in use are 0 and 1 so youcan useanySNnumberfrom 2through 15 for new Members The SN of 0 is always reserved for the stack Commander Figure 8 28 Example of How To Determine Available Switch Numbers SNs To display all discovered Candidates with their MAC addresses execute show stack candidates from ...

Page 344: ...Example Showing the Stack After Adding a New Member Using Auto Join on a Candidate In the default configuration a Candi date s Auto Join parameter is set to Yes meaning that it will automatically join a stack if the stack s Commander detects the Candidate and the Com mander s Auto Grab parameter is set to Yes You can disable Auto Join on a Candidate if you want to prevent automatic joining in this...

Page 345: ...or the Candidate switch For example suppose that a Candidate named North Sea with Auto Join off and a valid IP address of 10 28 227 104 is running on a network You could Telnet to the Candidate use show stack all to determine the Commander s MAC address and then push the Candidate into the desired stack 1 Telnet to the Candidate named North Sea 2 Use show stack all to display the Commander s MAC a...

Page 346: ...l the desired switch into the new stack ProCurve config stack member 1 mac address 0060b0 df1a00 Where 1 is an unused switch number SN Since a password is not set on the Candidate a password is not needed in this example You could then use show stack all again to verify that the move took place Using a Member CLI To Push the Member into Another Stack You can use the Member s CLI to push a stack Me...

Page 347: ...ember Eliminates the Test stack and converts the Commander to a Candidate HelpsyoutoidentifytheMACaddressofthe Commander for the Big_Waters stack Adds the former Test Commander to the Big_Waters stack Using the CLI To Remove a Member from a Stack You can remove a Member from a stack using the CLI of either the Commander or the Member Not e When you remove a Member from a stack the Member s Auto Jo...

Page 348: ...ck ProCurve config no stack member 3 mac address 0030c1 7fc700 where 3 is the North Sea Member s switch number SN 0030c1 7fc700 is the North Sea Member s MAC address Using the Member s CLI To Remove the Member from a Stack Syntax no stack join mac addr To use this method you need the Commander s MAC address which is available using the show stack command in the Member s CLI For example MAC Address...

Page 349: ...signed by the Commander to each member range 1 15 To find the switch number for the Member you want to access execute the show stack view command in the Commander s CLI For example suppose that you wanted to configure a port trunk on the switch named North Sea in the stack named Big_Waters Do do so you would go to the CLI for the Big_Waters Commander and execute show stack view to find the switch ...

Page 350: ...ly configured in the switch If Member Switch 2 ceases to be a stack Member it loses membership in all SNMP communities If Member Switch 3 ceases to be a stack Member it loses membership in the blue and red communities but because it has its own IP addressing retains membership in the public and gray communities Member Switch 1 IP Addr 12 31 29 18 Community Names public the default Member Switch 3 ...

Page 351: ...ing switch You must re enable stacking on the switch before it can become a Candidate Member or Commander Disabling a Member Removes the Member from the stack and changes it to a stand alone nonstacking switch You must re enable stacking on the switch before it can become a Candidate Member or Commander Disabling a Candidate Changes the Candidate to a stand alone non stacking switch Syntax no stac...

Page 352: ...e web browser interface for a Commander appears as shown above The interface for Members and Candidates appears the same as for a non stacking switches To view or configure stacking on the web browser interface 1 Click on the Configuration tab 2 Click on Stacking to display the stacking configuration for an individual switch and make any configuration changes you want for that switch 3 Click on Ap...

Page 353: ...e Member Commander Up The Member has stacking connectivity with the None required Commander Mismatch This may be a temporary condition while a Candidate is Initially waitforanupdate Ifcondi trying to join a stack If the Candidate does not join then tion persists reconfigure the stack configuration is inconsistent Commander or the Member Member Down A Member has become detached from the stack A Che...

Page 354: ...ProCurve Stack Management Configuring Stack Management 8 48 ...

Page 355: ... storm 5 5 5 11 broadcast traffic enabling forwarding of directed 7 13 C caches ARP 7 4 IP forwarding 7 5 CIDR 7 8 CLI configuring RSTP 5 14 configuration 5 9 5 50 7 19 ARP parameters 7 8 Class of Service 6 13 default route 7 18 DHCP Relay 7 26 factory default 2 15 2 21 5 9 5 49 ICMP 7 14 IP routing forwarding parameters 7 13 IP routing parameters 7 8 IRDP 7 22 RSTP from the CLI 5 14 from the menu...

Page 356: ...ment responses to 3 5 advertisements generating 3 10 auto option 3 9 benefit 3 3 block 3 7 CLI configuring 3 13 configurable port options 3 6 configuring learn block disable 3 7 convert dynamic to static 3 6 converting to static VLAN 3 3 disable 3 7 dynamic VLAN and reboots 3 17 dynamic VLANs always tagged 3 4 Effect on maximum allowed VLANs 2 26 forbid option 3 9 GARP 3 3 general operation 3 4 IP...

Page 357: ...route 7 18 DHCP Relay configuration 7 26 directed broadcasts 7 13 forwarding cache 7 5 forwarding parameters 7 13 global parameters 7 6 ICMP configuration 7 14 interface parameters 7 7 IRDP configuration 7 22 null static route 7 19 overview 7 3 parameter configuring 7 8 Proxy ARP enabling 7 12 routing table 7 5 static route configuration 7 18 static route types 7 17 tables and caches 7 4 VLAN inte...

Page 358: ...d port defined 6 6 upstream device defined 6 7 priority QoS criteria for prioritizing packets 6 9 type of service screen 6 34 VID effect of eliminating 6 46 VLAN ID priority 6 46 6 52 priority QoS device priority screen 6 28 IP address source and destination match 6 29 Proxy ARP enabling 7 12 publication data 1 ii Q Quality of Service basic operation 6 7 configuring 6 13 6 20 configuring IP type o...

Page 359: ...ink 5 10 5 52 blocked port 5 9 5 50 BPDU 5 7 broadcast storm 5 5 5 11 caution fast uplink 5 32 configuring per port parameters 5 18 configuring RSTP 5 13 configuring whole switch parameters 5 16 configuring with the menu 5 20 description of operation 5 9 enabling from the browser interface 5 45 enabling in the CLI 5 28 enabling MSTP 5 72 enabling RSTP 5 15 enabling STP 5 15 fast mode 5 24 5 30 fas...

Page 360: ... 5 50 fault tolerance 5 46 force protocol version 5 55 force version 5 64 forwarding paths 5 55 forwarding state 5 63 frame duplication and misordering 5 55 general operation 5 5 5 46 GVRP 5 48 5 55 hello time CIST root propagated 5 54 5 62 hello time override 5 54 hello time propagated 5 54 hop count decremented 5 61 instance 5 5 5 54 5 58 instance forwarding topology 5 54 instance IST 5 48 insta...

Page 361: ...aths 5 48 show commands 5 74 SNMP MIB 5 81 STP as a region 5 47 switch excluded from region 5 81 topology between regions 5 49 trunk root per instance 5 51 trunked link 5 77 trunked link example 5 52 types of MST instances 5 48 VLAN assignments region 5 53 5 54 VLAN membership region 5 52 VLAN change instance 5 58 VLAN configuration error 5 81 VLAN connectivity between regions 5 54 VLAN duplicate ...

Page 362: ... allowed including dynamic 2 19 port assignment 2 19 port configuration 2 33 port monitoring 2 40 port restriction 2 40 port trunk 2 40 primary 2 8 8 10 8 34 8 46 primary VLAN 2 7 primary CLI command 2 22 2 26 primary select in menu 2 16 primary web configure 2 29 primary with DHCP 2 10 prioritizing traffic from with QoS 6 46 6 52 protocol status 2 24 restrictions 2 40 See also GVRP single forward...

Page 363: ......

Page 364: ... Copyright 2007 Hewlett Packard Development Company L P December 2007 Manual Part Number 5991 8641 ...

Reviews: