background image

 

 

 

 

 

 

 

 

 

 

SM24TBT2DPA and SM24TBT2DPB 

Managed Gigabit Ethernet PoE++ Switch 

(24) 10/100/1000Base-T Ports + (2) 100/1000Base-X SFP/RJ-45 Combo Ports

 

Web User Guide 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Part Number 33738 

Revision H April 2022 

 

 

Summary of Contents for SM24TBT2DPA

Page 1: ...SM24TBT2DPA and SM24TBT2DPB Managed Gigabit Ethernet PoE Switch 24 10 100 1000Base T Ports 2 100 1000Base X SFP RJ 45 Combo Ports Web User Guide Part Number 33738 Revision H April 2022 ...

Page 2: ... at www lantronix com about contact Disclaimer All information contained herein is provided AS IS Lantronix undertakes no obligation to update the information in this publication Lantronix does not make and specifically disclaims all warranties of any kind express implied or otherwise regarding title non infringement fitness quality accuracy completeness usefulness suitability or performance of th...

Page 3: ...4 1 3 Pool 35 2 5 Security 44 2 5 1 Switch 44 2 5 1 1 Users 44 2 5 1 2 Privilege Levels 46 2 5 1 3 Authentication Method 48 2 5 1 4 HTTPS Configuration 50 2 5 1 6 Access Management 52 2 5 1 8 2 History 67 2 5 2 Network 71 2 5 2 1 Limit Control 71 2 5 2 2 NAS 74 2 5 2 3 ACL 80 2 5 2 4 IP Source Guard 91 2 5 2 5 ARP Inspection 94 2 5 3 AAA 101 2 5 3 1 RADIUS 101 2 5 3 2 TACACS 104 2 6 Aggregation 10...

Page 4: ...solation 165 2 17 VCL 166 2 17 1 MAC based VLAN 166 Messages 167 2 17 2 Protocol based VLAN 168 2 17 2 1 Protocol to Group 168 2 17 2 2 Group to VLAN 170 2 17 3 IP Subnet based VLAN 171 2 18 1 Configuration 172 2 18 2 OUI 174 2 19 QoS 175 2 19 1 Port Classification 175 2 19 2 Port Policing 177 2 19 4 Port Schedulers 178 2 19 6 Port Tag Remarking 184 2 19 7 Port DSCP 187 2 19 8 DSCP Based QoS 189 2...

Page 5: ...Port Statistics 268 3 7 Loop Protection 269 3 8 Spanning Tree 270 3 8 1 Bridge Status 270 3 8 2 Port Status 273 3 8 3 Port Statistics 274 3 9 MVR 275 3 9 1 Statistics 275 3 9 2 MVR Channels Groups 276 3 10 IPMC 279 3 10 1 IGMP Snooping 279 3 10 1 1 Status 279 3 10 1 2 Group Information 281 3 10 1 3 IPv4 SFM Information 282 3 10 2 MLD Snooping 283 3 10 2 1 Status 283 3 10 2 2 Group Information 285 ...

Page 6: ...rmware Upgrade 321 5 3 2 Firmware Selection 324 5 4 Configuration 325 5 4 1 Save startup config 325 5 4 3 Download 326 5 4 2 Upload 327 5 4 4 Activate 328 5 4 5 Delete 329 5 5 Server Report 330 Chapter 6 DMS Device Management System 331 6 1 The DMS Tab 331 6 2 DMS Overview 331 6 2 1 DMS DMS Mode Information 332 6 4 Graphical Monitoring 335 PoE Auto Checking AutoFill Feature 340 Chapter 7 Troublesh...

Page 7: ...pter 5 Maintenance Chapter 6 DMS Diagnostic Management System Chapter 7 Troubleshooting Appendix A DHCP Per Port Appendix B Service Warranty Tech Support Appendix C Compliance Information About This Manual Purpose This manual gives specific information on how to use the management functions of the SM24TBT2DPx Audience The manual is intended for use by network administrators who are responsible for...

Page 8: ...ronix is not responsible Safety Warnings and Cautions These products are not intended for use in life support products where failure of a product could reasonably be expected to result in death or personal injury Anyone using this product in such an application without express written consent of an officer of Lantronix does so at their own risk and agrees to fully indemnify Lantronix for any damag...

Page 9: ... enter a username and password in order to login and access authentication The default username is admin and password is admin For first time use enter the default username and password and then click the Login button The login process now is completed In this login menu you must enter the complete username and password respectively the SM24TBT2DPx will not give you a shortcut to the username auto...

Page 10: ...eb UI top left corner to come back to this page from anywhere in the menu system The Web UI top left corner displays an icon that alternately hides and displays the left hand menus The Web UI top left corner also displays a switch icon that lets you hover the cursor over a front panel component to display the status description for that component shown below You can also click on a port to display...

Page 11: ...ack in again To save the timeout change into startup config you must do a save to startup config and then reboot the switch In summary When you power on the switch it will get the settings from startup config When you logout and login without switch reboot the switch will get the timeout settings from startup config When you reload defaults the switch will get the timeout settings default config F...

Page 12: ... Password must contain at least 8 characters at least 1 upper case letter 1 lower case letter and one numeric character The new password cannot be blank or the default value Click the Next button Figure 2 1 Change default password Step 2 Set IP address Select Obtain IP address via DHCP or Set IP address manually to set the IP address If setting manually enter IP address Subnet mask and Default rou...

Page 13: ...pply 1 x y z and w must be decimal numbers between 0 and 255 2 x must not be 0 unless also y z and w are 0 3 x must not be 127 and 4 x must not be greater than 223 Step 3 Set date and time Enable Automatic data and time or select Manually to set or select the desired date and time If you enable Automatic data and time then you must enter a Server Address and select a Time zone Click the Next butto...

Page 14: ... System name and System location Click the Apply button when done Figure 2 4 Set system information Message Password format error Message The value of DNS must be a valid IP address in dotted decimal notation x y z w The following restrictions apply 1 x y z and w must be decimal numbers between 0 and 255 2 x must not be 0 unless also y z and w are 0 3 x must not be 127 and 4 x must not be greater ...

Page 15: ...UI Modules The SM24TBT2DPx Web UI management modules include Switch Configuration Monitor Diagnostics and Maintenance DMS DMS Mode Management Graphical Monitoring and Maintenance At startup the Monitor System Information page displays The SM24TBT2DPx Web UI management modules are described in the following chapters ...

Page 16: ...ation information as desired 3 Click Apply The switch system information is displayed Figure 2 1 1 System Information Configuration page Parameter descriptions System Contact The textual identification of the contact person for this managed node together with information on how to contact this person The allowed string length is 0 128 characters System Name An administratively assigned name for th...

Page 17: ...At the dropdown select Redundant or Boost where Redundant Only provide Primary Power Supply up to 820W when two PSU 820 power supply modules are installed in the SM24TBT2DPA If one power supply crashes it can still provide enough power for system operation and also PD s operation This is the default Boost Power Supply up to 1640W when two PSU 820 power supply modules are installed in the SM24TBT2D...

Page 18: ...wer Supply Operating Mode configured as Redundant Mode the two power supplies are mutually redundant If one of the power supplies fails the other power supply can keep the system working normally The PoE maximum output power of the two power supplies cannot be aggregated The PoE maximum output Power Budget in Redundant Mode is equal to the PoE Budget of a single power supply With Power Supply Oper...

Page 19: ...TBT2DPB 2XPS Power Supply Operating Mode Boost Mode Information Buttons Apply Click to save the changes Reset Click to undo any changes made locally and revert to previously saved values Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to refresh the page immediately ...

Page 20: ...on s that exist on another network segment Configure the switch managed IP information on this page IP basic settings control IP interfaces and IP routes The maximum number of interfaces supported is 8 and the maximum number of routes is 32 See Appendix A DHCP Per Port on page 371 for more DHCP Per Port information Web Interface To configure IP address parameters in the web UI 1 Click Configuratio...

Page 21: ...gure the IPv4 address and mask of the interface using the DHCP protocol The DHCP client will announce the configured System Name as hostname to provide DNS lookup IPv4 DHCP Fallback Timeout The number of seconds for trying to obtain a DHCP lease After this period expires a configured IPv4 address will be used as IPv4 interface address A value of zero disables the fallback mechanism such that DHCP ...

Page 22: ... VID of the specific IPv6 interface associated with the gateway The VID ranges from 1 4094 and will be effective only when the corresponding IPv6 interface is valid If the IPv6 gateway address is link local it must specify the next hop VLAN for the gateway If the IPv6 gateway address is not link local the system ignores the next hop VLAN for the gateway Buttons Add Interface Click to add a new IP ...

Page 23: ...figure NTP in the UI 1 Click Configuration System NTP 2 Specify the Time parameter in manual parameters 3 Click Apply Figure 2 1 3 NTP Configuration page Parameter descriptions Automatic Indicates the NTP mode of operation Possible modes are Enabled Enable NTP client mode operation NTP servers available from the DHCP Disabled Disable NTP client mode operation NTP servers available from the config ...

Page 24: ...and Minute within the valid value range indicated for each item To configure Time parameters in the web UI 1 Click Configuration System and Time 2 Specify the Time parameter 3 Click Apply Figure 2 1 4 Time Configuration page Parameter descriptions Time Configuration Clock Source There are two modes for configuring how the Clock Source from Select Use Local Settings Clock Source from Local Time or ...

Page 25: ...and configure the Daylight Saving Time duration to repeat the configuration every year Select Non Recurring and configure the Daylight Saving Time duration for single time configuration Default Disabled Recurring Configuration Start time settings Week Select the starting week number Day Select the starting day Month Select the starting month Hours Select the starting hour Minutes Select the starti...

Page 26: ... Figure 2 1 5 System Log Configuration page Parameter descriptions Server Mode Select the server mode operation When the mode operation is enabled the syslog message will send out to syslog server The syslog protocol is based on UDP communication and received on UDP port 514 and the syslog server will not send acknowledgments back sender since UDP is a connectionless protocol and it does not provi...

Page 27: ...gotiated to either 1G or 100 Mbps full duplex mode For ports that are not EEE capable the corresponding EEE checkboxes are grayed out and thus impossible to enable EEE When a port is powered down for saving power outgoing traffic is stored in a buffer until the port is powered up again Because there is some overhead in turning the port down and up more power can be saved if the traffic can be buff...

Page 28: ...le to minimize the latency for specific frames by mapping the frames to a specific queue done with QOS and then mark the queue as an urgent queue When an urgent queue gets data to be transmitted the circuits will be powered up at once and the latency will be reduced to the wakeup time EEE Urgent Queues Queues set will activate transmission of frames as soon as data is available Otherwise the queue...

Page 29: ...e displayed graphically A green means the link is up a red the link is down and an orange dot means 100MbpsFDX Current Link Speed Provides the current link speed of the port e g 1Gfdx or Disabled Configured Link Speed Select any available link speed for the given switch port Only speeds supported by the specific port are shown Possible speeds are Disabled Disables the switch port operation Auto Po...

Page 30: ...erred Ports in AMS mode with 100 FX speed have fiber port preferred Flow Control When Auto Speed is selected on a port this section indicates the flow control capability that is advertised to the link partner When a fixed speed setting is selected that is what is used The Current Rx column indicates whether pause frames on the port are obeyed and the Current Tx column indicates whether pause frame...

Page 31: ...Configuration Ports Configuration Port Description 2 Specify the detail Port alias or description in an alphanumeric string describing the full name and version identification for the system s hardware type software version and network application 3 Click Apply Figure 2 3 1 Port Description for Switch page Parameter descriptions Port This is the logical port number for this row Description Enter u...

Page 32: ...ode column 4 Click Apply Figure 2 4 1 1 DHCP Server Mode Configuration page Parameter descriptions VLAN Range Indicates the VLAN range in which DHCP server is enabled or disabled The first VLAN ID must be smaller than or equal to the second VLAN ID BUT if the VLAN range contains only one VLAN ID then you can just input it into either one of the first and second VLAN ID or both Otherwise if you wan...

Page 33: ...ocally and revert to previously saved values Messages Message dhcp_server_pool_set Pool2 error 995 Meaning DHCP per Port and DHCP Pool per VLAN cannot be enabled at same time DHCP per port and DHCP pool per VLAN are mutually exclusive Recovery Us either DHCP per Port or DHCP Pool per VLAN but not both Message Update success Meaning You made changes clicked the Apply button and the changes were sav...

Page 34: ...d IP Configuration page Parameter descriptions IP Range Define the IP range to be excluded IP addresses The first excluded IP must be smaller than or equal to the second excluded IP however if the IP range contains only one excluded IP then you can just input it to either one of the first and second excluded IP or both Buttons Add IP Range Click to add a new excluded IP range Apply Click to save c...

Page 35: ... page Name Configure a pool name using any printable character except the space character e g DHCP Per_Pool or DHCP_Per_Port To configure detailed settings click the linked pool name to go to its configuration page see below Type Display which type the pool is Network the pool defines a pool of IP addresses to service more than one DHCP client Host the pool services for a specific DHCP client iden...

Page 36: ...changes made locally and revert to previously saved values After you define a new pool and click Apply the page re displays with the new configuration Click on a Pool Setting Name from the Configuration DHCP Server Pool menu path to display the DHCP Pool Configuration page See the Internet Assigned Numbers Authority IANA webpage ...

Page 37: ...y domain name that client should use when resolving hostname via DNS Broadcast Address DHCP option 28 Specify the broadcast address in use on the client s subnet Default Router DHCP option 3 Specify a list of IP addresses for routers on the client s subnet DNS Server DHCP option 6 Specify a list of Domain Name System name servers available to the client TFTP Server DHCP option 66 Specify a list of...

Page 38: ...ardware MAC address to be used when the pool type is set to Host Client Name DHCP option 12 Specify the name of client to be used when the pool type is set to Host Vendor x Class Identifier DHCP option 60 Specify to be used by the DHCP client to optionally identify the vendor type and configuration of a DHCP client DHCP server will deliver the corresponding option 43 specific information to the cl...

Page 39: ...ted to a port and when the switch allows network communication from the lighting node to the lighting gateway Note If multicast traffic is not allowed on your network you can configure the network DHCP server to pass the lighting gateway server IP address in DHCP Option 229 Buttons Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values Messag...

Page 40: ...ou can now choose Enable or Disable at the Mode dropdown there is no need to delete the VLAN Range Note do not operate DHCP Per Port and DHCP Pool per VLAN at the same time If you configure entries for DHCP Pool per VLAN and then enable DHCP per Port the configured DHCP pool will be deleted 1 Use one of two ways to configure the DHCP Address Pool a Use an IP Address and a Subnet Mask or b Use an I...

Page 41: ...figuration 3 Select Trusted for the specific port in the Mode of Port Mode Configuration 4 Click Apply Figure 2 4 2 DHCP Snooping Configuration page Parameter descriptions Snooping Mode Indicates the DHCP snooping mode operation Possible modes are Enabled Enable DHCP snooping mode operation When DHCP snooping mode operation is enabled the DHCP request messages will be forwarded to trusted ports an...

Page 42: ...s and transfers DHCP messages between the clients and the server when they are not in the same subnet domain And the DHCP broadcast message won t be flooded for security considerations Disabled Disable DHCP relay mode operation Relay Server Indicates the DHCP relay server IP address Relay Information Mode Indicates the DHCP relay information mode option operation The option 82 circuit ID format as...

Page 43: ...e policies are Replace Replace the original relay information when a DHCP message that already contains it is received Keep Keep the original relay information when a DHCP message that already contains it is received Drop Drop the package when a DHCP message that already contains relay information is received Buttons Apply Click to save changes Reset Click to undo any changes made locally and reve...

Page 44: ...a link to Add Edit User Password Type the password The allowed string length is 0 255 characters and the allowed content is the ASCII characters from 32 to 126 Password again Type the password again You must type the same password again in the field Privilege Level The privilege level of the user The allowed range is 0 15 If the privilege level value is 15 it can access all groups i e that is gran...

Page 45: ... undo any changes made locally and revert to previously saved values Cancel Click to undo any changes made locally and return to the Users Delete User Delete current user This button is not available for new configurations Add New User Users Configuration page new user added Click a linked User Name to display the Edit User page Messages Can t change the privilege level since no other highest priv...

Page 46: ...Apply Figure2 5 1 2 Privilege Level Configuration page Parameter descriptions Group Name The name identifying the privilege group In most cases a privilege level group consists of a single module e g LACP RSTP or QoS but a few of them contains more than one The following description defines these privilege level groups in detail System Contact Name Location Timezone Daylight Saving Time Log Securi...

Page 47: ...nfiguration Execute Read Write Status Statistics Read only Status Statistics Read write e g for clearing of statistics User Privilege should be same or greater than the authorization Privilege level to have the access to that group Buttons Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values Messages The privilege level of Read only should ...

Page 48: ... Fallback 4 Click Apply Figure 2 4 1 3 Authentication Method Configuration page Parameter descriptions Client The management client for which the configuration below applies console telnet ssh http https type dropdown select no local radius or tacacs You can also select redirect http to https Methods Authentication Method can be set to one of the following values no authentication is disabled and ...

Page 49: ... a later method for telnet to local Do you want to continue Similar messages display for other client type selections console telnet ssh http and https Message Your connection is not secure displays if you selected redirect as the http client login method Similar messages display for other web browsers Click Learn more Go Back Advanced or Report errors like this If you select Advanced then a scree...

Page 50: ...ntain the certificate and private key together If you have two separated files for saving certificate and private key Use the Linux cat command to combine them into a single PEM file For example cat my cert my key my pem Note that the RSA certificate is recommended since most of the new browser versions have removed support for DSA in certificates e g Firefox v37 and Chrome v39 Possible methods ar...

Page 51: ...switch Possible statuses are Switch secure HTTP certificate is presented Switch secure HTTP certificate is not presented Switch secure HTTP certificate is generating Buttons Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values Messages HTTPS invalid Certificate HTTPS invalid URL parameter file is empty URL is empty ...

Page 52: ... Indicates the access management mode operation Possible modes are Enabled Enable access management mode operation Disabled Disable access management mode operation VLAN ID Indicates the VLAN ID for the access management entry Delete Check to delete the entry It will be deleted during the next save Start IP address Indicates the start IP address for the access management entry End IP address Indic...

Page 53: ...e related Community Name Trap Host IP Address Trap and all MIB counters will be ignored 2 5 1 7 1 System This page lets you configure SNMP System on the switch This function is used to configure SNMP settings community name trap host and public traps as well as the throttle of SNMP A SNMP manager must pass the authentication by identifying both community names then it can access the MIB informatio...

Page 54: ...ommunity write access string to permit access to SNMP agent The allowed string length is 0 to 255 and the allowed content is the ASCII characters 33 126 The field is applicable only when SNMP version is SNMPv1 or SNMPv2c If SNMP version is SNMPv3 the community string will be associated with SNMPv3 communities table It provides more flexibility to configure security name than a SNMPv1 or SNMPv2c co...

Page 55: ... Name Enter a name for the SNMP trap Trap Mode At the dropdown select the trap mode of operation Possible modes are Disabled Disable SNMP trap mode operation default UDP Enable UDP SNMP mode TCP Enable TCP SNMP mode Note FW v6 54 3104 added the SNMP Trap over TCP or UDP feature Trap Version At the dropdown select the SNMP trap supported version Possible versions are SNMPv1 Set SNMP trap supported ...

Page 56: ...ation Disabled Disable SNMP trap inform mode operation Trap Inform Timeout seconds Indicates the SNMP trap inform timeout The allowed range is 0 to 2147 seconds Trap Inform Retry Times Indicates the SNMP trap inform retry times The valid range is 0 255 retries Trap Probe Security Engine ID Indicates the SNMP trap probe security engine ID mode of operation Possible values are Enabled Enable SNMP tr...

Page 57: ...ronix SM24TBT2DPA and SM24TBT2DPB Web User Guide 33738 Rev H https www lantronix com Page 57 of 376 Example Trap Destination configurations Click any linked Name to display its SNMP Trap Configuration page ...

Page 58: ...riptions Delete Check to delete the entry It will be deleted during the next save Community Indicates the community access string to permit access to SNMPv3 agent The allowed string length is 1 32 and the allowed content is ASCII characters 33 126 The community string will be treated as security name and map an SNMPv1 or SNMPv2c community string Source IP Indicates the SNMP access source address A...

Page 59: ...l For the USM entry the usmUserEngineID and usmUserName are the entry s keys In a simple agent usmUserEngineID is always that agent s own snmpEngineID value The value can also take the value of the snmpEngineID of a remote SNMP engine with which this user can communicate In other words if the user engine ID equals the system engine ID then it is local user otherwise it s remote user The Engine ID ...

Page 60: ...phrase For MD5 authentication protocol the allowed string length is 8 32 characters For SHA authentication protocol the allowed string length is 8 to 40 characters The allowed content is ASCII characters 33 126 Privacy Protocol Indicates the privacy protocol that this entry should belong to Possible privacy protocols are None No privacy protocol DES An optional flag to indicate that this user uses...

Page 61: ...g the next save Security Model Indicates the security model that this entry should belong to Possible security models v1 Reserved for SNMPv1 v2c Reserved for SNMPv2c usm User based Security Model USM Security Name A string identifying the security name that this entry should belong to The allowed string length is 1 32 characters and the allowed content is ASCII characters 33 126 Group Name A strin...

Page 62: ...cters and the allowed content is ASCII characters 33 126 View Type Indicates the view type that this entry should belong to Possible view types are Included An optional flag to indicate that this view subtree should be included Excluded An optional flag to indicate that this view subtree should be excluded In general if a view entry s view type is excluded there should be another view entry existi...

Page 63: ... group name that this entry should belong to The allowed string length is 1 to 32 characters and the allowed content is ASCII characters 33 126 At the dropdown select default_ro_group or default_rw_group Security Model Indicates the security model that this entry should belong to Possible security models are Any Any security model accepted v1 v2c usm v1 Reserved for SNMPv1 v2c Reserved for SNMPv2c...

Page 64: ...w defining the MIB objects for which this request may potentially set new values The allowed string length is 1 to 32 characters and the allowed content is ASCII characters 33 126 Buttons Add New Entry Click to add a new access entry Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values ...

Page 65: ...nfiguration page Parameter descriptions Group Name The name identifying the severity group Severity Level Every group has a severity level These level types are supported 0 Emerg System is unusable Emergency 1 Alert Action must be taken immediately 2 Crit Critical condition 3 Error Error conditions 4 Warning Warning condition 5 Notice Normal but significant condition 6 Info Information message 7 D...

Page 66: ... Configuration Security Switch RMON Statistics 2 Click Add New Entry 3 Specify the ID and Data Source parameters 4 Click Apply Figure 2 5 1 8 1 RMON Statistics Configuration page Parameter descriptions Delete Check to delete the entry It will be deleted during the next save ID Indicates the index of the entry The range is 1 65535 Data Source Indicates the port ID which you want to be monitored Dat...

Page 67: ... be deleted during the next save ID Indicates the index of the entry The range is 1 65535 Data Source Indicates the port ID which wants to be monitored Interval Indicates the interval in seconds for sampling the history statistics data The range is 1 3600 the default value is 1800 seconds Buckets Indicates the maximum data entries associated this History control entry stored in RMON The range is 1...

Page 68: ...st and multi cast packets delivered to a higher layer protocol InDiscards The number of inbound packets that are discarded even the packets are normal InErrors The number of inbound packets that contained errors preventing them from being deliverable to a higher layer protocol InUnknownProtos the number of the inbound packets that were discarded because of the unknown or un support protocol OutOct...

Page 69: ...default Rising Threshold Rising threshold value 2147483648 2147483647 Rising Index Rising event index 1 65535 Falling Threshold Falling threshold value 2147483648 2147483647 Falling Index Falling event index 1 65535 Buttons Add New Entry Click to add a new entry to the table Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values Messages Vari...

Page 70: ...icates this event the string length is 0 127 characters the default is a null string Type Indicates the notification of the event the possible types are None No SNMP log is created no SNMP trap is sent Log Create SNMP log entry when the event is triggered Snmp trap Send SNMP trap when the event is triggered Log and trap Create SNMP log entry and send SNMP trap when the event is triggered Community...

Page 71: ...ort Security module which manages MAC addresses learned on the port The Limit Control configuration page has two sections a system configuration section and a port configuration section To configure Limit Control at the System level in the web UI 1 Navigate to Configuration Security Network Limit Control 2 Select Enabled in the Mode column of the System Configuration section 3 Check Aging Enabled ...

Page 72: ...as one row for each port on the selected switch and a number of columns which are Port The port number to which the configuration below applies Mode Controls whether Limit Control is enabled on this port Both this and the Global Mode must be set to Enabled for Limit Control to be in effect Notice that other modules may still use the underlying port security features without enabling Limit Control ...

Page 73: ...en it by clicking this button which will only be enabled if this is the case For other methods refer to Shutdown in the Action section above NOTE Clicking the Re open button causes the page to be refreshed so unsaved changes will be lost Sticky Sticky MAC AKA Persistent MAC learning is a port security feature that causes an interface to retain dynamically learned MAC addresses when the switch is r...

Page 74: ... documents on shared printers or by simply logging on to the Internet To configure a Network Access Server in the web UI 1 Navigate to Configuration Security Network NAS 2 Set the System Configuration section parameters 3 Set the Port Configuration section parameters 4 Click Apply Figure 2 5 2 2 Network Access Server Configuration page Parameter descriptions System Configuration Mode Set NAS to gl...

Page 75: ...dule to secure MAC addresses the Port Security module needs to check for activity on the MAC address in question at regular intervals and free resources if no activity is seen within a given period of time This parameter controls exactly this period and can be set to a number between 10 and 1000000 seconds If reauthentication is enabled and the port is in an 802 1X based mode this is not so critic...

Page 76: ...the switch port connected to the supplicant NOTE Suppose two backend servers are enabled and that the server timeout is configured to X seconds using the AAA configuration page and suppose that the first server in the list is currently down but not considered dead Now if the supplicant retransmits EAPOL Start frames at a rate faster than X seconds then it will never get authenticated because the s...

Page 77: ...must be configured accordingly When authentication is complete the RADIUS server sends a success or failure indication which in turn causes the switch to open up or block traffic for that particular client using the Port Security module Only then will frames from the client be forwarded on the switch There are no EAPOL frames involved in this authentication and therefore MAC based Authentication h...

Page 78: ...nments use the Monitor VLANs VLAN Membership and VLAN Port pages These pages show which modules have temporarily overridden the current Port VLAN configuration RADIUS attributes used in identifying a VLAN ID RFC2868 and RFC3580 form the basis for the attributes used in identifying a VLAN ID in an Access Accept packet The following criteria are used The Tunnel Medium Type Tunnel Type and Tunnel Pri...

Page 79: ...est VLAN if Allow Guest VLAN if EAPOL Seen is disabled Port State The current state of the port It can undertake one of the following values Globally Disabled NAS is globally disabled Link Down NAS is globally enabled but there is no link on the port Authorized The port is in Force Authorized or a single supplicant mode and the supplicant is authorized Unauthorized The port is in Force Unauthorize...

Page 80: ... This page lets you configure ACL parameters ACE for each switch port These parameters will affect frames received on a port unless the frame matches a specific ACE To configure ACL Ports in the web UI 1 Click Configuration Security Network ACL Ports 2 Select the specific parameter values for port ACL settings 3 Click the Apply button to save the settings 4 To cancel the settings click the Reset b...

Page 81: ...te that the System Log memory size and logging rate is limited Shutdown Specify the port shut down operation of this port The allowed values are Enabled If a frame is received on the port the port will be disabled Disabled Port shut down is disabled The default value is Disabled State Specify the port state of this port The default value is Enabled The allowed values are Enabled To reopen ports by...

Page 82: ... 3 Select the Unit of measure pps or kbps 4 Click Apply to save the settings 5 To cancel the settings click the Reset button The page will revert to previously saved values Figure 2 5 2 3 2 ACL Rate Limiter Configuration page Parameter descriptions Rate Limiter ID The rate limiter ID for the settings contained in the same row Rate The allowed values are 0 3276700 in pps or 0 100 200 300 1000000 in...

Page 83: ...tions are displayed depending on the frame type selected A frame that hits this ACE matches the configuration that is defined here Each row describes the ACE that is defined The maximum number of ACEs is 256 on each switch Click on the lowest plus sign to add a new ACE to the list The reserved ACEs used for internal protocol cannot be edited or deleted the order sequence cannot be changed the prio...

Page 84: ... policy filter you can enter a specific policy bitmask The allowed range is 0x0 to 0xff Notice the usage of bitmask if the binary bit value is 0 it means this bit is don t care The real matched pattern is policy_value policy_bitmask For example if the policy value is 3 and the policy bitmask is 0x10 bit 0 is don t care bit then policy 2 and 3 are applied to this rule Frame Type Select the frame ty...

Page 85: ...he packet length is less than 1518 without VLAN tags and the System Log memory size and logging rate is limited Shutdown Specify the port shut down operation of the ACE The allowed values are Enabled If a frame matches the ACE the ingress port will be disabled Disabled Port shut down is disabled for the ACE Note The shutdown feature only works when the packet length is less than 1518 without VLAN ...

Page 86: ...quest Frame must have ARP Request or RARP Request OP flag set Reply Frame must have ARP Reply or RARP Reply OP flag Sender IP Filter Specify the sender IP filter for this ACE Any No sender IP filter is specified Sender IP filter is don t care Host Sender IP filter is set to Host Specify the sender IP address in the SIP Address field that appears Network Sender IP filter is set to Network Specify t...

Page 87: ...ol filter with this ACE choose this value A field for entering an IP protocol filter appears ICMP Select ICMP to filter IPv4 ICMP protocol frames Extra fields for defining ICMP parameters will appear These fields are explained later in this help file UDP Select UDP to filter IPv4 UDP protocol frames Extra fields for defining UDP parameters will appear These fields are explained later in this help ...

Page 88: ...alue A field for entering an IPv6 next header filter appears ICMP Select ICMP to filter IPv6 ICMP protocol frames Extra fields for defining ICMP parameters will appear These fields are explained later in this help file UDP Select UDP to filter IPv6 UDP protocol frames Extra fields for defining UDP parameters will appear These fields are explained later in this help file TCP Select TCP to filter IP...

Page 89: ...Range When Range is selected for the TCP UDP source filter you can enter a specific TCP UDP source range value The allowed range is 0 to 65535 A frame that hits this ACE matches this TCP UDP source value TCP UDP Destination Filter Specify the TCP UDP destination filter for this ACE Any No TCP UDP destination filter is specified TCP UDP destination filter status is don t care Specific If you want t...

Page 90: ...ameters The Ethernet Type parameters can be configured when Frame Type Ethernet Type is selected EtherType Filter Specify the Ethernet type filter for this ACE Any No EtherType filter is specified EtherType filter status is don t care Specific If you want to filter a specific EtherType filter with this ACE you can enter a specific EtherType value A field for entering a EtherType value appears Ethe...

Page 91: ... Source Guard in the web UI 1 Click Configuration Security Network IP Source Guard Configuration 2 Select Enabled in the Mode of IP Source Guard Configuration 3 Select Enabled on specific port s in the Mode of Port Mode Configuration 4 Select Maximum Dynamic Clients 0 1 2 Unlimited of the specific port at the Mode dropdown in the Port Mode Configuration section 5 Click Apply Figure 2 5 2 4 1 IP So...

Page 92: ...n be 0 1 2 or unlimited If the port mode is enabled and the value of max dynamic client is equal to 0 it means only allow the IP packets forwarding that are matched in static entries on the specific port Buttons Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values Translate dynamic to static Click this button to translate all dynamic entrie...

Page 93: ...ntry 3 Specify the Port VLAN ID IP Address and MAC address in the entry 4 Click Apply Figure 2 4 2 5 2 Static IP Source Guard Table Parameter descriptions Delete Click to delete the entry It will be deleted during the next save Port The logical port for the settings VLAN ID The VLAN id for the settings IP Address Allowed Source IP address MAC address Allowed Source MAC address Buttons Apply Click ...

Page 94: ...de Enabled and Disabled and Port Enabled and Disabled To configure an ARP Inspection Configuration in the web interface 1 Navigate to Configuration Security Network ARP Inspection Port Configuration 2 Select Enabled at the Mode dropdown of ARP Inspection Configuration 3 Select Enabled of the specific port s in the Mode column of the Port Mode Configuration section 4 Click Apply Figure 2 4 2 6 1 AR...

Page 95: ...etting Possible setting of Check VLAN are Enabled Enable check VLAN operation Disabled Disable check VLAN operation Log Type Only when Global Mode and Port Mode on a given port are enabled and the setting of Check VLAN is disabled the log type of ARP Inspection will refer to the port setting The four possible log types are None Log nothing Deny Log denied entries Permit Log permitted entries ALL L...

Page 96: ...from that or the closest next VLAN Table match The Next entry button will use the next entry of the currently displayed VLAN entry as a basis for the next lookup When the end is reached the warning message is shown in the displayed table Use the button to start over Web Interface To configure VLAN Mode parameters in the web UI 1 Navigate to Configuration Security Network ARP Inspection VLAN Config...

Page 97: ...B Web User Guide 33738 Rev H https www lantronix com Page 97 of 376 Buttons Add New Entry Click to add a new VLAN to the table Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values ...

Page 98: ...ess and MAC address in the entry 4 Click Apply Figure 2 4 2 6 3 Static ARP Inspection Table Parameter descriptions Delete Check to delete the entry It will be deleted during the next save Port The logical port for the settings VLAN ID The VLAN ID VID for the settings MAC Address Allowed Source MAC address in ARP request packets IP Address Allowed Source IP address in ARP request packets Add New En...

Page 99: ...e value of the first displayed entry allowing for continuous refresh with the same start address Clicking the Next entry button will use the last entry of the currently displayed table as a basis for the next lookup When the end is reached the text No more entries is shown in the displayed table Use the Refresh button to start over Web Interface To configure Dynamic ARP Inspection in the web UI 1 ...

Page 100: ...he displayed table starting from the input fields Save Click to save changes Reset Click to undo any changes made locally and revert to previously saved values Updates the table starting from the first entry in the Dynamic ARP Inspection Table Updates the table starting with the entry after the last entry currently displayed ...

Page 101: ... RADIUS 2 Enter the Global Configuration parameters 3 Click the Add New Server button and enter the Server Configuration parameters 4 Click the Apply button Figure 2 4 3 2 RADIUS Server Configuration page Parameter descriptions Global Configuration These settings are common for all RADIUS servers Timeout Timeout is the number of seconds in the range 1 to 1000 to wait for a reply from a RADIUS serv...

Page 102: ...me of the RADIUS server Auth Port The UDP port to use on the RADIUS server for authentication The officially assigned port number for RADIUS Accounting is 1812 Note by default many access servers use port 1645 for authentication requests Note For Windows Server information on how to configure ports that Network Policy Server NPS uses for Remote Authentication Dial In User Service RADIUS authentica...

Page 103: ...er text IETF RFC2865 95 NAS IPv6 Address ipv6addr IETF RFC3162 The RADIUS Accounting protocol provides a protocol for carrying accounting information between a Network Access Server and a shared Accounting Server per IETF RFC 2866 See the IANA Considerations for guidance regarding IANA registration of values related to RADIUS as defined in IETF RFC2865 See your RADIUS server documents for more inf...

Page 104: ...iod during which the switch will not send new requests to a server that has failed to respond to a previous request This will stop the switch from continually trying to contact a server that it has already determined as dead Setting the Deadtime to a value greater than 0 zero will enable this feature but only if more than one TACACS server has been configured Key The secret key up to 63 characters...

Page 105: ...r Click to add a new TACACS server An empty row is added to the table and the TACACS server can be configured as needed Up to 5 servers are supported The Reset button can be used to undo the addition of the new server Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values ...

Page 106: ...dshaking with its peer port This is also a disadvantage because the peer ports of your static trunk group may not know that they should be aggregate together to form a logic trunked port Using Static Trunk on both end of a link is strongly recommended Please also note that low speed links will stay in not ready state when using static trunk to aggregate with high speed links To configure the Trunk...

Page 107: ... Indicates the group ID for the settings contained in the same row Group ID Normal indicates there is no aggregation Only one group ID is valid per port Port Members Each switch port is listed for each group ID Select a radio button to include a port in an aggregation or clear the radio button to remove the port from the aggregation By default no ports belong to any aggregation group Only full dup...

Page 108: ...umber LACP Enabled Controls whether LACP is enabled on this switch port LACP will form an aggregation when 2 or more ports are connected to the same partner Key The Key value incurred by the port in the range 1 65535 The Auto setting will set the key as appropriate by the physical link speed 10Mb 1 100Mb 2 1Gb 3 Using the Specific setting a user defined value can be entered Ports with the same Key...

Page 109: ... port loop Protection 3 Click the Apply button to save the setting 4 To cancel the settings click the Reset button to revert to previously saved values Figure 2 7 Loop Protection Configuration Parameter descriptions Global Configuration Enable Loop Protection Controls whether loop protections is enabled as a whole Transmission Time The interval between each loop protection PDU sent on each port Va...

Page 110: ...d on this switch port Action Configures the action performed when a loop is detected on a port Valid values are Shutdown Port Shutdown Port and Log or Log Only Tx Mode Controls whether the port is actively generating loop protection PDU s or whether it is just passively looking for looped PDU s Buttons Apply Click to save changes Reset Click to undo any changes made locally and revert to previousl...

Page 111: ...ports and designated ports and disables all other ports Network packets are therefore only forwarded between root ports and designated ports eliminating any possible network loops Once a stable network topology has been established all bridges listen for Hello BPDUs Bridge Protocol Data Units transmitted from the Root Bridge If a bridge does not get a Hello BPDU after a predefined interval Maximum...

Page 112: ...usly saved values Figure 2 8 1 STP Bridge Configuration page Parameter descriptions Basic Settings Protocol Version The STP protocol version setting Valid values are STP RSTP and MSTP Bridge Priority Controls the bridge priority Lower numeric values have better priority The bridge priority plus the MSTI instance number concatenated with the 6 byte MAC address of the switch forms a Bridge Identifie...

Page 113: ...her a port explicitly configured as Edge will transmit and receive BPDUs Edge Port BPDU Guard Control whether a port explicitly configured as Edge will disable itself upon reception of a BPDU The port will enter the error disabled state and will be removed from the active topology Port Error Recovery Control whether a port in the error disabled state automatically will be enabled after a certain t...

Page 114: ...ce To configure Spanning Tree MSTI Mapping parameters in the web UI 1 Click Configuration Spanning Tree MSTI Mapping 2 Specify the configuration identification parameters in the field 3 Specify the VLANs Mapped blank field 4 Click the Apply button to save the setting 5 To cancel the settings click the Reset button The page will revert to previously saved values Figure 2 9 2 MSTI Configuration page...

Page 115: ... it will receive the VLANs not explicitly mapped VLANs Mapped The list of VLANs mapped to the MSTI The VLANs can be given as a single xx xx being between 1 and 4094 VLAN or a range xx yy each of which must be separated with comma and or space A VLAN can only be mapped to one MSTI An unused MSTI should just be left empty i e not having any VLANs mapped to it For example 2 5 20 40 Buttons Apply Clic...

Page 116: ... Spanning Tree MSTI Priorities parameters in the web UI 1 Click Configuration Spanning Tree MSTI Priorities 2 Select the Priority the valid range is 0 61440 3 Click the Apply button to save the settings 4 To cancel the settings click the Reset button The page will revert to previously saved values Figure 2 8 3 MSTI Configuration page Parameter descriptions MSTI The bridge instance The CIST is the ...

Page 117: ...to previously saved values Figure 2 8 4 STP CIST Port Configuration page Parameter descriptions Port The switch port number of the logical STP port STP Enabled Controls whether STP is enabled on this switch port Path Cost Controls the path cost incurred by the port The Auto setting will set the path cost as appropriate by the physical link speed using the 802 1D recommended values Using the Specif...

Page 118: ...y changes to other ports If set it can cause temporary loss of connectivity after changes in a spanning tree s active topology as a result of persistently incorrect learned station location information It is set by a network administrator to prevent bridges external to a core region of the network causing address flushing in that region possibly because those bridges are not under the full control...

Page 119: ... 1 Click Configuration Spanning Tree MSTI Ports 2 Scroll to select the MST1 or other MSTI Port 3 Click the Get button to set the detail parameters of the MSTI Ports 4 Select all MSTI Port Configuration parameters 5 Click the Apply button to save the settings 6 To cancel the settings click the Reset button The page will revert to previously saved values Figure 2 8 5 MSTI Port Configuration page Par...

Page 120: ...g ports in favor of higher path cost ports Valid values are 1 200000000 Priority Controls the port priority This can be used to control priority of ports having identical port cost See above Buttons Get Click to retrieve settings for a specific MSTI Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values ...

Page 121: ...128 corresponding Rules for each Profile To configure the IPMC Profile Configuration in the web interface 1 Navigate to Configuration IPMC Profile Profile Table 2 At the Global Profile Mode dropdown select Enabled 3 Click the Add New IPMC Profile button 4 Enter the Profile Name and Profile Description parameters 5 Click the Apply button 6 In the Rule column click the Edit Profile Rule icon 7 Click...

Page 122: ...ed of up to 64 alphabetic and numeric characters about the profile No blank or space characters are permitted as part of description Use the _ or character to separate the description sentences Rule When the profile is created click the edit button to enter the rule setting page of the designated profile Summary about the designated profile will be shown by clicking the view button You can manage ...

Page 123: ...s the group address matches the address range of the rule Permit Group address matches the range specified in the rule will be learned Deny Group address matches the range specified in the rule will be dropped Log Indicates the logging preference upon receiving the Join Report frame that has the group address matches the address range of the rule Enable Corresponding information of the group addre...

Page 124: ...e unique name which is composed of at maximum 16 alphabetic and numeric characters At least one alphabet must be present Start Address The starting IPv4 IPv6 Multicast Group Address that will be used as an address range End Address The ending IPv4 IPv6 Multicast Group Address that will be used as an address range Buttons Add New Address Range Entry Click to add new address range Specify the name a...

Page 125: ...riptions MVR Mode Enable Disable the Global MVR The Unregistered Flooding control depends on the current configuration in IGMP MLD Snooping It is suggested to enable Unregistered Flooding control when the MVR group table is full Delete Check to delete the entry The designated entry will be deleted during the next save MVR VID Specify the Multicast VLAN ID Caution MVR source ports are not recommend...

Page 126: ...R VLAN as one of the following roles Inactive The designated port does not participate in MVR operations Source Configure uplink ports that receive and send multicast data as source ports Subscribers cannot be directly connected to source ports Receiver Configure a port as a receiver port if it is a subscriber port and should only receive multicast data It does not receive data unless it becomes a...

Page 127: ... joins or leaves an IP Multicast Destination Address With this function once a switch receives an IP multicast packet it will forward the packet to the members who joined in a specified IP multicast group before The packets will be discarded by the IGMP Snooping if the user transmits multicast packets to the multicast group that had not been built up in advance IGMP mode enables the switch to issu...

Page 128: ... avoid forwarding unnecessary leave messages to the router side Proxy Enabled Enable IGMP Proxy This feature can be used to avoid forwarding unnecessary join and leave messages to the router side Port It shows the physical Port index of the switch Router Port Specify which ports act as router ports A router port is a port on the Ethernet switch that leads towards the Layer 3 multicast device or IG...

Page 129: ...e Add New IGMP VLAN button or click Refresh to update the data or click or to display previous entry or next entry 4 Click Apply to save the setting 5 To cancel the settings click the Reset button to revert to previously saved values Figure 2 11 1 2 IGMP Snooping VLAN Configuration page Parameter descriptions Delete Check to delete the entry The designated entry will be deleted during the next sav...

Page 130: ...onds LLQI LMQI for IGMP Last Member Query Interval The Last Member Query Time is the time value represented by the Last Member Query Interval multiplied by the Last Member Query Count The allowed range is 0 to 31744 in tenths of seconds the default LLQI is 10 in tenths of seconds 1 second URI The Unsolicited Report Interval is the time between repetitions of a host s initial report of membership i...

Page 131: ...the stream of IP multicast traffic is dropped and the port is not allowed to receive IP multicast traffic from that group If the filtering action permits access to the multicast group the IGMP report from the port is forwarded for normal processing IGMP filtering controls only IGMP membership join reports and has no relationship to the function that directs the forwarding of IP multicast traffic W...

Page 132: ... Profile Management button You can inspect the rules of the designated profile by using the following button Navigate Profile view the rules associated with the designated profile Buttons Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values Example ...

Page 133: ...ning on the source and destination systems cooperates to determine what multicast address to use Note that this is a function of the application software not of MLD When MLD snooping is enabled on a VLAN the switch acts to minimize unnecessary multicast traffic If the switch receives multicast traffic destined for a given multicast address it forwards that traffic only to ports on the VLAN that ha...

Page 134: ...cessary leave messages to the router side Proxy Enabled Enable MLD Proxy This feature can be used to avoid forwarding unnecessary join and leave messages to the router side Router Port Specify which ports act as router ports A router port is a port on the Ethernet switch that leads towards the Layer 3 multicast device or MLD querier If an aggregation member port is selected as a router port the wh...

Page 135: ...page 3 Click Refresh to refresh an entry of the MLD Snooping VLAN Configuration Information 4 Click or to move to previous or next entry Figure 2 11 2 2 MLD Snooping VLAN Configuration page Parameter descriptions Delete Check to delete the entry The designated entry will be deleted during the next save VLAN ID It displays the VLAN ID of the entry IGMP Snooping Enabled Enable the per VLAN IGMP Snoo...

Page 136: ...r Query Interval The Last Member Query Time is the time value represented by the Last Member Query Interval multiplied by the Last Member Query Count The allowed range is 0 to 31744 in tenths of seconds the default LLQI is 10 in tenths of a second 1 second URI Unsolicited Report Interval The Unsolicited Report Interval is the time between repetitions of a host s initial report of membership in a g...

Page 137: ... To cancel the settings click the Reset button The page will revert to previously saved values Figure 2 11 2 3 MLD Snooping Port Filtering Configuration page Parameter descriptions Port The logical port for the settings Filtering Profile Select the IPMC Profile as the filtering condition for the specific port Summary about the designated profile will be shown by clicking the view button Navigate P...

Page 138: ...incipally wired Ethernet The protocol is formally referred to by the IEEE as Station and Media Access Control Connectivity Discovery specified in standards document IEEE 802 1AB 2 12 1 LLDP Configuration This page lets you view and configure the current LLDP port settings You can configure LLDP and detailed per port parameters here the settings will take effect immediately Web Interface To configu...

Page 139: ...witch will not send out LLDP information and will drop LLDP information received from neighbors Enabled the switch will send out LLDP information and will analyze LLDP information received from neighbors CDP Aware Check the box to enable CDP Cisco Discoovery Protocol awareness CDP operation is restricted to decoding incoming CDP frames The switch doesn t transmit CDP frames CDP frames are only dec...

Page 140: ...iously saved values Note Link Layer Discovery Protocol LLDP is a layer 2 Ethernet protocol for managing devices LLDP allows an exchange of information between a PSE and a PD This information is formatted in Type Length Value TLV format PoE standards define TLV structures used by PSEs and PDs to signal and negotiate available power The type and length are fixed in size typically 1 4 bytes and the v...

Page 141: ...cation databases and in the case of Voice over Internet Protocol VoIP Enhanced 911 services Extended and automated power management of Power over Ethernet PoE end points Inventory management allows network administrators to track their network devices and determine their characteristics manufacturer software hardware versions serial number To configure LLDP MED 1 Click Configuration LLDP MEDLLDP M...

Page 142: ... transmitted when an LLDP frame with new information is received Note that LLDP MED and the LLDP MED Fast Start mechanism is only intended to run on links between LLDP MED Network Connectivity Devices and Endpoint Devices and as such does not apply to links between LAN infrastructure elements including Network Connectivity Devices or other types of links Coordinates Location Latitude Latitude SHOU...

Page 143: ...OX Example 12345 Additional code Additional code Example 1320300003 Emergency Call Service Emergency Call Service e g E911 and others such as defined by TIA or NENA Emergency Call Service Emergency Call Service ELIN identifier data format is defined to carry the ELIN identifier as used during emergency call setup to a traditional CAMA or ISDN trunk based PSAP This format consists of a numerical di...

Page 144: ...laptops This class of endpoints frequently does not support multiple VLANs if at all and are typically configured to use an untagged VLAN or a single tagged data specific VLAN When a network policy is defined for use with an untagged VLAN see Tagged flag below then the L2 priority field is ignored and only the DSCP value has relevance 6 Video Conferencing for use by dedicated Video Conferencing eq...

Page 145: ...r port configuration Port The port number to which the configuration applies Policy Id The set of policies that will apply to a given port The set of policies is selected by check marking the checkboxes that corresponds to the policies Buttons Add New Policy Click to add a new policy Specify the Application type Tag VLAN ID L2 Priority and DSCP for the new policy Click Apply Apply Click to save ch...

Page 146: ...4 Click Apply Figure 2 13 1 PoE Configuration page SM24TBT2DPA before FW vB6 54 3476 Parameter descriptions before FW vB6 54 3476 Reserved Power determined by There are three modes for configuring how the ports PDs may reserve power Class mode In this mode each port automatically determines how much power to reserve according to the Class the connected PD belongs to and reserves the power accordin...

Page 147: ...ith two power supplies installed Note that the Configuration Power Information page also has power configuration parameters PoE Port Configuration Port This is the logical port number for this row Ports that are not PoE capable are grayed out and cannot be configured for PoE PoE Mode Select the PoE operating mode for the port Disabled PoE disabled for the port Enabled Enables PoE IEEE 802 3bt Clas...

Page 148: ...ply 90 Watts to the PD mainly depending on the way the PD is requesting power Different PDs may need to be configured different ways Moving forward when both the PSE and PD support full 802 3bt standard will be easier Below is one way to configure the switch to provide 90W with one power supply 1 Make sure the switch is at FW v 6 54 3178 or above and PoE FW v 208 211 2 11 or above 2 Set Reserved P...

Page 149: ...C 1200 power supply which enables up to 900W of total PoE power when connected to low line AC or DC power or 1080W with high line AC or DC power A second PS ACDC 1200 power supply can be installed for redundancy or to provide increased PoE power with two hot swappable power supplies the switch can provide up to 1800W of total PoE power when connected to low line AC or DC power or 2150W with high l...

Page 150: ...rt number in ascending order Low the lowest priority level This is the default setting Ports set to this level only receive power if all the ports assigned to the other two levels are already receiving power As with the other levels if there is not enough power to support all ports set to Low priority level power is provided to the ports based on port number in ascending order LLDP Select Enabled ...

Page 151: ...use the FW upgrade includes a PoE FW upgrade to support the IEEE 802 3bt standard so you can t downgrade to an old FW version PoE Mode setting between v6 54 3303 with vB6 54 3476 and newer v6 54 3303 vB6 54 3476 Disabled Disabled Enabled 4pair90w 4pair 4pair60w 2pair 8023bt Notes 1 The PoE mode setting will be mapping according to the table above after firmware upgrade 2 It s not allowed to downgr...

Page 152: ... 8 PDs limited to 90W 8023bt60w Enables PoE IEEE 802 3bt Class 8 PDs limited to 60W 8023bt30w Enables PoE IEEE 802 3bt Class 8 PDs limited to 30W force90w Enables PoE force power PDs limited to 90W force60w Enables PoE force power PDs limited to 60W Messages PoE Mode Force90w The switch will power up the linked PD without any detect negotiate mechanism PD limited to 90W Do you want to Change this ...

Page 153: ...t 3 Specify the power providing delay time after a reboot occurs 4 Click Apply to apply the change Figure 2 13 2 PoE Power Delay page Parameter descriptions Port This is the logical port number for this row Delay Mode Turn on off the power delay function Enabled Enable POE Power Delay Disabled Disable POE Power Delay Delay Time 0 300sec When rebooting the PoE port will start to provide power to th...

Page 154: ...time and day to supply power 4 Click Apply to apply the change Figure 2 13 3 PoE Schedule Profile page Parameter descriptions Profile The index of profile There are 16 profiles in the configuration Name The name of profile The default name is Profile Define the name for identifying the profile Week Day The day to schedule PoE Start Time The time to start PoE The time 00 00 means the first second o...

Page 155: ...o apply the changes Figure 2 13 4 PoE Auto Power Reset Parameter descriptions Ping Check Enable Ping Check function can detect the connection between the PoE port and the powered device Disabled will turn off the detection Port This is the logical port number for this row Ping IP Address The PD s IP Address the system should ping Startup Time sec When PD has been started up the Switch will wait St...

Page 156: ...Reboot time sec When the PD has been rebooted the PoE port restores power after the specified time Default 15 seconds range 3 120 seconds Max Reboot Times When Failure Action is set to Reboot Remote PD this setting limits the number of times the PD is rebooted The default is 3 reboots the valid range is 0 10 reboots Entering a 0 means unlimited reboots as the failure action Buttons Apply Click to ...

Page 157: ...5 Click Apply to save the changes Figure 2 13 5 PoE Chip Reset Schedule page Parameter descriptions only displayed when Mode is Enabled Mode Indicates the chip reset scheduling mode operation Possible modes are Enabled Enable PoE chip reset Disabled Disable PoE chip reset Week Day The day to reset PoE chip Monday Tuesday Wednesday Thursday Friday or Saturday PoE Chip Reset Time The time to reset P...

Page 158: ...mic entries are removed from the MAC table if no frames with the corresponding SMAC address have been seen after a configurable age time Web Interface To configure the MAC Address Table via the web UI Aging Configuration 1 Click Configuration 2 Specify the Disable Automatic Aging and Aging Time 3 Click Apply MAC Table Learning 1 Click Configuration 2 Specify the Port Members Auto Disable Secure 3 ...

Page 159: ...can only be restored by using another non secure port or by connecting to the switch via the serial interface Static MAC Table Configuration The static entries in the MAC table are shown in this table The static MAC table can contain 64 entries The maximum of entries is 64 The MAC table is sorted first by VLAN ID and then by MAC address Delete Check to delete the entry It will be deleted during th...

Page 160: ...new management VLAN or connect to the new management VLAN through a multi VLAN route Web Interface To configure VLAN parameters in the web UI 1 Click Configuration VLANS 2 Specify Allowed Access VLANs Ether type for Custom S ports 3 Click Apply Figure 2 15 1 VLAN Configuration page Parameter descriptions Global VLAN Configuration Allowed Access VLANs This field shows the VLANs that are created on ...

Page 161: ...g can be changed to tag all frames in which case only tagged frames are accepted on ingress VLAN trunking may be enabled Hybrid Hybrid ports resemble trunk ports in many ways but have additional port configuration features In addition to the characteristics described for trunk ports hybrid ports have these abilities Can be configured to be VLAN tag unaware C tag aware S tag aware or S custom tag a...

Page 162: ...ybrid ports allow for changing the type of frames that are accepted on ingress Tagged and untagged both tagged and untagged frames are accepted Tagged Only Only tagged frames are accepted on ingress Untagged frames are discarded Untagged Only Only untagged frames are accepted on ingress Tagged frames are discarded Egress Tagging Ports in Trunk and Hybrid mode may control the tagging of frames on e...

Page 163: ...to forward packets By default all ports are VLAN unaware and members of VLAN 1 and Private VLAN 1 A VLAN unaware port can only be a member of one VLAN but it can be a member of multiple Private VLANs Web Interface To configure Private VLAN Membership parameters in the web UI 1 Click Configuration Private VLANs Membership 2 Select the ports you want to enable VLAN membership 3 Click Apply Figure 2 ...

Page 164: ...e appears Click OK to discard the incorrect entry or click Cancel to return to the editing and make a correction The Private VLAN is enabled when you click Apply The Delete button can be used to undo the addition of new Private VLANs Buttons Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to refresh the page immediately Save Click to save changes Reset C...

Page 165: ...ion address on the data packet The data packet is then sent to the plurality of ports pursuant to the forwarding map generated based upon whether the ingress port was configured as a protected or non protected port This page is used for enabling or disabling port isolation on ports in a Private VLAN A port member of a VLAN can be isolated to other isolated ports on the same VLAN and Private VLAN W...

Page 166: ...rminal devices access the network through Port B they will have access to the same resources as those accessing the network through Port A do which brings security issues To provide user access and ensure data security in the meantime the MAC based VLAN technology is developed MAC based VLANs group VLAN members by MAC address With MAC based VLAN configured the device adds a VLAN tag to an untagged...

Page 167: ...95 The MAC based VLAN entry is enabled on the switch when you click on Apply A MAC based VLAN without any port members will be deleted when you click Apply The Reset button can be used to undo the addition of new MAC based VLANs Buttons Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values Add New Entry Click to add another entry to the tabl...

Page 168: ...uished by the 8 bit 802 2 Service Access Point SAP fields SNAP supports identifying protocols by Ethernet type field values it also supports vendor private protocol identifier spaces It is used with IEEE 802 3 IEEE 802 4 IEEE 802 5 IEEE 802 11 and other IEEE 802 physical network layers as well as with non IEEE 802 physical network layers such as FDDI that use 802 2 LLC 2 17 2 1 Protocol to Group T...

Page 169: ...value for the protocol running on top of SNAP if the OUI is an OUI for a particular organization the protocol ID is a value assigned by that organization to the protocol running on top of SNAP In other words if value of OUI field is 00 00 00 then value of PID will be etype 0x0600 0xffff and if value of OUI is other than 00 00 00 then valid value of PID will be any value from 0x0000 to 0xffff Group...

Page 170: ...Group mapping table and must not be perused by any other existing mapping entry on this page VLAN ID Indicates the ID to which Group Name will be mapped A valid VLAN ID ranges from 1 4095 Port Members A row of check boxes for each port is displayed for each Group Name to VLAN ID mapping To include a port in a mapping check the box To remove or exclude the port from the mapping make sure the box is...

Page 171: ...address 0 0 0 0 is not allowed Mask Length Indicates the network mask length VLAN ID Indicates the VLAN ID VLAN ID can be changed for the existing entries Port Members A row of check boxes for each port is displayed for each IP subnet based VLAN entry To include a port in a IP subnet based VLAN check the box To remove or exclude the port from the IP subnet based VLAN make sure the box is unchecked...

Page 172: ...or voice one for data Before connecting the IP device to the switch the IP phone should configure the Voice VLAN ID correctly via its own GUI To configure Voice VLAN in the web UI 1 Navigate to Configuration Voice VLAN Configuration 2 Select Enabled in the Voice VLAN Configuration 3 Specify VLAN ID Aging Time Traffic Class 2 Specify Port Mode Security and Discovery Protocol in the Port Configurati...

Page 173: ...t mode It detects whether there is VoIP phone attached to the specific port and configures the Voice VLAN members automatically Forced Force join to Voice VLAN Security Indicates the Voice VLAN port security mode When the function is enabled all non telephonic MAC addresses in the Voice VLAN will be blocked for 10 seconds Possible port modes are Enabled Enable Voice VLAN security mode operation Di...

Page 174: ...VLAN OUI table 2 Specify Telephony OUI Description 3 Click Apply Figure 2 18 2 Voice VLAN OUI Table Parameter descriptions Delete Check to delete the entry It will be deleted during the next save Telephony OUI A telephony OUI address is a globally unique identifier assigned to a vendor by the IEEE It must be 6 characters long and the input format is xx xx xx where x is a hexadecimal digit Descript...

Page 175: ...red for that specific QoS class The switch supports advanced memory control mechanisms providing excellent performance of all QoS classes under any traffic scenario including jumbo frames Support includes a super priority queue with dedicated memory and strict highest priority in arbitration The ingress super priority queue allows traffic recognized as CPU traffic to be received and queued for tra...

Page 176: ...esponds to Discard Eligible Yellow frames PCP Controls the default PCP value All frames are classified to a PCP value If the port is VLAN aware and the frame is tagged then the frame is classified to the PCP value in the tag Otherwise the frame is classified to the default PCP value Priority Code Point PCP is a 3 bit field storing the priority level for the 802 1Q frame It is also known as User Pr...

Page 177: ...ss Port Policers and type the Rate limit condition 3 Scroll to select the Rate limit Unit kbps Mbps fps or kfps 4 Click Apply to save the configuration Figure 2 19 2 QoS Ingress Port Policers page Parameter descriptions Port The logical port for the settings contained in the same row Click on the port number in order to configure the schedulers Enabled Select which Port you need to enable the QoS ...

Page 178: ...hedulers for all switch ports To configure QoS Egress Port Schedulers via the web UI 1 Click Configuration QoS Port Schedulers 2 Click a linked Port number to display its Queue Shaper page 3 Enter the Port Scheduler Mode and Queue Shaper parameters 4 Click Apply to save the changes Figure 2 19 4 QoS Egress Port Schedules page Click the Port index to set the QoS Egress Port Schedulers ...

Page 179: ... Rate Controls the rate for the queue shaper The default value is 500 This value is restricted to 100 1000000 when the Unit is kbps and it is restricted to 1 13200 when the Unit is Mbps Queue Shaper Unit Controls the unit of measure for the queue shaper rate as kbps or Mbps The default value is kbps Queue Shaper Excess Controls whether the queue is allowed to use excess bandwidth Queue Scheduler W...

Page 180: ... value is restricted to 100 1000000 when the Unit is kbps and it is restricted to 1 13200 when the Unit is Mbps Port Shaper Unit Controls the unit of measure for the port shaper rate as kbps or Mbps The default value is kbps Buttons Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values Cancel Click to undo any changes made locally and return...

Page 181: ... configure QoS Egress Port Shapers for all switch ports To set QoS Port Shapers in the web UI 1 Click Configuration QoS Port Shapers 2 Click a linked Port number 3 Enter the Port Scheduler Mode and Queue Shaper parameters 4 Click Apply to save the changes Figure 2 19 5 QoS Egress Port Shapers page Click the Port index to set the QoS Egress Port Shapers ...

Page 182: ...e queue shaper The default value is 500 This value is restricted to 100 1000000 when the Unit is kbps and it is restricted to 1 13200 when the Unit is Mbps Queue Shaper Unit Controls the unit of measure for the queue shaper rate as kbps or Mbps The default value is kbps Queue Shaper Excess Controls whether the queue is allowed to use excess bandwidth Queue Scheduler Weight Controls the weight for ...

Page 183: ...e default value is 500 This value is restricted to 100 1000000 when the Unit is kbps and it is restricted to 1 13200 when the Unit is Mbps Port Shaper Unit Controls the unit of measure for the port shaper rate as kbps or Mbps The default value is kbps Buttons Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values Cancel Click to undo any chan...

Page 184: ...nd configure QoS Egress Port Tag Remarking for all switch ports To display the QoS Port Tag Remarking in the web UI 1 Click Configuration QoS Port Tag Remarking 2 Click the linked Port number 3 At the dropdown select the Tag Remarking Mode for that port Figure 2 19 6 QoS Egress Port Tag Remarking page Click the Port index to set the QoS Port Tag Remarking ...

Page 185: ...rameter descriptions Tag Remarking Mode Controls the tag remarking mode for this port Classified Use classified PCP DEI values Default Use default PCP DEI values Mapped Use mapped versions of QoS class and DP level PCP DEI Configuration Controls the default PCP and DEI values used when mode is set to Default ...

Page 186: ...376 QoS class DP level to PCP DEI Mapping Controls the mapping of the classified QoS class DP level to PCP DEI values when the mode is set to Mapped Buttons Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values Cancel Click to cancel the changes ...

Page 187: ...e will revert to previously saved values Figure 2 19 7 QoS Port DSCP Configuration page Parameter descriptions Port The Port column shows the list of ports for which you can configure DSCP ingress and egress settings Ingress In Ingress settings you can change ingress translation and classification settings for individual ports There are two configuration parameters available in Ingress Translate T...

Page 188: ...write enable without remapped Remap DSCP from analyzer is remapped and frame is remarked with remapped DSCP value Buttons Apply Click to save changes Reset Click to undo any changes made locally and revert to previously saved values Auto refresh Check the checkbox to refresh the page information automatically every 3 seconds Refresh Click to manually refresh the QoS Port DSCP information immediate...

Page 189: ...e settings click the Reset button The page will revert to previously saved values Figure 2 19 8 DSCP Based QoS Ingress Classification page Parameter descriptions DSCP Maximum number of supported DSCP values are 64 Trust Click to check if the DSCP value is trusted Controls whether a specific DSCP value is trusted Only frames with trusted DSCP values are mapped to a specific QoS class and Drop Prece...

Page 190: ... Maximum number of supported DSCP values are 64 and valid DSCP values range from 0 to 63 Ingress Ingress side DSCP can be first translated to new DSCP before using the DSCP for QoS class and DPL map There are two configuration parameters for DSCP Translation Translate DSCP at Ingress side can be translated to any of 0 63 DSCP values Classify Click to enable Classification at the Ingress side Egres...

Page 191: ...DSCP Translation 2 Set the DSCP Parameters 3 Click the Apply button to save the setting 4 To cancel the settings click the Reset button The page will revert to previously saved values Figure 2 19 10 DSCP Classification page Parameter descriptions QoS Class Actual Quality of Service class DPL Actual Drop Precedence Level DSCP Select the classified DSCP value 0BE 63 Buttons Apply Click to save chang...

Page 192: ... the lowest plus sign to add a new QCE to the list To configure QoS Control List parameters in the web UI 1 Click Configuration QoS QoS Control List 2 Click the icon to add a new QoS Control List 3 Select the desired parameters and select the Port Member to join the QCE rules 4 Click Apply to save the settings 5 To cancel the settings click the Reset button The page will revert to previously saved...

Page 193: ...pe of frame to look for incoming frames Possible frame types are Any The QCE will match all frame type EtherType Only Ethernet frames with Ether Type 0x600 0xFFFF are allowed LLC Only LLC frames are allowed SNAP Only SNAP frames are allowed IPv4 The QCE will match only IPV4 frames IPv6 The QCE will match only IPV6 frames Action Parameters Indicates the classification action taken on ingress frame ...

Page 194: ...y Allow all types of frames 2 Ether Type Valid Ether Type can be 0x600 0xFFFF excluding 0x800 IPv4 and 0x86DD IPv6 or Any 3 LLC Logical Link Control SSAP Address Valid SSAP Source Service Access Point can vary from 0x00 to 0xFF or Any DSAP Address Valid DSAP Destination Service Access Point can vary from 0x00 to 0xFF or Any Control Valid Control field can vary from 0x00 to 0xFF or Any 4 SNAP Subne...

Page 195: ...ontrol Entry in the table using these buttons Inserts a new QCE before the current row Edits the QCE Moves the QCE up the list Moves the QCE down the list Deletes the QCE The lowest plus sign adds a new entry at the bottom of the QCE listings Buttons Apply Click to save the configuration and move to main QCL page Reset Click to undo any changes made locally and revert to previously saved values Ca...

Page 196: ...or Specific or Range enter additional parameters IPv6 Parameters Protocol Select Any TCP UDP or Other as the IPv4 protocol to use SIP 32 LSB Select Any or Specific DSCP Select Any Specific or Range or Specific or Range enter additional parameters Example The example below shows a QoS Control List QCL made up of the four QCEs four rows each of which describes a defined QCE ...

Page 197: ...guration QoS Storm Control 2 Select the Frame Type to enable storm control 3 Scroll to set the Rate Parameters 4 Click Apply to save the settings 5 To cancel the setting click the Reset button The page will revert to previously saved values Figure 2 19 12 Storm Control Configuration page Parameter descriptions Frame Type The settings in a particular row apply to the frame type listed here Unicast ...

Page 198: ...the settings click the Reset button to revert to previously saved values Figure 2 20 Mirror Configuration page Parameter descriptions before FW vB6 54 3476 Port to mirror to Port to mirror also known as the mirror port Frames from ports that have either source Rx or destination Tx mirroring enabled are mirrored on this port Disabled disables mirroring Mirror Port Configuration The following table ...

Page 199: ...ter descriptions FW vB6 54 3476 and after Configure port Mirroring on this page To debug network problems selected traffic can be copied or mirrored on a mirror port where a frame analyzer can be attached to analyze the frame flow The traffic to be copied on the mirror port is selected as follows All frames received on a given port also known as ingress or source mirroring All frames transmitted o...

Page 200: ...s the UPnP operation mode Possible modes are Enabled Enable UPnP mode operation Disabled Disable UPnP mode operation When the mode is enabled two ACEs are added automatically to trap UPNP related packets to CPU The ACEs are automatically removed when the mode is disabled TTL The TTL value is used by UPnP to send SSDP advertisement messages Valid values are 1 255 Advertising Duration The duration c...

Page 201: ...t and a GARP Information Declaration GID component associated with each port or the switch The propagation of information between GARP participants for the same application in a bridge is carried out by the GARP Information Propagation GIP component Protocol exchanges take place between GARP participants by means of LLC Type 1 services using the group MAC address and PDU format defined for the GAR...

Page 202: ...seconds i e in units of one hundredth of a second The default is 60 cs Leave All time is a value in the range 1000 5000 in units of centi seconds i e in units of one hundredth of a second The default is 1000 cs Max VLANs When GVRP is enabled a maximum number of VLANs supported by GVRP is specified By default this number is 20 VLANs This number can only be changed when GVRP is disabled globally But...

Page 203: ... Port Config 2 Specify the Mode for one or more Ports 3 Click the Apply button Figure 2 22 2 GVRP Port Configuration page Parameter descriptions Mode This parameter lets you enable or disable GVRP Mode on a particular port locally Disabled Select to Disable GVRP mode on this port default GVRP enabled Select to Enable GVRP mode on this port Buttons Apply Click to save changes Reset Click to undo an...

Page 204: ... of packets on switch ports and time based sampling of port counters The sampled packets and counters referred to as flow samples and counter samples respectively are sent as sFlow UDP datagrams to a central network traffic monitoring server This central server is called an sFlow receiver or sFlow collector Additional information can be found at http sflow org Web Interface To configure the sFlow ...

Page 205: ...ram Size The maximum number of data bytes that can be sent in a single sample datagram This should be set to a value that avoids fragmentation of the sFlow datagrams Valid range is 200 to 1468 bytes with default being 1400 bytes Port Configuration Port The port number for which the configuration below applies Flow Sampler Enabled Enables disables flow sampling on this port Flow Sampler Sampling Ra...

Page 206: ...TBT2DPA and SM24TBT2DPB Web User Guide 33738 Rev H https www lantronix com Page 206 of 376 Messages Sampling Rate must be an integer value between 1 and 4294967295 Interval must be an integer value between 1 and 3600 ...

Page 207: ...ove configure Rapid Ring global parameters Parameter descriptions Global Configuration section Index Displays the instance number for this line of the table Role At the dropdown assign a Rapid Ring role either Master Member or Disabled Port Displays the Port numbers 25 and 26 Status e g Forwarding Discarding etc Ring To Ring Configuration section only before FW v6 54 3236 Role At the dropdown assi...

Page 208: ...parameters in each blank field 3 Click the Apply button to save the setting 4 To cancel the settings click the Reset button to revert to previously saved values Figure 2 25 SMTP Configuration page Parameter descriptions Mail Server Specify the IP Address of the server transferring your email Username Specify the username on the mail server Password Specify the password on the mail server Sender To...

Page 209: ...o view System Information in the web UI 1 Click Monitor System Information 2 Check the name and location of the switch the system date firmware version serial number etc 3 Click the Refresh button Figure 3 1 1 System Information page SM24TBT2DPA Parameter descriptions Model Name Displays the factory defined model name for identification purposes e g SM24TBT2DPB System Description Displays the syst...

Page 210: ...rent switch firmware version and build date e g VB6 64 0043 2021 03 09 PoE Firmware Version The version of PoE MCU firmware e g 208 352 Hardware Version The hardware version of this switch e g v1 02 Mechanical Version The mechanical versions of this switch e g v1 01 Serial Number The serial number of this switch e g A065116AR2600011 or A137119BR3900050 MAC Address The MAC Address of this switch as...

Page 211: ...tocol layer The status is displayed for IP Interfaces IP Routes Neighbor cache ARP cache and DNS Server To display IP Status in the web UI 1 Click Monitor System IP Status 2 View the IP address information Figure 3 1 3 IP Status page IP Interfaces Interface Shows the name of the interface e g VLAN1 Type Shows the address type of the entry This may be LINK or IPv4 ...

Page 212: ...this route Gateway Shows the gateway address of this route Status Shows the status flags of the route e g UP GATEWAY HW_RT UP UP HOST UP HW_RT Neighbour cache IP Address Shows the IP address of the entry Link Address Shows the Link MAC address for which a binding to the IP address given exist DNS Server Type The DNS server type e g Static IP Address The DNS server IP address e g 0 0 0 0 Interface ...

Page 213: ...l of the system log Error Error level of the system log Warning Warning level of the system log Info Information level of the system log Debug Debug level of the system log All All levels logged and displayed Clear Level The clear level of the system log entry The level types supported are listed above ID The instance number of the system log entry Click a linked ID number to display its details T...

Page 214: ...ort 1 3 Warning 2019 06 17T02 56 31 00 00 Link up on port 26 4 Warning 2019 06 17T02 56 31 00 00 Switch just made a cold boot 5 Info 2019 06 17T02 56 31 00 00 topologyChange 6 Info 2019 06 17T02 56 31 00 00 topologyChange 7 Info 2019 06 17T02 56 31 00 00 topologyChange 8 Warning 2019 06 17T02 56 31 00 00 Link up on port 2 9 Info 2019 06 17T02 56 31 00 00 Password of user admin was change 10 Warnin...

Page 215: ...ry ID Updates the system log entries to the first available entry ID Updates the system log entry to the previously available entry ID Updates the system log entry to the next available entry ID Updates the system log entry to the last available entry ID Messages Info messages e g topologyChange Login passed for user admin etc Warning messages Switch just made a warm boot Link up on port 1 SFP mod...

Page 216: ...lies Total PoE Available Displays the Total PoE budget available e g 811 1 W with one power supply or 1636 7 W with two power supplies See the Operating Mode parameter at Configuration Power Information Shows how much calculated power is still available in the system until it will reach the power limit Available Power Power Limit Calculated power consumption in Watts Firmware Version Displays the ...

Page 217: ...BT2DPB Web User Guide 33738 Rev H https www lantronix com Page 217 of 376 Note that the System Overview Help provides a link to Third party licenses at the bottom of the page A sample Third Party Software Licenses page is shown below ...

Page 218: ...eter descriptions Port The logical local port number for this row Link Shows if the link is up for the port green link up red link down EEE Shows if EEE is enabled for the port reflects the settings at the Port Power Savings configuration page LP EEE Cap Shows if the link partner is EEE capable otherwise shows EEE Savings Shows if the system is currently saving power due to EEE When EEE is enabled...

Page 219: ...e port statistics or clear all information when you click Clear Figure 3 3 1 Port Statistics Overview page Parameter descriptions Port The logical port for the settings contained in the same row Packets The number of received and transmitted packets per port Bytes The number of received and transmitted bytes per port Errors The number of frames received in error and the number of incomplete transm...

Page 220: ...h 3 Click Refresh to refresh the Queuing Counters or clear all information when you click Clear Figure 3 3 2 Queuing Counters page Parameter descriptions Port The logical port for the settings contained in the same row Qn the Queue number There are eight QoS queues per port Q0 is the lowest priority queue Rx Tx The number of received and transmitted packets per queue Buttons Auto refresh Check thi...

Page 221: ... types are Any The QCE will match all frame type Ethernet Only Ethernet frames with Ether Type 0x600 0xFFFF are allowed LLC Only LLC frames are allowed SNAP Only SNAP frames are allowed IPv4 The QCE will match only IPV4 frames IPv6 The QCE will match only IPV6 frames Action Indicates the classification action taken on ingress frame if parameters configured are matched with the frame s content Ther...

Page 222: ...76 Buttons Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to refresh the page immediately Resolve Conflict Click to release the resources required to add QCL entry in case conflict status for any QCL entry is yes Select the QCL status from this drop down list ...

Page 223: ... checkbox 4 Click Refresh to refresh the port detailed statistics or clear all information when you click Clear Figure 3 3 4 Detailed Port Statistics page Parameter descriptions Receive Total and Transmit Total Rx and Tx Packets The number of received and transmitted good and bad packets Rx and Tx Octets The number of received and transmitted good and bad bytes Includes FCS but excludes framing bi...

Page 224: ...d CRC Rx Fragments The number of short 1 frames received with invalid CRC Rx Jabber The number of long 2 frames received with invalid CRC Rx Filtered The number of received frames filtered by the forwarding process Short frames are frames that are smaller than 64 bytes Long frames are frames that are longer than the configured maximum frame length for this port Transmit Error Counters Tx Drops The...

Page 225: ...entral Wavelength Displays the fiber optical transmitting central wavelength e g 850nm 1310nm 1550nm etc Bit Rate Displays the nominal bit rate of the transceiver e g 1000 Mbps or 10 Gbps Vendor OUI Displays the OUI code which is assigned by IEEE e g 00 c0 f2 Vendor Name Displays the company name of the SFP module manufacturer Vendor P N Displays the vendor part number Vendor Revision Displays the...

Page 226: ...t be better than 3dB over specified operating temperature and voltage Data is assumed to be based on measurement of a laser monitor photodiode current Data is not valid when the transmitter is disabled Mon3 RX PWR Shows the receiver power of the SFP module e g none Displays the measured received optical power in mW Absolute accuracy is dependent upon the exact optical wavelength For the vendor spe...

Page 227: ...nd received by a DHCP server To display the DHCP Server Statistics in the Web UI 1 Click Monitor DHCP Server Statistics 2 View the DHCP Server Statistics Figure 3 4 1 1 DHCP Server Statistics page Parameter descriptions Database Counters Pool Number of pools Excluded IP Address Number of excluded IP address ranges Declined IP Address Number of declined IP addresses Binding Counters Automatic Bindi...

Page 228: ...CP REQUEST messages received DECLINE Number of DHCP DECLINE messages received RELEASE Number of DHCP RELEASE messages received INFORM Number of DHCP INFORM messages received DHCP Message Sent Counters OFFER Number of DHCP OFFER messages sent ACK Number of DHCP ACK messages sent NAK Number of DHCP NAK messages sent Buttons Auto refresh Check this box to refresh the page automatically every 3 second...

Page 229: ...dress allocated to DHCP client Click a linked IP Address to display its DHCP Server Binding IP Data page See example below Type Type of binding Possible types are Automatic Manual and Expired State State of binding Possible states are Committed Allocated and Expired Pool Name The pool that generates the binding Server ID Server IP address to service the binding Buttons Clear Selected Click to clea...

Page 230: ...rver IP address to service the binding VLAN ID Displays the VLAN ID of the interface where the DHCP client is from Subnet Mask Displays the Netmask of the interface where the DHCP client is from Client ID Type Displays the Type of client identifier in option 61 from DHCP client Possible types are FQDN MAC and If is displayed it means DHCP client does not pack option 61 in the DHCP message Client I...

Page 231: ...ddresses To display DHCP Server Declined IP in the web UI click Monitor DHCP Server and Declined IP Figure 3 4 1 3 DHCP Server Declined IP page Parameter descriptions Declined IP The IP address allocated to the DHCP client Buttons Auto refresh Check this box to refresh the page automatically every three seconds Refresh Click to refresh the page immediately ...

Page 232: ... 4 2 Dynamic DHCP Snooping Table page Parameter descriptions MAC Address The user MAC address of the entry VLAN ID The VLAN ID in which the DHCP traffic is permitted Source Port Switch Port Number for which the entries are displayed IP Address The User IP address of the entry IP Subnet Mask The User IP subnet mask of the entry DHCP Server The DHCP Server address of the entry Buttons Auto refresh C...

Page 233: ... Circuit ID option missing Receive Missing Remote ID The number of packets received with the Remote ID option missing Receive Bad Circuit ID The number of packets whose Circuit ID option did not match known circuit ID Receive Bad Remote ID The number of packets whose Remote ID option did not match known Remote ID Client Statistics Transmit to Client The number of relayed packets from server to cli...

Page 234: ...B Web User Guide 33738 Rev H https www lantronix com Page 234 of 376 Buttons Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to manually refresh the page immediately Clear Clears all statistics ...

Page 235: ...ved and transmitted Rx and Tx Offer The number of offer option 53 with value 2 packets received and transmitted Rx and Tx Request The number of request option 53 with value 3 packets received and transmitted Rx and Tx Decline The number of decline option 53 with value 4 packets received and transmitted Rx and Tx ACK The number of ACK option 53 with value 5 packets received and transmitted Rx and T...

Page 236: ...Rx Discarded checksum error The number of discard packet that IP UDP checksum is error Rx Discarded from Untrusted The number of discarded packets that are coming from untrusted port Buttons Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to refresh the page immediately Clear Clears the counters for the selected port The DHCP user select box determines w...

Page 237: ... when you click Clear Figure 3 5 1 Access Management Statistics page Parameter descriptions Interface The interface type through which the remote host can access the switch Received Packets Number of received packets from the interface when access management mode is enabled Allowed Packets Number of allowed packets from the interface when access management mode is enabled Discarded Packets Number ...

Page 238: ...te all enabled user modules must unanimously agree on allowing the MAC address to forward If only one chooses to block it it will be blocked until that user module decides otherwise The status page is divided into two sections one with a legend of user modules and one with the actual port status Web Interface To configure a Port Security Switch Status Configuration in the web UI 1 Click Monitor Se...

Page 239: ...ule and is awaiting frames from unknown MAC addresses to arrive Limit Reached The Port Security service is enabled by at least the Limit Control user module and that module has indicated that the limit is reached and no more MAC addresses should be taken in Shutdown The Port Security service is enabled by at least the Limit Control user module and that module has indicated that the limit is exceed...

Page 240: ...1 2 Port Security Port Status page Parameter descriptions MAC Address VLAN ID The MAC address and VLAN ID seen on this port If no MAC addresses are learned a single row stating No MAC addresses attached displays State Indicates whether the corresponding MAC address is Blocked or Forwarding In the blocked state it will not be allowed to transmit or receive traffic Time of Addition Shows the date an...

Page 241: ...AS statistics for this port Admin State The port s current administrative state See section 2 5 1 Switch on page 44 for a description of possible values Port State The current state of the port Refer to NAS Port State for a description of the individual states Last Source The source MAC address carried in the most recently received EAPOL frame for EAPOL based authentication and the most recently r...

Page 242: ...n by NAS If the VLAN ID is assigned by the RADIUS server RADIUS assigned is appended to the VLAN ID See the online Help for more about RADIUS assigned VLANs If the port is moved to the Guest VLAN Guest is appended to the VLAN ID See the online Help for more about Guest VLANs Buttons Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to manually refresh the ...

Page 243: ... NAS Statistics page Parameter descriptions Port State Admin State The port s current administrative state Refer to NAS Admin State for a description of possible values Port State The current state of the port See section 2 5 1 Switch on page 44 for a description of possible values QoS Class The QoS class assigned by the RADIUS server The field is blank if no QoS class is assigned Port VLAN ID The...

Page 244: ...x Start dot1xAuthEapolStartFramesRx The number of EAPOL Start frames that have been received by the switch Rx Logoff dot1xAuthEapolLogoffFramesRx The number of valid EAPOL Logoff frames that have been received by the switch Rx Invalid Type dot1xAuthInvalidEapolFramesRx The number of EAPOL frames that have been received by the switch in which the frame type is not recognized Rx Invalid Length dot1x...

Page 245: ...pplicant 802 1X based Counts the number of times that the switch sends an EAP Request packet following the first to the supplicant Indicates that the backend server chose an EAP method MAC based Not applicable Rx Auth Successes dot1xAuthBackendAuthSucce sses 802 1X and MAC based Counts the number of times that the switch receives a success indication Indicates that the supplicant client has succes...

Page 246: ...le and will be empty if no MAC address is currently selected To populate the table select one of the attached MAC Addresses from the table Attached MAC Addresses Identity Shows the identity of the supplicant as received in the Response Identity EAPOL frame Clicking the link causes the supplicant s EAPOL and Backend Server counters to be shown in the Selected Counters table If no supplicants are at...

Page 247: ...ollowing modes Force Authorized Force Unauthorized Port based 802 1X Single 802 1X Clear All Click to clear the counters for the selected port This button is available in these modes Multi 802 1X MAC based Auth X Clear This Click to clear both the port counters and all of the attached client s counters The Last Client will not be cleared however This button is available in these modes Multi 802 1X...

Page 248: ...he ingress port of the ACE Possible values are All The ACE will match any ingress port Port The ACE will match a specific ingress port Frame Type Indicates the frame type of the ACE Possible values are Any The ACE will match any frame type EType The ACE will match Ethernet Type frames Note that an Ethernet Type based ACE will not get matched by IP and ARP frames ARP The ACE will match ARP RARP fra...

Page 249: ...er When Disabled displays the port copy operation is disabled CPU Forward packet that matched the specific ACE to CPU CPU Once Forward first packet that matched the specific ACE to CPU Counter The counter indicates the number of times the ACE was hit by a frame Conflict Indicates the hardware status of the specific ACE It is a conflict if a specific ACE is not applied to the hardware due to hardwa...

Page 250: ...click assume the value of the first displayed entry allowing for continuous refresh with the same start address Clicking the Next entry button will use the last entry of the currently displayed table as a basis for the next lookup When the end is reached the text No more entries is shown in the displayed table Use the Refresh button to start over To view the Dynamic ARP Inspection Table in the web...

Page 251: ...the page automatically or click Refresh to refresh the port immediately 3 Specify the Start from port VLAN ID IP Address and entries per page Figure 3 5 2 5 Dynamic IP Source Guard Table page Parameter descriptions Port Switch Port Number for which the entries are displayed VLAN ID VLAN ID in which the IP traffic is permitted IP Address User IP address of the entry MAC Address Source MAC address B...

Page 252: ...d statistics for this server IP Address The IP address and UDP port number in IP Address UDP Port notation of this server Status The current state of the server This field takes one of these values Disabled The server is disabled Not Ready The server is enabled but IP communication is not yet up and running Ready The server is enabled IP communication is up and running and the RADIUS module is rea...

Page 253: ...splay RADIUS Authentication Statistics in the web UI 1 Click Monitor Security AAA RADIUS Overview 2 At the dropdown select the Server to view 3 Check Auto refresh or click Refresh to refresh the statistics or click Clear to clear all statistics Figure 3 5 3 2 RADIUS Authentication Status page Parameter descriptions RADIUS Authentication Statistics The status map closely to those specified in RFC46...

Page 254: ...butes received from the server Rx Unknown Types radiusAuthClientExt UnknownTypes The number of RADIUS packets that were received with unknown types from the server on the authentication port and dropped Rx Packets Dropped radiusAuthClientExtPacketsDr opped The number of RADIUS packets that were received from the server on the authentication port and dropped for some other reason Tx Access Requests...

Page 255: ...g and the RADIUS module is ready to accept access attempts Dead X seconds left Access attempts were made to this server but it did not reply within the configured timeout The server has temporarily been disabled but will get re enabled when the dead time expires The number of seconds left before this occurs is displayed in parentheses This state is only reachable when more than one server is enabl...

Page 256: ...wn Types radiusAccClientExtUnknown Types The number of RADIUS packets of unknown types that were received from the server on the accounting port Rx Packets Dropped radiusAccClientExtPackets Dropped The number of RADIUS packets that were received from the server on the accounting port and dropped for some other reason Tx Requests radiusAccClientExtRequests The number of RADIUS packets sent to the s...

Page 257: ...his server but it did not reply within the configured timeout The server has temporarily been disabled but will get re enabled when the dead time expires The number of seconds left before this occurs is displayed in parentheses This state is only reachable when more than one server is enabled Round Trip Time radiusAccClientExtRoundTripTime The time interval measured in milliseconds between the mos...

Page 258: ...to refresh or click Refresh to refresh the page Figure 3 5 4 1 1 RMON Statistics Status Overview page Parameter descriptions ID Indicates the index of Statistics entry Data Source if Index The port ID which wants to be monitored Drop The total number of events in which packets were dropped by the probe due to lack of resources Octets The total number of octets of data including those in bad packet...

Page 259: ... 128 255 octets long 256 511 The total number of packets including bad packets received that were 256 511 octets long 512 1023 The total number of packets including bad packets received that were 512 1023 octets long 1024 1588 The total number of packets including bad packets received that were 1024 1588 octets long Buttons Auto refresh Check this box to refresh the page automatically every 3 seco...

Page 260: ...ndex Indicates the index of History control entry Sample Index Indicates the index of the data entry associated with the control entry Sample Start The value of sysUpTime at the start of the interval over which this sample was measured Drop The total number of events in which packets were dropped by the probe due to lack of resources Octets The total number of octets of data including those in bad...

Page 261: ...er network utilization on this interface during this sampling interval in hundredths of a percent Buttons Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to refresh the page immediately Updates the table starting from the first entry in the History table i e the entry with the lowest History Index and Sample Index Updates the table starting with the entr...

Page 262: ...up When the end is reached the text No more entries is shown in the displayed table Use the button to start over Web Interface To monitor an RMON Alarm Overview in the web interface 1 Click Monitor Security Switch RMON Alarm 2 Check Auto refresh 3 Click Refresh to refresh the port detailed statistics Figure 3 5 4 1 3 RMON Alarm Overview page Parameter descriptions ID Indicates the index of Alarm c...

Page 263: ...ons Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to refresh the page immediately Updates the table starting from the first entry in the Alarm Table i e the entry with the lowest ID Updates the table starting with the entry after the last entry currently displayed ...

Page 264: ...yed entry as a basis for the next lookup When the end is reached the text No more entries is shown in the displayed table Use the button to start over Web Interface To monitor RMON Events in the web UI 1 Click Monitor Security Switch RMON Event 2 Specify Start from Control Index Sample Index and entries per page 3 Check Auto refresh or click Refresh to refresh the port detailed statistics Figure 3...

Page 265: ...ions Aggr ID The Aggregation ID associated with this aggregation instance Name Name of the Aggregation group ID e g LLAG1 Type Type of the Aggregation group Static or LACP Speed Speed of the Aggregation group e g 100M 1G undefined Configured Ports Configured member ports of the Aggregation group e g GigabitEthernet 1 4 5 Aggregated Ports Aggregated member ports of the Aggregation group e g Gigabit...

Page 266: ...atus Figure 3 6 2 LACP System Status page Parameter descriptions Aggr ID The Aggregation ID associated with this aggregation instance Name Name of the Aggregation group ID Partner System ID The system ID MAC address of the aggregation partner Partner Key The Key that the partner has assigned to this aggregation ID Partner Prio The priority of this partner Last Changed The time since this aggregati...

Page 267: ...enabled and the port link is up No means that LACP is not enabled or that the port link is down Backup means that the port could not join the aggregation group but will join if other port leaves meanwhile its LACP status is disabled Key The key assigned to this port Only ports with the same key can aggregate together Aggr ID The Aggregation ID assigned to this aggregation group Partner System ID T...

Page 268: ...ck Refresh to refresh the LACP ports status Figure 3 6 3 LACP Statistics page Parameter descriptions Port The switch port number LACP Received Shows how many LACP frames have been received at each port LACP Transmitted Shows how many LACP frames have been sent from each port Discarded Shows how many unknown and illegal LACP frames have been discarded at each port Buttons Auto refresh Check this bo...

Page 269: ...ection Status page Parameter descriptions Port The switch port number of the logical port Action The currently configured port action Log Only Shutdown or Shutdown Log Transmit The currently configured port transmit mode Enabled or Disabled Loops The number of loops detected on this port Status The current loop protection status of the port Up or Down Loop Whether a loop is currently detected on t...

Page 270: ... 8 1 STP Bridges status page Parameter descriptions MSTI The Bridge Instance This is also a link to the STP Detailed Bridge Status see below Bridge ID The Bridge ID of this Bridge instance Root ID The Bridge ID of the currently elected root bridge Root Port The switch port currently assigned the root port role Root Cost Root Path Cost For the Root Bridge it is zero For all other bridges it is the ...

Page 271: ...oot Bridge this is zero For all other Bridges it is the sum of the Port Path Costs on the least cost path to the Root Bridge Regional Root The Bridge ID of the currently elected regional root bridge inside the MSTP region of this bridge For the CIST instance only Internal Root Cost The Regional Root Path Cost For the Regional Root Bridge this is zero For all other CIST instances in the same MSTP r...

Page 272: ...s will either be a value computed from the Auto setting or any explicitly configured value Edge The current STP port operational Edge Flag An Edge Port is a switch port to which no Bridges are attached The flag may be automatically computed or explicitly configured Each Edge Port transits directly to the Forwarding Port State since there is no possibility of it participating in a loop Point to Poi...

Page 273: ...tatus page Parameter descriptions Port The switch port number of the logical STP port CIST Role The current STP port role of the CIST port The port role can be one of these values AlternatePort BackupPort RootPort DesignatedPort Non STP or Disabled CIST State The current STP port state of the CIST port The port state can be Blocking Learning or Forwarding Uptime The time since the bridge port was ...

Page 274: ... port MSTP The number of MSTP Configuration BPDU s received transmitted on the port RSTP The number of RSTP Configuration BPDU s received transmitted on the port STP The number of legacy STP Configuration BPDU s received transmitted on the port TCN The number of legacy Topology Change Notification BPDU s received transmitted on the port Discarded Unknown The number of unknown Spanning Tree BPDU s ...

Page 275: ...fier IGMP MLD Queries Received The number of Received Queries for IGMP and MLD respectively IGMP MLD Queries Transmitted The number of Transmitted Queries for IGMP and MLD respectively IGMPv1 Joins Received The number of Received IGMPv1 Joins IGMPv2 MLDv1 Reports Received The number of Received IGMPv2 Joins and MLDv1 Reports respectively IGMPv3 MLDv2 Reports Received The number of Received IGMPv1 ...

Page 276: ...fields will upon a Refresh button click assume the value of the first displayed entry allowing for continuous refresh with the same start address Clicking the Next entry button will use the last entry of the currently displayed table as a basis for the next lookup When the end is reached the text No more entries displays in the displayed table Use the button to start over To display MVR Groups Inf...

Page 277: ...rt address Clicking the Next entry button will use the last entry of the currently displayed table as a basis for the next lookup When the end is reached the text No more entries is shown in the displayed table Use the button to start over Web Interface To display MVR SFM Information in the web UI 1 Click Monitor MVR MVR SFM Information 2 To auto refresh the information check the Auto refresh chec...

Page 278: ...ronix com Page 278 of 376 Buttons Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to refresh the page immediately Updates the system log entries to the first available entry ID Updates the system log entry to the next available entry ID ...

Page 279: ...1 IGMP Snooping Status page Parameter descriptions VLAN ID The VLAN ID of the entry Querier Version Working Querier Version currently Host Version Working Host Version currently Querier Status Shows the Querier status as ACTIVE or IDLE Displays DISABLE if the specific interface is administratively disabled Queries Transmitted The number of Transmitted Queries Queries Received The number of Receive...

Page 280: ...Static denotes the specific port is configured to be a router port Dynamic denotes the specific port is learnt to be a router port Both denote the specific port is configured or learnt to be a router port Port Switch port number Status Indicate whether specific port is a router port or not Buttons Auto refresh Check this box to refresh the page automatically every 3 seconds Clear Clears the counte...

Page 281: ...on will update the displayed table starting from that or the closest next IGMP Group Table match In addition the two input fields will upon a Refresh button click assume the value of the first displayed entry allowing for continuous refresh with the same start address Clicking the Next entry button will use the last entry of the currently displayed table as a basis for the next lookup When the end...

Page 282: ...esh button click assume the value of the first displayed entry allowing for continuous refresh with the same start address To display IPv4 SSM Information in the web UI 1 Click Monitor IGMP Snooping IPv4 SSM Information 2 Check the Auto refresh checkbox or click Refresh to refresh the page 4 Click or to move to previous or next entry Figure 3 10 1 3 IGMP SFM Information page Parameter descriptions...

Page 283: ...tus is ACTIVE or IDLE DISABLE denotes the specific interface is administratively disabled Queries Transmitted The number of Transmitted Queries Queries Received The number of Received Queries V1 Reports Received The number of Received V1 Reports V2 Reports Received The number of Received V2 Reports V1 Leaves Received The number of Received V1 Leaves Router Port Display which ports act as router po...

Page 284: ...TBT2DPB Web User Guide 33738 Rev H https www lantronix com Page 284 of 376 Buttons Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to refresh the page immediately Clear Clears the counters ...

Page 285: ...n a Refresh button click assume the value of the first displayed entry allowing for continuous refresh with the same start address Clicking the Next entry button will use the last entry of the currently displayed table as a basis for the next lookup When the end is reached the text No more entries is shown in the displayed table Use the button to start over Web Interface To display MLD Snooping Gr...

Page 286: ...alue of the first displayed entry allowing for continuous refresh with the same start address Clicking the Next entry button will use the last entry of the currently displayed table as a basis for the next lookup When the end is reached the text No more entries is shown in the displayed table Use the button to start over Web Interface To display MLDv2 IPv6 SSM Information in the web UI 1 Click Mon...

Page 287: ...ronix com Page 287 of 376 Buttons Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to refresh the page immediately Updates the system log entries to the first available entry ID Updates the system log entry to the next available entry ID ...

Page 288: ...eighbor device Port Description The port description advertised by the neighbor unit e g Port 4 or eth0 System Name The name advertised by the neighbor unit e g SM24TBT2DPA or a camera model System Capabilities Displays the neighbor unit s capabilities e g Other Repeater Bridge WLAN Access Point Router Telephone DOCSIS cable device Station only and Reserved When a capability is enabled the capabil...

Page 289: ...Lantronix SM24TBT2DPA and SM24TBT2DPB Web User Guide 33738 Rev H https www lantronix com Page 289 of 376 Sample Screens ...

Page 290: ...E 802 based LAN infrastructure for LLDP MED Endpoint Devices An LLDP MED Network Connectivity Device is a LAN access device based on any of these technologies LAN Switch Router IEEE 802 1 Bridge IEEE 802 3 Repeater included for historical reasons IEEE 802 11 Wireless Access Point Any device that supports the IEEE 802 1AB and MED extensions defined by TIA 1057 and can relay IEEE 802 frames via any ...

Page 291: ...user communication appliances such as IP Phones PC based softphones or other communication appliances that directly support the end user Discovery services defined in this class include provision of location identifier including ECS E911 information embedded L2 switch support inventory management LLDP MED Capabilities LLDP MED Capabilities describes the neighborhood unit s LLDP MED capabilities Th...

Page 292: ... level is significant and the default PVID of the ingress port is used instead Priority The Layer 2 priority to be used for the specified application type One of the eight priority levels 0 through 7 DSCP The DSCP value to be used to provide Diffserv node behavior for the specified application type as defined in IETF RFC 2474 Contain one of 64 code point values 0 63 Auto negotiation identifies if ...

Page 293: ... whether the PSE device is using its Primary Power Source or its Backup Power Source it is indicated as Unknown If the device is a PD device it can either run on its local power supply or it can use the PSE as power source It can also use both its local power supply and the PSE If it is unknown what power supply the PD device is using it is indicated as Unknown Power Priority Power Priority repres...

Page 294: ...may inform the transmitter of an alternate desired Tw_sys_tx Since a receiving link partner is likely to have discrete levels for savings this provides the transmitter with additional information that it may use for a more efficient allocation Systems that do not implement this option default the value to be the same as that of the Receive Tw_sys_tx Echo Tx Tw The link partner s Echo Tx Tw value T...

Page 295: ...eb screen 3 Click Clear to clear all counters Figure 3 11 5 LLDP Counters page Parameter descriptions LLDP Global Counters Neighbor entries were last changed Shows the time when the last entry was last deleted or added It also shows the time elapsed since the last change was detected Total Neighbors Entries Added Shows the number of new entries added since switch reboot Total Neighbors Entries Del...

Page 296: ...ot already contained within the table Entries are removed from the table when a given port s link is down an LLDP shutdown frame is received or when the entry ages out TLVs Discarded Each LLDP frame can contain multiple pieces of information known as TLVs Type Length Values If a TLV is malformed it is counted and discarded TLVs Unrecognized The number of well formed TLVs but with an unknown type v...

Page 297: ... power 30 0 W Class 8 Max power 90 0 W Power Requested The requested amount of power the PD wants to be reserved Power Allocated The amount of power the switch has allocated for the PD Power Used Shows how much power the PD currently is using Current Used Shows how much current the PD currently is using Priority Shows the port s priority configured Low High or Critical Port Status Shows the port s...

Page 298: ...witch has not yet detected the current PoE status for this port Total At the bottom of the table a row displays with the sum of the Power Requested Power Allocated Power Used and Current Used Buttons Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to refresh the page immediately Port Status Detecting PoE chipset click Refresh to update page ...

Page 299: ... match In addition the two input fields will upon a Refresh button click assume the value of the first displayed entry allowing for continuous refresh with the same start address The button will use the last entry of the currently displayed VLAN MAC address pairs as a basis for the next lookup When the end is reached the text No more entries is shown in the displayed table Use the button to start ...

Page 300: ...le starting with the entry after the last entry currently displayed NOTE 00 40 C7 73 01 29 your switch MAC address for IPv4 33 33 00 00 00 01 Destination MAC for IPv6 Router Advertisement reference IPv6 RA JPG 33 33 00 00 00 02 Destination MAC for IPv6 Router Solicitation reference IPv6 RS JPG 33 33 FF 73 01 29 Destination MAC for IPv6 Neighbor Solicitation reference IPv6 DAD JPG 33 33 FF A8 01 01...

Page 301: ...ers dropdown choose which VLAN users to display 3 Click Refresh to update the state Figure 3 14 1 VLAN Membership Status for Combined users Parameter descriptions VLAN user Various internal software modules may use VLAN services to configure VLAN memberships on the fly The drop down list on the right allows for selecting between showing VLAN memberships as configured by an administrator Admin or a...

Page 302: ...flict port will be displayed as VLAN Membership The VLAN Membership Status Page shows the current VLAN port members for all VLANs configured by a selected VLAN User selection will be allowed by a Combo Box When ALL VLAN Users are selected it will show this information for all the VLAN Users and this is by default VLAN membership allows the frames classified to the VLAN ID to be forwarded on the re...

Page 303: ...rator Admin or as configured by one of these internal software modules These VLAN User types are currently supported Combined The Combined entry will show a combination of the administrator and internal software modules configuration and basically reflects what is actually configured in hardware Admin only Admin users will be displayed NAS NAS provides port based authentication which involves comm...

Page 304: ... not overridden by the selected user Untagged VLAN ID If Tx Tag is overridden by the selected user and is set to Tag or Untag UVID then this field will show the VLAN ID the user wants to tag or untag on egress The field is empty if not overridden by the selected user Conflicts Two users may have conflicting requirements to a port s configuration For instance one user may require all frames to be t...

Page 305: ... Web Interface To display MAC based VLAN configuration via the web interface 1 Click Monitor VCL MAC based VLAN 2 At the dropdown specify the VLAN user type Static NAS DMS or Combined 3 View the MAC based information A message displays if No data exists for the user Figure 3 15 1 MAC based VLAN Membership Status for User Static Parameter descriptions MAC Address Indicates the MAC address VLAN ID I...

Page 306: ...e Type selection menu Below are the criteria for three different Frame Types Ethernet Values in the text field when Ethernet is selected as a Frame Type is called etype Valid values for etype ranges from 0x0600 0xffff LLC Valid value in this case is comprised of two different sub values DSAP 1 byte long string 0x00 0xff SSAP 1 byte long string 0x00 0xff SNAP Valid value in this case also is compri...

Page 307: ... Name is a unique 16 character long string for every entry which consists of a combination of alphabet characters a z or A Z and integers 0 9 NOTE special characters and underscore _ are not allowed Buttons Auto refresh Check this box to refresh the page automatically every 3 seconds Refresh Click to refresh the page immediately ...

Page 308: ...haracters a z or A Z and integers 0 9 no special characters are allowed Whichever Group name you try a map to a VLAN must be present in the Protocol to Group mapping table and must not be pre used by any other existing mapping entry on this page VLAN ID Indicates the ID to which Group Name will be mapped A valid VLAN ID ranges from 1 4095 Port Members A row of check boxes for each port is displaye...

Page 309: ...rom 0 128 If a VCE ID is 0 the switch will auto generate the VCE ID for that entry Deletion and lookup of IP subnet based VLAN are based on VCE ID IP Address Indicates the IP address Mask Length Indicates the network mask length VLAN ID Indicates the VLAN ID VLAN ID can be changed for the existing entries Port Members A row of check boxes for each port is displayed for each IP subnet based VLAN en...

Page 310: ...of the sFlow configuration It assumes one of three values 1 If sFlow is currently unconfigured unclaimed Owner contains none 2 If sFlow is currently configured through Web or CLI Owner contains Configured through local management 3 If sFlow is currently configured through SNMP Owner contains a string identifying the sFlow receiver IP Address Hostname The IP address or hostname of the sFlow receive...

Page 311: ... for which the following statistics applies Rx and Tx Flow Samples The number of flow samples sent to the sFlow receiver originating from this port Here flow samples are divided into Rx and Tx flow samples where Rx flow samples contains the number of packets that were sampled upon reception ingress on the port and Tx flow samples contains the number of packets that were sampled upon transmission e...

Page 312: ...Ping Count The count of the ICMP packet Valid values are 1 time 60 times Ping Interval The interval of the ICMP packet Valid values are 0 30 seconds Start Click the Start button and the switch will start to ping the device using ICMP packet size what set on the switch ICMP packets are transmitted and the sequence number and round trip time are displayed upon reception of a reply The amount of data...

Page 313: ...ress interface is not given PING6 finds the best match interface for destination Do not specify egress interface for loopback address Do specify egress interface for link local or multicast address Start Click the Start button and the switch will start to ping the device using ICMPv6 packet size what set on the switch ICMPv6 packets are transmitted and the sequence number and round trip time are d...

Page 314: ...ostics Cable Diagnostics 2 At the Port dropdown specify the Copper Port which you want to check 3 Click the Start button If a webpage message displays click OK if you want to continue Figure 4 3 Cable Diagnostics page Parameter descriptions Port At the Port dropdown select the port for which you are requesting Cable Diagnostics Copper Port The Copper Port number to test Link Status The status of t...

Page 315: ...message displays 10 and 100 Mbps ports will be linked down and lost connection while running Cable Diagnostics Are you sure to continue Note that Diagnostics is only accurate for cables of length 1 120 meters Verify that you want to continue and click the OK button to continue Otherwise click Cancel The message Cable Diagnostic is running displays while the test is running ...

Page 316: ...aceroute page Parameter descriptions Protocol The protocol ICMP UDP or TCP packets to send IP Address The destination IP Address Wait Time Set the time in seconds to wait for a response to a probe default 5 0 seconds Valid values are 1 60 Max TTL Specifies the maximum number of hops max time to live value traceroute will probe Valid values are 1 255 seconds The default is 30 seconds Probe Count Se...

Page 317: ...age 317 of 376 When the parameters are entered click the Start button to begin the Traceroute Observe the Traceroute Output Click the New Traceroute button to end the Traceroute Traceroute Output traceroute to 0 0 0 0 0 0 0 0 30 hops max 40 byte packets 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 ...

Page 318: ...click Yes Figure 5 1 Restart Device page Parameter descriptions Note SM24TBT2DPA FW v6 54 3104 removed the Force Cool Restart checkbox from this page Always On PoE If you check this button during switch warm restart it will continue providing PoE power to the PDs Note 1 It will take 75 80 seconds to have PoE power on the ports to power PDs again if the switch makes a cold restart The Always on PoE...

Page 319: ...meters 3 Enter the reboot schedule parameters and click Apply 4 At the Are you sure prompt click Yes Figure 5 2 Switch Reboot Schedule page Parameter descriptions Mode Indicates the reboot scheduling mode operation Possible modes are Enabled Enable switch reboot scheduling Disabled Disable switch reboot scheduling default Week Day The day to reboot this switch Reboot Time The time to reboot the sw...

Page 320: ...5 3 Factory Defaults page Parameter descriptions Keep VLAN1 IP setup Check the checkbox if you want to keep the current VLAN1 IP setting Yes Click to reset the configuration to Factory Defaults No Click to return to the Port State page without resetting the configuration Note Restoring factory defaults can also be performed by making a physical loopback between port 1 and port 2 within the first m...

Page 321: ...s time or the switch may fail to function afterwards Figure 5 3 1 Software Upload page Parameter descriptions Choose File Click the button to search for the Firmware filename Note SM24TBT2DPA FW v6 54 3104 removed the Force Cool Restart checkbox from this page Always On PoE Check this button then during the switch warm restart it will continue providing PoE power to the PDs Note 1 It will take 75 ...

Page 322: ...e Firmware upgrade in progress The system will restart after the update Until then do not reset or power off the device Erasing please stand by Meaning When the Firmware upgrade is done the last line of the message changes to Completed Recovery You may need to refresh the web page to clear the Completed message Firmware Upgrade to SM24TBT2DPA FW v6 54 3303 To perform a Firmware Upgrade to FW v6 54...

Page 323: ...2 3bt standard so you can t downgrade to an old FW version PoE Mode setting between v6 54 3303 with vB6 54 3476 and newer v6 54 3303 vB6 54 3476 Disabled Disabled Enabled 4pair90w 4pair 4pair60w 2pair 8023bt Notes 1 The PoE mode setting will be mapped according to the table above after firmware upgrade 2 It s not allowed to downgrade to v6 54 3303 or older version after firmware upgrade to vB6 54 ...

Page 324: ...e displayed version 2 If desired check the Always On PoE checkbox 3 Click the Activate Alternate Image button Figure 5 3 2 Software Image Selection page Image The flash index name of the firmware image The name of the active current image is managed the alternate image is named managed bk Version The version of the firmware image e g SM24TBT2DPA standalone VB6 64 0043 Date The date and time when t...

Page 325: ...red to default settings It is also possible to store up to two other files and apply them to running config thereby switching configuration Note The generation of the configuration file may be time consuming depending on the amount of non default configuration 5 4 1 Save startup config This copies the running config to startup config thereby ensuring that the currently active configuration will be...

Page 326: ...ile to save 2 Click the Download Configuration button 3 Click the Apply button 4 Select Open Open Folder or View Downloads Figure 5 4 2 Configuration Download page Parameter descriptions There are three system files running config A virtual file that represents the currently active configuration on the switch This file is volatile default config A read only file with vendor specific configuration ...

Page 327: ... another deleted first Web Interface To upload configuration in the web interface 1 Navigate to Switch Maintenance Configuration Upload 2 Browse to and select the file to upload 3 Select the destination file on the target 4 For the running config file select Replace or Merge 5 Click the Upload Configuration button Figure 5 4 3 Upload Configuration page Parameter descriptions There are three system...

Page 328: ...g configuration with that of the selected file The previous configuration will be completely replaced potentially leading to loss of management connectivity Note The activated configuration file will NOT be saved to startup config automatically Figure 5 4 4 Activate Configuration page Parameter descriptions There are two system files default config A read only file with vendor specific configurati...

Page 329: ...fig or select the filename radio button and enter a filename to be deleted 2 Click the Delete Configuration File button 3 At the Are you sure prompt select Yes to delete the file Figure 5 4 5 Delete Configuration File page Parameter descriptions File Name There is one system file and one optional file selection startup config The startup configuration for the switch read at boot time filename sele...

Page 330: ...ownload 1 Navigate to Switch Maintenance Server Report menu path 2 Click the Download Server Report button 3 Select Open Save or Cancel If you select Open the file opens in MS Word If you select Save you have the options to Open Open folder or View downloads Figure 5 5 1 Server Report page Messages A server report includes sections of information such as System Overview Connected Devices PoE Power...

Page 331: ... the Master switch You can deploy IP devices via Topology Floor Map View to installation locations run Diagnostics and view Traffic Monitor and check link status and monitor throughput DMS Controller Switch and Managed Devices DMS Controller Switch Notes 1 If there are more than two Switches set as High priority or no High priority mode switch the Switch with the longer system uptime will be selec...

Page 332: ...n The default is Enabled Controller Priority Select the controller priority when enabling DMS High Select High Priority to make this device the DMS Master controller switch Mid Select Mid to assign a middle level priority Low Select Low to assign the lowest level priority default Non This switch will never become the DMS Master controller switch Total Devices Shows how many IP devices are detected...

Page 333: ...I key and a Google Cloud Platform billing account to access Google core product If not DMS Map View will not be able to load Google Maps correctly Visit the Google website below and follow the directions to get a Google Maps API key https developers google com maps documentation directions get api key Parameters Key Specify the Google API Key Buttons Apply Click to save changes ...

Page 334: ...gement Device List Select to remove a device if necessary 2 By default seven columns display in the table 3 Click the Edit Device Name icon to display four additional editable table columns 4 Edit the Device Name Http Port User Name and or User Password as desired 5 Click Apply Note Click a column heading to sort by Mac address or IP address etc Example Five devices discovered with eleven columns ...

Page 335: ... by graphic networking topology view You can manage and monitor them in Topology View e g remotely diagnose cable connection status auto alarm notifications on critical events remotely reboot PoE device when it s not alive etc You can apply the DMS platform to resolve issues anytime and anywhere by tablet or smart phone and keep the network working smoothly In the DMS tab click Graphical Monitorin...

Page 336: ...b Click a device to display its parameters and icons Device Tab Parameters and Icons Device Type PC General PC IP Camera General IP Cam IP Phone General IP Phone Cisco SPA303 AP General AP Others Mobile Device General Switch Internet Gateway IP PBX NAS VMS Unknown Device LED Light Mini fridge Shade Device Name e g SM24TBT2DPA or other device Model Name e g SM24TBT2DPA or other model Mac Address e ...

Page 337: ... to light the front panel port LEDs for 15 seconds Dashboard click the button to display the dashboard data Notification click the button to display notification messages if any exist Graphical Monitoring Topology View Group Tab At the Groups dropdown select a Group ALL SWITCH PC IP Cam IP Phone AP Others or Off Line At the New Group or Existing Groups dropdown select New and enter a Vlan ID Name ...

Page 338: ...t the dropdown select Default 0 Low 1 2 3 4 5 6 or 7 High as the priority for traffic for this Group OUI 1 3 enter 1 3 Organizationally Unique Identifiers When DMS detects the MAC address range of E0 0D B9 xx xx xx it will identify the device as LED lighting in topology view e g E0 0D B9 is the vendor OUI of CREE LED light Buttons Apply Click to save the configured parameters Delete Click to delet...

Page 339: ...255 255 0 Gateway e g 192 168 1 254 Http Port e g 80 PoE Supply e g 0 W Login click the button to return to the startup screen Upgrade click the button to display the firmware upgrade dialog Find Switch click the button to light the front panel port LEDs for 15 seconds Dashboard click the button to display the dashboard data Notification click the button to display notification messages if any exi...

Page 340: ...DMS the IP addresses of the connected devices are automatically filled in the Auto Power Reset configuration page 1 Configure the PoE Auto Checking parameter at Switch PoE Management PoE Auto Checking The Failure Action parameters are Reboot Remote PD or Nothing 2 Configure PoE parameters at DMS Graphical Monitoring Topology View Left click on the switch icon to display its device configuration po...

Page 341: ...Light The device is a Mini fridge The device is a Shade Icon with question mark The IP device is detected by DMS but the Device Type can t be recognized and will be classified as an Unknown type Device Status Icon with black mark Device link up you can select function and check issues Icon with red mark Device link down you can diagnose link issues Icon with number An event occurred Device Offline...

Page 342: ...lick the Upgrade button to display the upgrade table 3 Check the SM24TBT2DPA checkbox 4 Enter the Tftp Server IP address e g 192 168 1 50 5 Enter the firmware upgrade File e g SM24TBT2DPA_VB6 64 0043_CM_202112013 6 Click the Apply button to Save to running config file The message Starting please wait displays momentarily 7 Wait for the firmware upgrade File to be successfully loaded Messages Error...

Page 343: ...the page for future reference To place an icon click the IP device from the Devices List then drag and drop onto floor view Procedure 1 At DMS Maintenance Floor Image add a Floor Image file so it will be available for use in the Floor View page 2 Click Floor View 3 Click Device List 4 Select and click a device 5 Drag the device to the desired location 6 Click to save the floor view to SVG PNG or P...

Page 344: ... devices discovered e g 2 Master Controller IP the master IP address e g 192 168 1 77 DHCP Server IP if one is configured otherwise displays DHCP Server at the dropdown select Disabled or Enabled The default is Disabled IP Range at the dropdown select Single Subnet or Multiple Subnet If you select Multiple Subnets you must also enter one or more Range parameters ...

Page 345: ...he devices even if they are installed in a different building You can place the device icons on the Map View which is navigated by Google Maps Procedure 1 Click Map View and click Always 2 Click a device in the Entry tab list 3 Select and click a device 4 Drag the device to the desired location Config Tab Message Would you like to share your location with this site Response Select Always Never or ...

Page 346: ...33738 Rev H https www lantronix com Page 362 of 376 Message This page can t load Google Maps correctly Recovery 1 Click the OK button to clear the message 2 Navigate to DMS Mode Map API Key 3 See section 6 3 1 Google Map API Key Configuration on page 332 ...

Page 347: ...tain the flow view image Navigate to DMS Maintenance Floor Image to display the Floor Image Management page Here you can add or delete one or more floor image maps Procedure 1 Click DMS Management Floor View 2 Select a floor image image size 512KB File type jpg or png 3 Click Add to add the new floor image 4 You can now place device icons on the Floor View page See 6 4 2 Floor View on page 332 ...

Page 348: ...r image you can navigate to DMS Graphical Monitoring Floor View 6 Left mouse click a device to display its icon on the Floor View Drag the device icon to the desired location Message 192 168 1 77 is not responding due to a long running script Meaning At Floor View you Recovery Click the Stop script button and continue operation ...

Page 349: ...x SM24TBT2DPA and SM24TBT2DPB Web User Guide 33738 Rev H https www lantronix com Page 365 of 376 Example three floor images added You can now select a floor image to view at DMS Graphical Monitoring Floor View ...

Page 350: ...nd devices You can use this feature to remotely diagnose all IP device status and decrease troubleshooting time This page lets you diagnose the connection status of IP devices in the network Procedure 1 Click DMS Maintenance Diagnostics 2 Select a device to troubleshoot 3 View the selected device s information example below When done click the Another Try button to troubleshoot another device ...

Page 351: ... week s traffic by selecting the check circle on top The same applies to the selection of Rx Tx traffic A single port s traffic is shown at the lower half of the screen Procedure 1 Click DMS Maintenance Traffic Monitor 2 View the numbers in Mbit s 3 To view the traffic through all the ports or a specific port click on specific port on the traffic chart to reveal its traffic during the day 4 You ca...

Page 352: ...ab extension installed This is needed for both Chrome and Firefox IE Tab is an extension for the Google Chrome and Mozilla Firefox web browsers that lets you view pages using the Internet Explorer layout engine Problem DMS Connectivity diagnostics fails to ICMP reachable device Description DMS displays a device which is reachable via ICMP ping as failing the connection status in diagnostics Cable ...

Page 353: ...ons for possible defects Replace the defective adapter or cable if necessary Use the Mode Reset button to change LED mode reset the switch or restore to defaults See the Install Guide for details 4 Make sure all devices connected to the SM24TBT2DPA are configured to auto negotiate or are configured to connect at half duplex all hubs are configured this way for example 5 Check the cabling Look for ...

Page 354: ...ions that are in use what happens if one of the power supplies fails and there is not enough power to support all of the PoE ports that are in use A3 PoE power will be fed to PoE ports with higher priority If the ports have the same priority the lower port number will be fed PoE power Q4 There is a mismatch of information regarding power requested power allocated on the SM24TBT2DPA With PD class 2...

Page 355: ... the switch always assigns one IP address per port connecting device The DHCP Per Port function is only supported on VLAN 1 When the DHCP Per Port function is enabled the switch software will automatically create the related DHCP pool named DHCP_Per_Port Once the DHCP Per Port function is enabled on one switch IPv4 DHCP client at VLAN1 mode DMS DHCP mode DHCP server mode are all limited to be enab...

Page 356: ... and buttons are described below Mode at the dropdown select Enable or Disable the DHCP Per Port function globally The default is Disabled IP enter the IPv4 IP address range to be used when the DHCP Per Port function is enabled e g 192 168 10 20 192 168 10 37 The DHCP Per Port IP range must be within the interface subnet Note that DHCP Per Port with IPv6 is not supported at this time The DHCP Per ...

Page 357: ... Mode Configuration When DHCP Per Port is enabled and configured at Configuration System IP the checkbox and selection in the DHCP Server Mode Configuration section at Configuration DHCP Server Mode will become gray cannot be selected To monitor DHCP Per Port status navigate to the Monitor System IP Status menu path ...

Page 358: ...The value of DNS Server must be a valid IP address in dotted decimal notation x y z w Meaning You entered an invalid IP address for the DNS Server being configured Recovery 1 Click the OK button to clear the webpage message 2 Enter a valid IP address in the format x y z w per the on screen restrictions See DHCP Server Mode Configuration on page 373 Message DHCP Interface VLAN ID must be an integer...

Page 359: ...ix com Page 375 of 376 Appendix B Service Warranty and Tech Support See the SM24TBT2DPA Install Guide or the SM24TBT2DPB Install Guide for related information Appendix C Compliance Information See the SM24TBT2DPA Install Guide or the SM24TBT2DPB Install Guide for related information ...

Page 360: ...adquarters 7535 Irvine Center Drive Suite100 Irvine CA 92618 USA Toll Free 800 526 8766 Phone 949 453 3990 Fax 949 453 3995 Technical Support https www lantronix com technical support Sales Offices For a current list of our domestic and international sales offices go to the Lantronix web site at www lantronix com about contact ...

Reviews: