background image

–  72  –

 

C

HAPTER 

4  

|  Configuring the Switch 

Configuring Power Saving 

 

 

 

Description 

- network managers provide a description of device 

ports.

Summary of Contents for LGS-2816C-RPS

Page 1: ...Lantech LGS 2816C RPS 16 100 1000M SFP 8 10 100 1000T Dual Speed SFP Combo L2 Plus Managed Switch w Redundant Power Supply User Manual...

Page 2: ...MANAGEMENT GUIDE LGS 2816C RPS 16 100 1000M SFP 8 10 100 1000T Dual Speed SFP Combo L2 Plus Managed Switch w Redundant Power Supply LGS 2816C RPS Publication date March 2011 Revision v5 17...

Page 3: ...used throughout this guide to show information NOTE Emphasizes important information or calls your attention to related features or instructions CAUTION Alerts you to a potential hazard that could cau...

Page 4: ...Revision History Release Date Revision 5 17 01 10 2010 B1...

Page 5: ...CONTENTS...

Page 6: ...des an overview of the switch and introduces some basic concepts about network switches It also describes the basic settings required to access the management interface This section includes these cha...

Page 7: ...ontrol Lists Supports up to 128 Access Control Entries ACEs using the shared 128 ACEs for ingress classification DHCP Client Supported DNS Proxy service Port Configuration Speed duplex mode flow contr...

Page 8: ...upports TACACS and RADIUS authentication for management security requirement and SSL and SSH for encryption for all HTTP traffic and all transmitted data for secure remote command line interface CLI a...

Page 9: ...hen uses the EAP between the switch and the authentication server to verify the client s right to access the network via an authentication server i e RADIUS server Other authentication options include...

Page 10: ...s restricted If broadcast traffic rises above a pre defined threshold it will be throttled until the level falls back beneath the threshold REDUDANT POWER SUPPLY Provide a D Sub connector on rear pane...

Page 11: ...lision domain regardless of their physical location or connection point in the network The switch supports the IEEE 802 1Q tagged VLANs standard Members of VLAN groups can be dynamically learned via G...

Page 12: ...or different kinds of forwarding DHCP SNOOPING This feature enables the DHCP Snooping to include information about client when forwarding DHCP requests from a DHCP client to a DHCP server via Trust Po...

Page 13: ...209 81 9 7 Time Zone GMT 8 00 Daylight Saving 0 hour IP Configuration DHCP Setting Disabled IP Address 192 168 1 1 Subnet Mask 255 255 255 0 Default Gateway 192 168 1 254 DNS Manual DNS Server 0 0 0...

Page 14: ...ring Disable Frame Type All PVID 1 Role Access Untag VID 0 Double Tag Disable Port Isolation Port Member None Management VLAN VLAN ID 1 MAC Address Table Age Time 300 secs Disable automatic aging Disa...

Page 15: ...abled Ingress Rate 500 Ingress Unit Kbps Egress Enable Disabled Egress Rate 500 Egress Unit Kbps Storm Control Flooded unicast status Disabled Flooded unicast Rate 1 pps Multicast status Disabled Mult...

Page 16: ...e switch s HTTP web agent allows you to configure switch parameters monitor port connections and display statistics using a standard web browser such as Microsoft IE 6 0 above Netscape V7 1 above or F...

Page 17: ...information and statistics Configure the LLDP Parameters REQUIRED CONNECTIONS The switch provides an RS 232 serial port that enables a connection to a PC or terminal for monitoring and configuring the...

Page 18: ...ss or enable dynamic address assignment via DHCP see Setting an IP Address on page 34 If the switch does not receive a IP Address from a DHCP server it will default to the IP address 192 168 1 1 defau...

Page 19: ...ew password Confirm password Username changed successfully Password changed successfully Manual You have to input the information including IP address and subnet mask If your management station is not...

Page 20: ...ip set ip Usage set ip mask gateway LGS 2816C RPS ip LGS 2816C RPS ip set ip 192 168 20 15 255 255 255 0 192 168 20 250 DYNAMIC CONFIGURATION OBTAINING AN IPV4 ADDRESS If you enable the dhcp option I...

Page 21: ...ocol SNMP applications such as Lantech View You can configure the switch to 1 respond to SNMP requests or 2 generate SNMP traps When SNMP management stations send requests to the switch either to retu...

Page 22: ...the switch from SNMP version 1 or 2c clients it is recommended that you change the default community strings To change the read only or read write community string type either of the following command...

Page 23: ...mp LGS 2816C RPS snmp show trap SNMPv3 Trap Host Configuration No Ver IP Port Community Security Security Auth Priv Name Level Protocol Protocol 1 v2c 192 168 1 10 162 public 2 3 4 5 6 LGS 2816C RPS s...

Page 24: ...er config load tftp server file name Managed Switch LGS 2816C PRS Login admin Passward LGS 2816C PRS config file LGS 2816C PRS config file LGS 2816C PRS config file import Usage import current user ip...

Page 25: ...ibes the basic switch features along with a detailed description of how to configure each feature via a web browser This section includes these chapters Using the Web Interface Configuring the Switch...

Page 26: ...ddress subnet mask and default gateway using an out of band serial connection or DHCP protocol See Setting an IP Address on page 34 2 Set the system password using an out of band serial connection See...

Page 27: ...a configuration change has been made on a page be sure to click on the Apply button to confirm the new setting The following table summarizes the web page configuration buttons Table 3 Web Home Page C...

Page 28: ...ount Configures User Account and Password Time Configures SNTP and System Time settings IP Configuration Configures IPv4 settings Loop Detection Configures Loop Detection Management Policy Configures...

Page 29: ...rts Configures Port QoS parameters setting QoS Control List Configures QoS Control List setting Rate Limiters Configures Port Rate Limit parameters setting Storm Control Configures Storm Control param...

Page 30: ...icaiton parameters setting Accounting Configures TACACS Accounting parameters setting Trunk Port Configures Trunk port settings and Display Trunk Port Status Aggregator View Display Trunk Aggregation...

Page 31: ...Configures DHCP Snooping enable or disable setting DHCP Snooping Entry Display DHCP Snooping Entry detail information and configures DHCP Snooping parameters setting DHCP Snooping Client Display DHCP...

Page 32: ...em diagnosis The basic system check includes EEPROM test UART test DRAM test and Flash test Ping Tests specified path using IPv4 ping Maintenance Warm Restart Provides a way to reset the switch includ...

Page 33: ...the switch WEB INTERFACE To configure System Information in the web interface 1 Click SYSTEM System Information 2 Specify the contact information for the system administrator as well as the name and...

Page 34: ...ls what this device is Here it is 16 Port SFP 8 Port Combo Port GbE L2 Plus Managed Switch Location User defined the specifies the system location Maximum length 255 characters Contact For easily mana...

Page 35: ...rdware the one after the hyphen is the version of mechanical Serial number The serial number is assigned by Lantech Host IP address The IP address of the switch Host MAC address It is the Ethernet MAC...

Page 36: ...g the Switch Setting Account CHAPTER 4 Configuring the Switch Setting Account Fan To display the Redundant Power Supply system fan status with rotation speed Voltage To display the Redundant Power Sup...

Page 37: ...d 4 Click Apply NOTE The switch only allow one user connect from RS 232 Console UI and three user from Telnet Others allow maximum 4 users connect via WebUI and maximum 1 user connect via Telnet then...

Page 38: ...ich uses the expression form of GMT xx hours WEB INTERFACE To configure Time in the web interface 1 Click SYSTEM Time 2 Specify the Time parameter in manual or NTP parameters 3 Click Apply NOTE Time Z...

Page 39: ...and is used to sync the network time based Greenwich Mean Time GMT If use the NTP mode and select a built in NTP time server or manually specify an user defined NTP server as well as Time Zone Daylig...

Page 40: ...58 CHAPTER 4 Configuring the Switch Setting Virtual Stack Default 1 Hour Range is 0 23 Default 0 Apply To save the configuration to switch flash memory...

Page 41: ...so need to a establish a default gateway between the switch and management stations that exist on another network segment WEB INTERFACE To configure an IP address and SNTP in the web interface 1 Click...

Page 42: ...by periods Default 192 168 1 1 Subnet mask This subnet mask identifies the host address bits used for routing to specific subnet Default 255 255 255 0 Default gateway IP address of the gateway router...

Page 43: ...face 1 Click SYSTEM Loop Detection 2 Evoke which port to enable the Loop detection 3 Click Apply 4 When the port occur Loop and it was locked by switch then you could resume it Figure 4 5 Loop Detecti...

Page 44: ...the switch Rule 1 When no lists exists then it will accept all connections Accept Rule 2 When only accept lists exist then it will deny all connections excluding the connection inside of the acceptin...

Page 45: ...can be created after the parameters as mentioned above had been setup Delete To delete a exist Management policy from the management policy List Name A name is composed of any letter A Z a z and digit...

Page 46: ...ted in the management security configuration if Custom had been chosen Access Type The switch supports two kinds of options for managed valid Access Type including Any and Custom Default is Any Http T...

Page 47: ...vers across multiple platforms WEB INTERFACE To configure Syslog in the web interface 1 Click SYSTEM Syslog 2 Specify the syslog parameters includes IP Address of Syslog server and Port number 3 Evoke...

Page 48: ...configure System Log in the web interface 1 Click SYSTEM System Log 2 Display the system log on the screen 3 Click Clear It will clear all record of switch system log Figure 4 8 System Log screen PARA...

Page 49: ...lowed to connect the Web UI of the devices of the group in the same window without the login of these device The most top left button is only for Master device The background color of the button you p...

Page 50: ...of VSM Default is Enable Role The role that the switch would like to play in virtual stack Two types of roles including master and slave are offered for option Default is Master Group ID It is the gro...

Page 51: ...ort monitor and management WEB INTERFACE To configure Port Configuration in the web interface 1 Click Port Configuration 2 Specify the Port Configuration parameters Make any required changes to the co...

Page 52: ...nate frame loss by blocking traffic from end stations or segments connected directly to the switch when its buffers fill When enabled back pressure is used for half duplex operation and IEEE 802 3 200...

Page 53: ...r is 1 24 Both port 1 8 are optional modules Link Show that if the link on the port is active or not If the link is connected to a working well device the Link will show the link Up otherwise it will...

Page 54: ...72 CHAPTER 4 Configuring the Switch Configuring Power Saving Description network managers provide a description of device ports...

Page 55: ...ber mode for instance Multi Mode Single Mode Tx Central Wavelength Display the fiber optical transmitting central wavelength for instance 850nm 1310nm 1550nm and so on Baud Rate Display the maximum ba...

Page 56: ...74 CHAPTER 4 Configuring the Switch Configuring Power Saving the manufacturer...

Page 57: ...Temperature Show the current temperature of SFP module Vcc Show the working DC voltage of SFP module Mon1 Bias mA Show the Bias current of SFP module Mon2 TX PWR Show the transmit power of SFP module...

Page 58: ...equency WEB INTERFACE To display the Port simple counter information in the web interface 1 Click Port Simple Counter 2 Display the Port Simple Counter information 3 Click Refresh to refresh data or C...

Page 59: ...mber of packets received drop Auto refresh The simple counts will be refreshed automatically on the UI screen Refresh The simple counts will be refreshed manually when user use mouse to click on Refre...

Page 60: ...seconds WEB INTERFACE To display the Port Detail Counter information in the web interface 1 Click Port Simple Counter 2 Display the Port Simple Counter information 3 Click Refresh to refresh data or...

Page 61: ...6 511 byte frames in good and bad packets received Rx 512 1023 Bytes Number of 512 1023 byte frames in good and bad packets received Rx 1024 Bytes Number of 1024 max_length byte frames in good and bad...

Page 62: ...lisions transmitting frames experienced Tx Drops Number of frames dropped due to excessive collision late collision or frame aging Tx FIFO Drops Number of frames dropped due to the lack of transmittin...

Page 63: ...the web interface 1 Click Port Power Saving 2 Evoke which port or Selec Unselect to enable disable Power Saving 3 Click Apply Figure 4 15 Port Power Saving Configuration PARAMETERS These parameters ar...

Page 64: ...gement by allowing you to move devices to a new VLAN without having to change any physical connections VLANs can be easily organized to reflect departmental groups such as Marketing or R D usage group...

Page 65: ...if it can be forwarded The switch supports supplement of 802 1q For more details Each tag based VLAN you built up must be assigned VLAN name and VLAN ID Valid VLAN ID is 1 4094 User can create total...

Page 66: ...in the same segment ports the received packets will be forwarded to the same segment port member without any change for example VLAN tag or un tag frames The L2 PDU will be passed through between two...

Page 67: ...me and VLAN ID WEB INTERFACE To Configure the Tag based Group in the web interface 1 Click VLAN Tag based Group 2 Add new VLAN and specify the tag based VLAN parameters 3 Click Apply Figure 4 17 Tag b...

Page 68: ...ect the system to its hosts that are farther away from the root of the tree These interfaces are known as downstream interfaces Member Port This is used to enable or disable if a port is a member of t...

Page 69: ......

Page 70: ...on PARAMETERS These parameters are displayed on the Port based VLAN Configuration page VLAN Name The name defined by administrator is associated with a VLAN group Valid letters are A Z a z 0 9 and _ c...

Page 71: ...p untagged frame You can also select the Role of each port as Access Trunk or Hybrid WEB INTERFACE To Configure the Ports in the web interface 1 Click VLAN Ports 2 Specify the VLAN Port Configuration...

Page 72: ...tag header If packets have double VLAN tags one will be dropped and the other will still be left As to Hybrid it is similar to Trunk and both of them will tag out When the port is set to Hybrid its pa...

Page 73: ...protected port A destination address on an data packet is matched with a physical address on said layer 2 switch and a forwarding map is generated for the data packet based upon the destination addre...

Page 74: ...indow Only one management VLAN can be active at a time When you specify a new management VLAN your HTTP connection to the old management VLAN is lost For this reason you should have a connection betwe...

Page 75: ...y MAC Address Table parameters and evoke which port to enable the MAC learning 3 Click Save Figure 4 22 MAC Address Table Configuration PARAMETERS These parameters are displayed on the MAC Address Tab...

Page 76: ...ble this port MAC address dynamic learning mechanism only support static MAC address setting Secure Disable this port MAC address dynamic learning mechanism and copy the dynamic learning packets to CP...

Page 77: ...Configure the MAC Static Filter in the web interface 1 Click MAC Static Filter 2 Specify Static Filter parameters includes MAC Address VID and Alias 3 Click Apply Figure 4 23 MAC Static Filter Config...

Page 78: ...RFACE To Configure the MAC Static Forward in the web interface 1 Click MAC Static Forward 2 Specify Static Forward parameters includes MAC Address Port No VID and Alias 3 Click Apply Figure 4 24 MAC S...

Page 79: ...ust be composed of A Z a z and 0 9 only and has a maximal length of 15 characters WEB INTERFACE To Configure the MAC Alias in the web interface 1 Click MAC MAC Alias 2 Specify MAC Alias parameters inc...

Page 80: ...o search 4 Click Search Figure 4 26 MAC Table Information PARAMETERS These parameters are displayed on the MAC Table page Alias MAC alias name you assign MAC address Display the MAC address of one ent...

Page 81: ...update their knowledge database the set of VLANs associated with currently active members and through which ports these members can be reached WEB INTERFACE To display the GVRP Configuration in the we...

Page 82: ...egistrar administrative control value normal registrar fixed registrar and forbidden registrar provided for the user s choice Normal It is Normal Registration The Registrar responds normally to incomi...

Page 83: ...ck Refresh to modify the GVRP Counter information Figure 4 28 Display GVRP Counter detail information PARAMETERS These parameters are displayed on the GVRP Counter page Received Total GVRP Packets Tot...

Page 84: ...on Invalid GVRP Packets Number of invalid GVRP BPDU is received by the GVRP application LeaveAll Message Packets Number of GVRP BPDU with Leave All message is received by the GVRP application JoinEmpt...

Page 85: ...formation 3 Select a exist GVRP VLAN Group entry 4 Click Edit Administrative Contol Figure 4 29 Display GVRP VLAN Group information PARAMETERS These parameters are displayed on the GVRP VLAN Group pag...

Page 86: ...the frame according to what was configured for that specific QoS class The switch support advanced memory control mechanisms providing excellent performance of all QoS classes under any traffic scena...

Page 87: ...You could scroll with 0 to 7 Queuing Mode There are two Scheduling Method Strict Priority and Weighted Fair Default is Strict Priority After you choose any of Scheduling Method please click Apply but...

Page 88: ...S QoS Control List 2 Scroll the QCL rule number The value from 1 to 24 3 Press 4 Specify the QCL Parameters Figure 4 31 Display QoS Control List Configuration PARAMETERS These parameters are displayed...

Page 89: ...ces over Ethernet 0x 80F3 AARP AppleTalk Address Resolution Protocol 0x8100 IEEE Std 802 1Q Customer VLAN Tag Type 0x8137 IPX Internet Packet Exchange 0x 814C SNMP Simple Network Management Protocol 0...

Page 90: ...ification method by Range or Specific UDP TCP Port Range The configurable ports range 0 65535You can refer to following UDP TCP port numbers information http www iana org assignments port numbers UDP...

Page 91: ...asure for the traffic rate 3 To set an rate limit on egress traffic check Shaper Enabled box next to the required port set the rate limit in the Shaper Rate field and select the unit of measure for th...

Page 92: ...e the Egress rate limiter rule Egress Rate rule Configures the rate for the port shaper Range 500 1000000 kbps or 1 1000 Mbps Default 500 kbps Egress Shaper Unit Sets the unit of measure for the port...

Page 93: ...ny packets exceeding the specified threshold will then be dropped Note that the limit specified on this page applies to each port WEB INTERFACE To configure Storm Control 1 Click QoS Storm Control 2 E...

Page 94: ...s per second pps or by selecting one of the options in Kpps 1 2 4 8 16 32 64 128 256 512 1K 2K 4K 8K 16K 32K 64K 128K 256K 512K 1024K NOTE Due to an ASIC limitation the enforced rate limits are slight...

Page 95: ...ext step of configuration 4 Follw up the GUI procedure to set all parameters Figure 4 34 Select 1 of 4 QCL Configuration Wizards PARAMETERS These parameters are displayed on the QCL Wizard page Please...

Page 96: ...rom 1 to 24 Port Member Evoke the port to join the QCL ID and become the QCL Member Wizard Again Click on the Wizard Again back to QCL Configuration Wizard Finish When you click on Finish the paramete...

Page 97: ...one Napster Real Audio Games Blizzard Battlenet Diablo2 and StarCraft Fighter Ace II Quake2 Quake3 MSN Game Zone User Definition Ethernet Type VLAN ID UDP TCP Port DSCP Ethernet Type Value Type Range...

Page 98: ...tion Rules PARAMETERS These parameters are displayed on the QCL Wizard page QCL ID Scroll to set the QCL ID from 1 to 24 Traffic Class Scroll to set the Traffic Class with Low Normal Medium High Figur...

Page 99: ...s Scroll to set the TOS Precedence Mapping Class with Low Normal Medium High Figure 4 40 Set up VLAN Tag Priority Mapping Rules PARAMETERS These parameters are displayed on the QCL Wizard page QCL ID...

Page 100: ...rmation using software such as LantechView Access to the onboard agent from clients using SNMP v1 and v2c is controlled by community strings To communicate with the switch the management station must...

Page 101: ...takes effect WEB INTERFACE To configure SNMP System 1 Click SNMP System 2 Evoke SNMP State to enable or disable the SNMP function 3 Specify the Engine ID 4 Click Apply Figure 4 41 Set up SNMP System...

Page 102: ...setting then click Reset Figure 4 42 Set up SNMP Communities PARAMETERS These parameters are displayed on the SNMP Communities Setting page Delete If you had create a new SNMP Community entry then you...

Page 103: ...ters 4 Click Save 5 If you want to modify or clear the setting then click Reset Figure 4 43 Set up SNMP Users PARAMETERS These parameters are displayed on the SNMP Users Setting page Delete If you had...

Page 104: ...fy the Authentication Password field The length of MD5 Authentication PWD is restricted to 8 32 The length of SHA Authentication PWD is restricted to 8 40 Privacy Protocol Scroll to choice the DES enc...

Page 105: ...vailable security name please add commuity or user first Figure 4 44 Set up SNMP Groups PARAMETERS These parameters are displayed on the SNMP Groups Setting page Delete If you had create a new SNMP Gr...

Page 106: ...odel The length of UserName string is restricted to 1 32 Security Name Scroll to choice the UserName you set on the switch already to join the SNMP Groups The length of Security Name string is restric...

Page 107: ...Delete button to delete the entry View Name Specify the View Name field The name of MIB view The length of View Name string is restricted to 1 32 View Type Scroll to choice the View Type as included o...

Page 108: ...f Group Name string is restricted to 1 32 View Type Scroll to choice the View Type as included or excluded Security Model Scroll to choice the security Model as below four models any Accepted any secu...

Page 109: ...acy Read View Name Scroll to choice the read view name The name of MIB view Select None this entry has no read right Write View Name Scroll to choice the write view name The name of MIB view Select No...

Page 110: ...hosts entry Figure 4 47 Set up SNMP Trap Hosts PARAMETERS These parameters are displayed on the SNMP Trap Hosts Setting page Delete If you had create a new SNMP Trap Hosts entry then you could click D...

Page 111: ...NoAuth NoPriv No authentication and no privacy Auth NoPriv Authentication and no privacy Auth Priv Authentication and privacy Authentication Protocol Scroll to choice two methods as MD5 and SHA for Au...

Page 112: ...ach port with Any or assign this ACE for a policy or assign this ACE for a port There are 8 policies each port can select one of policy then decides which of the following actions would take according...

Page 113: ...RAMETERS These parameters are displayed on the SNMP Trap Hosts Setting page Port Port Identifier Port number 1 24 Policy ID An ACL policy configured on the ACE Configuration Range 1 8 Default 1 which...

Page 114: ...ration Default Disabled Port Copy Defines a port to which matching frames are copied Range 1 24 Default Disabled that will disable to copy the met ACL packets to specific port Port number 1 24 Copy th...

Page 115: ...Rate Limiter ID Rate limiter identifier Range 1 16 Rate pps The threshold above which packets are dropped Options 1 2 4 8 16 32 64 128 256 512 1K 2K 4K 8K 16K 32K 64K 128K 256K 512K 1024K NOTE Due to...

Page 116: ...is equal to IP 0x800 IPv4 frames based on destination MAC address protocol type TTL IP fragment IP option flag source destination IP VLAN ID VLAN priority WEB INTERFACE To configure an Access Control...

Page 117: ...Figure 4 50 Access Control List Configuration...

Page 118: ...ort 1 24 Policy 1 8 Default Any Frame Type The type of frame to match Options Any Ethernet ARP IPv4 Default Any Filter Criteria Based on Selected Frame Type Any frame type MAC Parameters DMAC Filter T...

Page 119: ...uest opcode flag set Reply frame must have ARP Reply or RARP Reply opcode flag Default Any Sender IP Filter Specifies the sender s IP address Options Any no sender IP filter is specified Host specifie...

Page 120: ...ARP RARP protocol address space PRO settings Options Any any value is allowed 0 ARP RARP frames where the PRO is equal to IP 0x800 must not match this entry 1 ARP RARP frames where the PRO is equal to...

Page 121: ...Any TCP ACK Specifies the TCP Acknowledgment field significant ACK value for this rule Options Any any value is allowed 0 TCP frames where the ACK field is set must not match this entry 1 TCP frames...

Page 122: ...ation IP mask in the DIP Address and DIP Mask fields Default Any Response to take when a rule is matched Action Permits or denies a frame based on whether it matches an ACL rule Default Permit Rate Li...

Page 123: ...ce IP Binding Next Click on Next to confirm current setting and go to next step automatically Cancel Cancel current setting back to top layer in the ACL wizard function Back Click on Back to back to p...

Page 124: ...o complete the configuration Figure 4 53 Set up ACL Wizard Port Polices Rules NOTE It is easy to configure ACL Wizard Port Polices Rules then you only need to click Next and Finish to complete the con...

Page 125: ...ication Rules PARAMETERS These parameters are displayed on the Wizard Typical Network Application Rules Configuration page Common Server Evoke What kinds Server to choice The server type includes DHCP...

Page 126: ...ort TCP Port Others Evoke the article with TCP Port ICMP Multicast IP Stream NetBIOS Ping Request Ping Reply SNMP SNMP Traps Next Click on Next to confirm current setting and go to next step automatic...

Page 127: ...P MAC binding enabled port the system will block the access by dropping its packet WEB INTERFACE To configure IP MAC Binding 1 Click IP MAC Binding Configuration 2 Scroll the state to enable the IP MA...

Page 128: ...eld Six byte MAC Address xx xx xx xx xx xx For example 00 40 c7 00 00 01 IP Specify the IP Address field Four byte IP Address xxx xxx xxx xxx For example 192 168 1 100 Port No Scroll to choice what Po...

Page 129: ...access to the network resources through a 802 1X enabled port without authentication If a user wishes to touch the network through a port under 802 1X control he she must firstly input his her accoun...

Page 130: ...tion Protocol over LAN EAPOL are exchanged between an authenticator PAE and a supplicant PAE The Authenticator exchanges the message to authentication server using EAP encapsulation Before successfull...

Page 131: ...doesn t send EAP Request Identity the supplicant will initiate EAPOL Start the process by sending to the authenticator 5 And next the Supplicant replies an EAP Response Identity to the authenticator T...

Page 132: ...ltiHost 802 1X is the type of authentication supported in the switch In this mode for the devices connected to this port once a supplicant is authorized the devices connected to this port can access t...

Page 133: ...Address Specify the IP Address field The RADIUS Server IP Address for Authentication Default 192 168 1 1 UDP Port Default port number is 1812 Secret Key The secret key between authentication server an...

Page 134: ...er IP Address for Accounting Default 192 168 1 1 UDP Port Default port number is 1813 Secret Key The secret key between authentication server and authenticator It is a string with the length 1 31 char...

Page 135: ...Port Scroll the port and set the parameter It is the port number to be selected for configuring its associated 802 1X parameters which are Port control reAuthMax txPeriod Quiet Period reAuthEnabled r...

Page 136: ...controlled port is forced to hold in the authorized state Auto The controlled port is set to be in authorized state or unauthorized state depends on the result of the authentication exchange between...

Page 137: ...5 Default 30 seconds serverTimeout 1 65535 s A timeout condition in the exchange between the authenticator and the authentication server The valid range 1 65535 Default 30 seconds VlanAssignment This...

Page 138: ...t The Port indentity Port number 1 24 Mode Show this port IEEE 802 1X operating mode There are four modes Disable Normal Advance and Clientless Status Show this port IEEE 802 1X security current statu...

Page 139: ...2 1X Statistics PARAMETERS These parameters are displayed on the 802 1X Status page Port The Port indentity Port number 1 24 Auto refresh Refresh the authenticator counters in the web UI automatically...

Page 140: ...played on the TACACS State page Server IP Address 1 2 Specify the TACACS Server 1 and 2 IP Address in the field Server 1 IP address for authentication Default 0 0 0 0 Secret Key Specify the Secret key...

Page 141: ...o set Telnet authentication method with Login primary or Login secondary Default Primary is Local and Secondary is None Web Scroll to Web authentication method with Login primary or Login secondary De...

Page 142: ...age State Scroll to set enable or disable the State Authorization via TACACS Server Default Disable Fallback to Local Authorization Scroll to set enable or disable the switch Fallback to Local Authori...

Page 143: ...7 Configure TACACS Accounting PARAMETERS These parameters are displayed on the TACACS Accounting page State Scroll to set enable or disable the State Accounting via TACACS Server Default Disable TACAC...

Page 144: ...non IEEE 802 3 MAC link Operating in half duplex mode Aggregate the ports with different data rates Static Trunk Ports using Static Trunk as their trunk method can choose their unique Static GroupID a...

Page 145: ...he port won t aggregate with other ports b 14 ports all use LACP Trunk Group ID 1 at most 12 ports can aggregate together and transit into the ready state c A port using the None trunking method or Gr...

Page 146: ...164 CHAPTER 4 Configuring the Switch Configure SNMP Port Port identity of switch Port Number 1 24...

Page 147: ...e An Active LACP port begins to send LACPDU to its link partner right after the LACP protocol entity started to take control of this port Passive An Passive LACP port will not actively send LACPDU out...

Page 148: ...an LACP aggregator with at leaset one member port PARAMETERS These parameters are displayed on the Aggegator view page Aggregator It shows the aggregator ID from 1 to 24 of every port In fact every p...

Page 149: ...port System Priority Show the Actor and Partner system priority value MAC Address Show the Client device s MAC Address information Port Show the Trunk Port number Key Show the Trunk LACP Key value Tru...

Page 150: ...r disable source MAC address for Aggregate Mode Destination MAC Address Evoke to enable or disable Destination MAC address for Aggregate Mode IP Address Evoke to enable or disable IP address for Aggre...

Page 151: ...field The Ragne is 1 65535 and Default is 32768 Apply Save the setting to switch flash memory TRUNK LACP SYSYTEM PRORITY CONFIGURATION The Function is used to set the priority part of the LACP system...

Page 152: ...ports connected to designated bridging devices are assigned as designated ports After determining the lowest cost spanning tree it enables all root ports and designated ports and disables all other p...

Page 153: ...how this switch s current bridge priority setting Default is 32768 Designated Root Show root bridge ID of this network segment If this switch is a root bridge the Designated Root will show this switch...

Page 154: ...172 CHAPTER 4 Configuring the Switch Configure SNMP designated port of the root bridge...

Page 155: ...warding state of a port in bridge Hello Time Show the current hello time of the root bridge Hello time is a time interval specified by root bridge used to request all other bridges periodically sendin...

Page 156: ...Force Version with STP or RSTP 6 Click Apply NOTE You must to consider 2 Forward Delay 1 Max Age and Max Age need to 2 Hellow Time 1 NOTE You will lose connection with this device for a while if you e...

Page 157: ...from the root bridge and if the message age conveyed in the BPDU exceeds the Max Age of the root bridge the bridge will treat the root bridge malfunctioned and issue a Topology Change Notification TC...

Page 158: ...on first and without it then the Edit and MCheck Button is unavailable Figure 4 74 Display the Spanning Tree Port Configuration SPANNING TREE PORT CONFIGURATION The Function is used for user to Config...

Page 159: ...ath cost value would become the Root Port more possibly Configured Path Cost The range is 0 200 000 000 In the switch if path cost is set to be zero the STP will get the recommended value resulted fro...

Page 160: ...178 CHAPTER 4 Configuring the Switch Configure SNMP Unlike the designate port or root port though an edge port will transit to a normal spanning tree port immediately if it receives a BPDU...

Page 161: ...heck It forces the port sending out an RSTP BPDU instead of a legacy STP BPDU at the next transmission The only benefit of this operation is to make the port quickly get back to act as an RSTP port Cl...

Page 162: ...180 CHAPTER 4 Configuring the Switch Configure SNMP...

Page 163: ...osts Port Type Link Type IEEE 802 1w 2001 Ethernet Half Duplex Full Duplex Trunk 2 000 000 1 000 000 500 000 Fast Ethernet Half Duplex Full Duplex Trunk 200 000 100 000 50 000 Gigabit Ethernet Full Du...

Page 164: ...mmon and Internal Spanning Tree always exists Up to 64 more spanning tree instances MSTIs can be provisioned WEB INTERFACE To display the MSTP State Configuration 1 Click MSTP State 2 Scroll the Multi...

Page 165: ...on Config page Region Name It provides user to specify the Region Name 0 32 characters A variable length text string encoded within a fixed field of 32 octets conforming to RFC 2271 s definition of Sn...

Page 166: ...deleted At least one vlan must be provisioned for an MSTI to declare the need for the MSTI to be existent Corresponding Vlans Multiple vlans can belong to an MSTI All vlans that are not provisioned t...

Page 167: ...of all ports regarding a specific spanning tree instance Detail see Fig 84 Figure 4 78 Display the MSTP Edit MSTI VLAN Configuration PARAMETERS These parameters are displayed on the MSTP Edit MSTI VLA...

Page 168: ...3248 57344 61440 MAX Age The same definition as in the RSTP protocol The Range is from 6 to 40 sec Forward Delay The same definition as in the RSTP protocol The Range is from 4 to 30 sec MAX Hops 6 40...

Page 169: ...best spanning tree priority vector Such a Port will be selected as an Alternate Port after the Root Port has been selected This parameter is No by default If set it can cause lack of spanning tree con...

Page 170: ...the bridge itself Bridge Max Hops It shows the Max Hops setting of the bridge itself Instance Priority Spanning tree priority value for a specific tree instance CIST or MSTI Bridge Mac Address The Ma...

Page 171: ...Root bridge CIST CURRENT FORWARD DELAY Forward Delay of the CIST Root bridge TIME SINCE LAST TOPOLOGY CHANGE SECs Time Since Last Topology Change is the elapsed time in unit of seconds for a bunch of...

Page 172: ...ate Path Cost Display currently resolved port path cost value for each port in a particular spanning tree instance Priority Display port priority value for each port in a particular spanning tree inst...

Page 173: ...Port A and Port B are Monitoring Port and Monitored Port respectively thus the traffic received by Port B will be copied to Port A for monitoring NOTE When configure the mirror function you should avo...

Page 174: ...ring Port number or Disabled the function Default is Disabled Port No The port identity of switch physical interface Port number is 1 to 24 Source Enable The source enable means the monitored port ing...

Page 175: ...icast Host can update the information of the Multicast table when a member port joins or leaves an IP Multicast Destination Address With this function once a switch receives an IP multicast packet it...

Page 176: ...er Query Max Response Time field the specific value 3 Select Router Port member 4 Click Apply Figure 4 85 Display the IGMP Proxy Configuration PARAMETERS These parameters are displayed on the IGMP Pro...

Page 177: ...25 secs Last Member Query Max Response Time Set the max response code value in the specific query packet Available 1 25 secs Router Ports Set the interface what connect to IGMP Router and it is the s...

Page 178: ...p Allow 2 Scroll Vid 3 Specify the Start Address and End Address field the specific value 4 Click Apply Figure 4 87 Display the IGMP Group Allow PARAMETERS These parameters are displayed on the IGMP G...

Page 179: ...GMP Group Membership page Index Display current built up multicast group entry index Group Address Display current built up multicast Group Address VLAN ID Display current built up multicast VLAN ID P...

Page 180: ...Disabled Host Time Out Set the MVR function enable and the Host packet received by Switch timeout period The unit is second and time range is from 1 to 65535 The default is 125 seconds Fast Leave Set...

Page 181: ...pecific value 4 Select MVID port member disable client or server 5 Click Apply To display how to delete the MVID Setting 1 Click MVID 2 Select those MVIDs which you want to delete 3 Click Delete Figur...

Page 182: ...oup Allow 1 Click MVR Group Allow 2 Scroll MVID 3 Specify the Start Address and End Address field the specific value 4 Click Apply To display how to delete the MVR Group Allow 1 Click MVR Group Allow...

Page 183: ...EB INTERFACE To display the MVR Group Membership 1 Click MVR Group Membership 2 Display MVR group membership data 3 Click Next Page display next page context 4 Click Previous Page display previous pag...

Page 184: ...Previous Page Display previous page context Next Page Display next page context Refresh Update multicast group membership...

Page 185: ...can be sent out in two ways including email and trap The message will be sent while users tick the trap event individually on the web page shown as below WEB INTERFACE To display the Alarm Events Con...

Page 186: ...ed LACP Port Failure GVRP GVRP Disabled GVRP Enabled VLAN VLAN Disabled Port based VLAN Enabled Tag based VLAN Enabled Metro mode VLAN Enabled Double tag VLAN Enabled Module Swap Module Inserted Modul...

Page 187: ...Membership page Mail Server Specify the IP Address of the server transferring your email Username Specify the username on the mail server Password Specify the password on the mail server Sender To set...

Page 188: ...Snooping State Configuration 1 Click DHCP Snooping State 2 Scroll to choice Spanning Tree Protocol enable or disable Default is Disable Figure 4 95 Display the DHCP Snooping State PARAMETERS These par...

Page 189: ...the Turst Port 2 value to select a specific value with 1 to 24 or Disable Default is Disable 6 Scroll to choice Option 82 enable or disable Default is Disable 7 Scroll to choice the action for Option...

Page 190: ...globally and also enabled on the VLAN where the DHCP packet is received all DHCP packets are forwarded for a trusted por It set a trust port 1 available port from 0 to 24 0 is disabled Trust Port 2 It...

Page 191: ...e DHCP Snooping Client page MAC To show the DHCP snooping client s MAC address VID To show the DHCP snooping client s VLAN ID 802 1w RSTP recommended value Valid range 1 200 000 000 10 Mbps 2 000 000...

Page 192: ...d to learn about adjacent LLDP devices WEB INTERFACE To configure LLDP 1 Click LLDP LLDP State 2 Modify LLDP timing parameters 3 Set the required mode for transmitting or receiving LLDP messages 4 Spe...

Page 193: ...ult 5 secs Port Port identifier Range 1 24 Mode To enable or disable the LLDP mode per port There are four type Options Disabled Tx_Rx Tx only and Rx only Default Disabled Notification Enables or disa...

Page 194: ...To display an alphanumeric string describing the port what the neighbor s port description System Capabilities To display an includes a bitmask of system capabilities device functions that are support...

Page 195: ...ries Deleted The total neighbors entries deleted be received which have been removed from the LLDP remote systems MIB for any reason Total Neighbors Entries Dropped The total neighbors entries dropped...

Page 196: ...346 CHAPTER 8 Commands of CLI Alarm Commandsof CLI...

Page 197: ...Frames Discarded Number of frames discarded because they did not conform to the general validation rules as well as any specific usage rules defined for the particular Type Length Value TLV TLVs Disca...

Page 198: ...same one that you had saved before by performing this function Working Configuration It is the configuration you are using currently and can be changed any time The configurations you are using are s...

Page 199: ...346 CHAPTER 8 Commands of CLI Alarm Commandsof CLI...

Page 200: ...urrent configuration as a start configuration file in flash memory SAVE USER Save the current configuration as a user configuration file in flash memory RESTORE USER CONFIGURATION Restore User Configu...

Page 201: ...WEB INTERFACE To display restore to factory default configuration 1 Click Save Restore Restore User 2 Click Yes Figure 4 104 Restore USER Configuration...

Page 202: ...on automatically to latest firmware version WEB INTERFACE To display restore to factory default configuration 1 Click Export Import 2 Scroll to select User or Current 3 Click Export to Export 4 Click...

Page 203: ...mmandsof CLI Export User Conf Export Save As User s config file stored in the flash Import File Path Import Start Import Save As Start s config file stored in the flash Import User Conf Import Save As...

Page 204: ...NOSTICS Diagnostics function provides a set of basic system diagnosis It let users know that whether the system is health or needs to be fixed The basic system check includes EEPROM test UART test DRA...

Page 205: ...Display th Diagnostics Ping functionality Screen PARAMETERS These parameters are displayed on the Diagnostics Ping page IP Address An IP address with the version of v4 e g 192 168 1 1 Ping Size To se...

Page 206: ...cussing is software reset for the reboot in the main menu WEB INTERFACE To display the Maintenance reset device Procedure 1 Click Maintenance Reset Device 2 Click Yes Figure 109 Display Reset Device S...

Page 207: ...3 Click Upload Figure 110 Display Firmware Upgrade Screen...

Page 208: ...atically The switch allows you to logout the system to prevent other users from the system without the permission If you do not logout and exit the browser the switch will automatically have you logou...

Page 209: ...rt config show statistics show server Set 802 1X maxReq Set 802 1X mode Set 802 1X port control Set 802 1X quietPeriod Set 802 1X reAuthEnabled Set 802 1X reAuthMax Set 802 1X reAuthPeriod Set 802 1 X...

Page 210: ...hPeriod 120 maxReq 2 suppTimeout 30 serverTimeout 30 VlanAssignment Disable GuestVlan N A AuthFailedVlan N A set maxReq The maximum number of times that the state machine will retransmit an EAP Reques...

Page 211: ...Value 60 EXAMPLE Set port control To set up 802 1X status of each por command displays or sets port LGS 2816C RPS 802 1X set port control 2 2 LGS 2816C RPS 802 1X show port config 2 Port 2 Mode Disabl...

Page 212: ...etPeriod 30 reAuthEnabled On reAuthPeriod 120 maxReq 2 suppTimeout 30 serverTimeout 30 VlanAssignment Disable GuestVlan N A AuthFailedVlan N A set reAuthEnabled A constant that define whether regular...

Page 213: ...TTING Value 3600 EXAMPLE set reAuthMax The number of reauthentication attempts that are permitted before the port becomes Unauthorized LGS 2816C RPS 802 1X set reAuthMax 2 2 LGS 2816C RPS 802 1X show...

Page 214: ...sable GuestVlan N A AuthFailedVlan N A set serverTimeout A timer used by the Backend Authentication state machine in order to determine timeout conditions in the exchanges between the Authenticator an...

Page 215: ...AuthFailedVlan N A set auth server To configure the settings related with 802 1X Radius Server LGS 2816C RPS 802 1X set auth server 192 168 1 1 1812 Radius LGS 2816C RPS 802 1X show server Authenticat...

Page 216: ...Assignment Disable GuestVlan N A AuthFailedVlan N A set suppTimeout A timer used by the Backend Authentication state machine in order to determine timeout conditions in the exchanges between the Authe...

Page 217: ...N A set txPeriod A timer used by the Authenticator PAE state machine to determine when an EAPOL PDU is to be transmitted LGS 2816C RPS 802 1X set txPeriod 2 30 LGS 2816C RPS 802 1X show port config 2...

Page 218: ...sabled N A 6 Disabled N A 7 Disabled N A 8 Disabled N A 9 Disabled N A 10 Disabled N A 11 Disabled N A 12 Disabled N A 13 Disabled N A 14 Disabled N A 15 Disabled N A 16 Disabled N A 17 Disabled N A 1...

Page 219: ...ort LGS 2816C RPS 802 1X show statistics 2 Port 2 Authenticator Counters authEntersConnecting 0 authEapLogoffsWhileConnecting 0 authEntersAuthenticating 0 authAuthSuccessesWhileAuthenticating 0 authAu...

Page 220: ...espFramesRx 0 dot1xAuthEapolReqIdFramesTx 0 dot1xAuthEapolReqFramesTx 0 dot1xAuthInvalidEapolFramesRx 0 dot1xAuthEapLengthErrorFramesRx 0 dot1xAuthLastEapolFrameVersion 0 dot1xAuthLastEapolFrameSource...

Page 221: ...perator del modify show Add guest account Add operator account Delete account Change account and password Show system account add guest To create a new guest user When you create a new guest user you...

Page 222: ...me existing user account EXAMPLE LGS 2816C RPS account add operator aaaaa Password Confirm Password del To delete an existing account LGS 2816C RPS account del aaaaa Account aaaaa deleted modify To ch...

Page 223: ...TING None EXAMPLE Username changed successfully Password changed successfully show To show system account including account name and identity LGS 2816C RPS account show Account Name Identity admin Adm...

Page 224: ...port as packet filter action rule To delete the ACE Access Control Entry configuration on the switch To displays ACL list To move the ACE Access Control Entry configuration between index1 and index2...

Page 225: ...Ethernet any action 1 rate limiter 3 copy port 0 action This command set the access control per port as packet filter action rule LGS 2816C RPS acl action 5 0 2 2 LGS 2816C RPS acl show port policy i...

Page 226: ...led 0 20 1 permit Disabled Disabled 0 21 1 permit Disabled Disabled 0 22 1 permit Disabled Disabled 0 23 1 permit Disabled Disabled 0 24 1 permit Disabled Disabled 0 rate limiter rate pps 1 512 2 1600...

Page 227: ...Switch Permit 3 Disabled 0 Frame Type ARP 5 Switch Permit Any Disabled 12989 Frame Type ARP 6 Switch Permit Any Disabled 0 Frame Type IPv4 UDP DHCP Client Out 7 Switch Permit Any Disabled 0 Frame Type...

Page 228: ...cy ports policy set specific policy id for specific port Range 1 8 ports A specific port or range of ports Range 1 24 DEFAULT SETTING Policy 1 EXAMPLE move This command move ACE configuration between...

Page 229: ...source ip mask any destination ip destination ip mask any ip ttl ip fragment ip option icmp icmp type icmp code udp source port range destination port range tcp source port range destination port rang...

Page 230: ...mask Source IP address or any destination ip destination ip mask Destination IP address or any arp smac match flag ARP frame where sender hardware address SHA field is equal to the SMAC address Option...

Page 231: ...535 or any tcp fin flag TCP frames with any value in the FIN field Option any 0 1 Default any tcp syn flag TCP frames with any value in the SYN field Option any 0 1 Default any tcp rst flag TCP frames...

Page 232: ...s control entry setting on switch LGS 2816C RPS acl show port policy id action rate limiter port copy counter 1 1 permit 1 1 0 2 1 permit 1 1 71959 3 1 permit 1 1 0 4 1 permit 1 1 0 5 1 deny 2 2 0 6 1...

Page 233: ...rmit Disabled Disabled 0 23 1 permit Disabled Disabled 0 24 1 permit Disabled Disabled 0 rate limiter rate pps 1 512 2 16000 3 32 4 1 5 1 6 1 7 1 8 1 9 1 10 1 11 1 12 1 13 1 14 1 15 1 16 1 LGS 2816C R...

Page 234: ...configuration email To enter into email mode Command Function set mail address set return path set sender set server set user del mail address del return path del sender del server user show Set mail...

Page 235: ...t server ip ip Email server ip address or domain name EXAMPLE set mail address To set up the email address LGS 2816C RPS alarm email set mail address 1 abc mail abc com set mail address To set up the...

Page 236: ...er username username Email server account EXAMPLE SYNTAX del mail address Email address number range 1 to 6 EXAMPLE LGS 2816C RPS alarm email set user admin del mail address To remove the configuratio...

Page 237: ...ECTION IV APPENDICES This section provides additional information and includes these items Software Specifications Troubleshooting...

Page 238: ...lex IEEE 802 3 2005 Half Duplex Back pressure STORM CONTROL Broadcast multicast or unicast traffic throttled above a critical threshold PORT MIRRORING Multiple source ports one destination port RATE L...

Page 239: ...ERING IGMP Snooping IGMP Proxy ADDITIONAL FEATURES DHCP Client LLDP Link Layer Discover Protocol RMON Remote Monitoring groups 1 2 3 9 SMTP Email Alerts SNMP Simple Network Management Protocol SNTP Si...

Page 240: ...rotocol LACP ARP RFC 826 DHCP Client RFC 2131 HTTPS ICMP RFC 792 IGMP RFC 1112 IGMPv2 RFC 2236 IGMPv3 RFC 3376 partial support RADIUS RFC 2618 RMON RFC 2819 groups 1 2 3 9 SNMP RFC 1157 SNMPv2c RFC 25...

Page 241: ...349 Interfaces Evolution MIB RFC 2863 IP MIB RFC 2011...

Page 242: ...uthentication Client MIB RFC 2621 RMON MIB RFC 2819 RMON II Probe Configuration Group RFC 2021 partial implementation SNMPv2 IP MIB RFC 2011 SNMP Community MIB RFC 3584 SNMP Framework MIB RFC 3411 SNM...

Page 243: ...itches in the network must be configured with the appropriate tag If you cannot connect using Telnet you may have exceeded the maximum number of concurrent Telnet SSH sessions permitted Try connecting...

Page 244: ...of commands or other actions that lead up to the error 6 Make a list of the commands or circumstances that led to the fault Also make a list of any error messages displayed 7 Contact your distributor...

Page 245: ...ity of service on large networks by employing a well defined set of building blocks from which a variety of aggregate forwarding behaviors may be built Each packet carries information DS byte used by...

Page 246: ...LAN members on ports along the Spanning Tree so that VLANs defined in each switch can work automatically over a Spanning Tree network IEEE 802 1D Specifies a general method for the operation of MAC br...

Page 247: ...IGMP SNOOPING Listening to IGMP Query and IGMP Report packets transferred between IP Multicast Routers and IP Multicast host groups to identify IP Multicast group members IN BAND MANAGEMENT Managemen...

Page 248: ...VLAN Registration is a method of using a single network wide multicast VLAN to transmit common services such as such as television channels or video on demand across a service provider s network MVR s...

Reviews: