background image

               

                                                                                      24 

3-4-1. RSTP 

The Rapid Spanning Tree Protocol (RSTP) provides rapid convergence of the 
spanning tree by assigning port roles and by determining the active topology. 
The RSTP builds upon the IEEE802.1D STP protocol to select the switch with 
the highest switch priority as the root switch. 
 

 

 

3-4-2. RSTP 

 

 

 

3-4-3. MSTP 

The Multiple Spanning Tree Protocol (MSTP) algorithm and protocol provides 
simple and full connectivity for frames assigned to any given VLAN throughout 
a Bridged Local Area Network comprising arbitrarily interconnected Bridges, 
each operating MSTP, STP (Clause 8 of IEEE Std 802.1D, 1998 Edition), or 
RSTP (Clause 17 of IEEE Std 802.1D,1998 Edition).   

 

MSTP allows frames assigned to different VLANs to follow separate paths, 
each based on an independent Multiple Spanning Tree Instance (MSTI), within 
Multiple Spanning Tree (MST) Regions composed of LANs and or MST 
Bridges. These Regions and the other Bridges and LANs are connected into a 
single Common Spanning Tree (CST).   

 

 

Summary of Contents for SP6824P

Page 1: ...1 User s Manual 24 port 10 100Mbps Layer 2 Managed Switch With 370W PoE output power Model No SP6824P ...

Page 2: ...rview 9 2 2 Switch Overview 9 2 3 LED Function 10 2 4 Reset Button 11 2 5 Installing the Switch 11 2 6 Rack Mount Placement 13 3 Configuration 15 3 1 Web based configuration 16 3 2 Command Line Interface by Console or Telnet 48 3 3 Privileged Mode commands 49 3 4 Global Config mode commands 56 3 5 Interface Config mode commands 72 4 Specifications 76 4 1 Cable specifications 76 4 2 Technical speci...

Page 3: ...nt information that helps you make better use of your device A NOTICE indicates either potential damage to hardware or loss of data and tells you how to avoid the problem A CAUTION indicates a potential for property damage personal injury or death ...

Page 4: ...ties If any of the listed items is missing or damaged please contact the place of purchase for a replacement immediately 1 2 Feature z Four groups history statistics alarms and events of embedded remote monitoring RMON agents for network monitoring and traffic analysis z Provides SNMP protocol v1 v2c v3 to monitor and control the switch by using SNMP management applications such as HP Open View z ...

Page 5: ...ion and build in RADIUS client to co operate with the RADIUS servers z Supports broadcast multicast and unknown unicast storm control z Supports Protected Port feature z Supports SSL SSH secure access z Supports Access Control List feature up to 256 rules can be configured z Supports web based interface for management z Supports CLI interface for local console or remote Telnet management z Support...

Page 6: ... to 48 Gbps z Provides IEEE802 3x Flow Control mechanism ensures zero packet loss which uses Back Pressure for half duplex operation and Flow Control for full duplex operation z Supports 8K MAC address and Up to 4Mb packet buffer z Supports Store Forward architecture and performs forwarding and filtering z Provides non blocking switching performance z Supports Jumbo Frame up to 9KB z Provides a RS...

Page 7: ...mm Weight Net Gross 4 6kg 6 5kg Power 30W Operating Temp 0 40 32 104 Storage Temp 20 70 4 158 Operating Humidity 20 to 85 relative humidity Non Condensing Storage Humidity 10 to 90 relative humidity Non Condensing 1 5 Standard Conformance EMC Certification FCC Class A CE ...

Page 8: ...ns of the switch and how to physically install it Chapter 3 Configuration explains how to set up and modify the configuration of the switch Chapter 4 Specifications contains information about the cables and the technical specifications of the switch Appendices include the Warranty Statement Read them as necessary ...

Page 9: ...802 1x Port Security Port Mirroring IGMP Snooping SNTP Storm Control Rate Control SNMP etc features 2 2 Switch Overview Figure 2 2 1a Front Panel Figure 2 2 1b Rear Panel Table 2 2 1c Port Function Port Function 1 24 This is where you connect the Cat 5e or better ethernet cable for 10 100Mbps ethernet connection miniGBIC This is where you connect the SFP module for fiber connection Front panel Con...

Page 10: ...D lights up it indicates a successful connection of that port is established Otherwise it indicates the link is off or no link detected of that port When the LED blinks it indicates the port is activating and transmitting data PoE Amber LED lights up only when the corresponding port supply power 1000M Amber LED lights up only when the corresponding port works at 1000Mbps ...

Page 11: ...ed to factory defaults and then reboots b To reboot switch Press the Reset button for less than 10 seconds switch will reboot Please note you will lose unsaved change when doing this 2 5 Installing the Switch This section describes how to install and make connection to the SP6824P switch The following diagrams shows the a typical network configuration Figure 2 5 1 Figure 2 5 1 Network Configuratio...

Page 12: ... the following steps Step 1 Place the switch on a desktop or shelf near an AC power source Step 2 Keep enough ventilation space between the switch and the surrounding objects Note When choosing a location keep in mind the environmental restrictions discussed in Chapter 4 Specifications Step 3 Connect the switch to network devices A Connect one end of a standard network cable to the RJ 45 ports on ...

Page 13: ...n is not achieved due to uneven mechanical loading Circuit Overloading Consideration should be given to the connection of the equipment to the supply circuit and the effect that overloading of the circuits might have on overcurrent protection and supply wiring Appropriate consideration of equipment nameplate ratings should be used when addressing this concern Reliable Earthing Reliable earthing of...

Page 14: ...14 Make sure the brackets are properly attached to the Switch Use the appropriate screws not included to securely attach the brackets to your rack Figure 2 6 2 Figure 2 6 2 ...

Page 15: ...hical user interface Note that to use this management method your network must use the IP protocol and your switch must be configured on the Network with a proper IP address You may use any of the following method to manage the switch Web Browser You can manage the switch through a web connection by connecting to the switch s IP address using your web browser This User Guide provides instructions ...

Page 16: ...er of your choice This chapter describes how to use the switch s Web browser interface to configure and manage the switch Logging on the switch To log on to the Switch Step 1 In your web browser specify the IP address of the switch Default IP address is 192 168 1 254 Step 2 Enter the factory default admin to login on the Switch with no password Refer to the figure 3 1 Figure 3 1 ...

Page 17: ...LI management Function name Network Management Function description Set IP address subnet mask default gateway and DNS for the switch 3 1 3 Time Configuration The switch provides manual and automatic ways to set the system time via NTP Manual setting is simple and you just input Year Month Day Hour Minute and Second within the valid value range indicated in each item If you input an invalid value ...

Page 18: ...speed full duplex and the same MAC to be a single logical port thus the logical port aggregates the bandwidth of these ports This means you can apply your current Ethernet equipments to build the bandwidth aggregation For example if there are three Fast Ethernet ports aggregated in a logical port then this logical port has bandwidth three times as high as a single Fast Ethernet port has The switch...

Page 19: ... that a port can immediately become a member of a trunk group without any handshaking with its peer port This is also a disadvantage because the peer ports of your static trunk group may not know that they should be aggregate together to form a logic trunked port Using Static Trunk on both end of a link is strongly recommended Please also note that low speed links will stay in not ready state when...

Page 20: ...20 3 2 3 LAG Group 3 2 4 PoE ...

Page 21: ...21 ...

Page 22: ...Create VLAN screen provides information and global parameters for configuring and working with VLANs 3 3 2 VLAN Settings 3 3 3 VLAN Port 3 4 4 GVRP When Switch GVRP is enabled you can modify the GVRP settings of multiple ports ...

Page 23: ... GVRP will be disabled on all ports Click the Modify hyperlink to modify the GVRP settings of multiple ports when Switch GVRP is enabled On the port GVRP modification page you can enable disable GVRP on the port you specified ...

Page 24: ...simple and full connectivity for frames assigned to any given VLAN throughout a Bridged Local Area Network comprising arbitrarily interconnected Bridges each operating MSTP STP Clause 8 of IEEE Std 802 1D 1998 Edition or RSTP Clause 17 of IEEE Std 802 1D 1998 Edition MSTP allows frames assigned to different VLANs to follow separate paths each based on an independent Multiple Spanning Tree Instance...

Page 25: ...25 3 4 4 MSTP Port 3 4 5 MSTP Instance 3 4 6 MSTP Interface ...

Page 26: ...26 ...

Page 27: ...nd in RFC2236 for IGMPv2 IGMP specifies how a host can register a router in order to receive specific multicast traffic Configure the switch to use IGMP snooping in subnets that receive IGMP queries from either IGMP or the IGMP snooping querier IGMP snooping constrains multicast traffic at Layer 2 by configuring Layer 2 LAN ports dynamically to forward multicast traffic only to those ports that wa...

Page 28: ...y linker to modify it Entry Name indicates the name of ACL entry The length of name have to be smaller than 20 And Different ACL entries can t have the same name Priority indicates the priority of ACL entry The largest value have highest priority The range is from 0 to 65535 And Different ACL entries can t have the same priority increase priority by 1 decrease priority by 1 3 6 2 Port Security Por...

Page 29: ...29 3 6 3 802 1x 3 6 4 RADUS 3 6 5 TACACS TACACS Terminal Access Controller Access Control System plus provides access control for the device via one or more centralized servers ...

Page 30: ...30 3 6 6 Storm Control 3 6 7 Management IP List ...

Page 31: ...e Internet SSH uses public key cryptography to authenticate the remote computer and allow the remote computer to authenticate the user if necessary SSH is typically used to log into a remote machine and execute commands An SSH server by default listens on the standard TCP port 22 Enable SSH Whether or not to activate the SSH daemon inside the switch Login will be denied if that deamon is inactive ...

Page 32: ...in the packets will be served according to the queue weight Queue Indicates priority queues Queue 1 is the lowest priority queue and Queue 4 is the highest priority queue Weight Indicates the weight number of packets to be served in the queue before moving to serve next queue A high priority queue should have a higher weight than a low priority queue 3 7 2 DSCP 3 7 3 802 1P ...

Page 33: ...33 3 7 4 Rate Control 3 7 5 Port based QoS ...

Page 34: ...ables SNMP function on this device Enable SNMP Notification Enables or Disables SNMP notification function on this device Engine ID Configures the Engine ID on this device 3 8 2 Group Profile 3 8 3 User Profile 3 8 4 Community Profile 3 8 5 SNMP Trap Station ...

Page 35: ...sive LLDP frame transmissions initiated by value status changes in the local system Re initialization delay The minimum delay period before from the time a ports becomes disabled until re initialization Notification Interval The interval at which notification are generated when remote MSAP information changes Management Address Transmit Ports Indicates the ports on which the management address wil...

Page 36: ...36 3 9 2 LLDP Statistics 3 9 3 LLDP Information ...

Page 37: ...37 3 9 4 Remote Information ...

Page 38: ... to change the password of the administrator Old Password Enteres original password New Password Enteres a desired password to replace the original one Confirm New Password Enteres new password again for confirmation 3 10 2 L2 Table 3 10 3 Static Address ...

Page 39: ...39 3 10 4 Port Mirroring 3 10 5 Admin Timeout 3 10 6 Firmware Upgrade 3 10 7 Reboot 3 10 8 Save Configurations ...

Page 40: ...40 3 10 9 Logs Settings 3 10 10 Log Server 3 10 11 Memort Logs 3 10 12 Flash Logs ...

Page 41: ...41 3 10 13 Ping Function 3 10 14 Cable Diagnostic 3 10 15 DHCP Relay 3 10 16 DHCP Option 82 3 10 17 SelfLoop Detection ...

Page 42: ...42 3 10 18 BOOTP ConfigDownload ...

Page 43: ...on Session Time The duration of the session in seconds Termination Cause The reason for the session termination T his parameter can take the following values 1 Supplicant Logoff 1 2 Port Failure 2 3 Supplicant Restart 3 4 Reauthentication Failure 4 5 AuthControlledPortControl set to ForceUnauthorized 5 6 Port re initialization 6 7 Port Administratively Disabled 7 8 Not Terminated Yet 999 3 11 2 RM...

Page 44: ...44 3 11 4 RMON Event log 3 11 5 RMON Alarm ...

Page 45: ...45 3 11 6 RMON History ...

Page 46: ...46 3 12 1 Help ...

Page 47: ...47 3 13 1 Log out ...

Page 48: ...e enter the exit command Interface Config Mode From the Global Config mode enter the interface port command Switch Interface port To exit to the Global Config mode enter exit The CLI is divided into various modes The commands in one mode are not available until the operator switches to that particular mode The commands available to the operator at any point in time depend upon the mode By entering...

Page 49: ...port port ID Mode Privileged Mode e g Switch cable diag port 1 1 clear arl This command is used to clear ARL table entries 1 1 clear arl dynamic This command is used to Clear dynamic arl table entries Format clear arl dynamic Mode Privileged Mode 1 2 clear arl static This command is used to clear static arl table entries Format clear arl static mac mac addr Mode Privileged Mode 2 clear config This...

Page 50: ...ftp Format copy system_image tftp A B C D filename Mode Privileged Mode 192 168 1 100 image_file copy 3 copy tftp This command is used to download configuration or runtime image from host to switch e g Switch copy tftp 192 168 1 100 file switch_configuration nvram_config Switch copy tftp 192 168 1 100 file runtime_code system_image Format copy tftp A B C D file filename nvram_config system_image M...

Page 51: ...mand displays dot1x information 2 1 show dot1x config This command displays dot1x and port configuration Format show dot1x config Mode Privileged Mode 2 2 show dot1x radius This command displays radius configuration Format show dot1x radius Mode Privileged Mode 2 3 show dot1x statistics This command displays dot1x statistics Format show dot1x statistics Mode Privileged Mode 3 show igmpsnooping Thi...

Page 52: ...work Mode Privileged Mode 10 show port This command is used to displays port mode and settings displays port status 10 1 show port port index This command is used to specify an switch interface Format show port port index port ID Mode Privileged Mode 10 2 show port all This command is used to displays all switch interface Format show port all Mode Privileged Mode 11 show port security This command...

Page 53: ... 2 show spanning tree interface all This command displays all switch interface Format show spanning tree interface all Mode Privileged Mode 16 2 show spanning tree mst This command displays MST information 16 2 1 show spanning tree mst detailed This command displays a MST instance information Format show spanning tree mst detailed 0 4094 Mode Privileged Mode 16 2 2 show spanning tree mst instance ...

Page 54: ...ys vlan and port info by the specific mac address Format show switch mac Mode Privileged Mode 20 show trapflags This command is used to displays the value of trap flags that apply to the switch Format show trapflags Mode Privileged Mode 21 show vlan This command is used to displays vlan configuration 21 1 show vlan member This command displays vlan configuration Format show vlan member 1 4094 Mode...

Page 55: ...ormat show tacplus Mode Privileged Mode 25 show arp This command is used to displays table of static ARP Format show arp Mode Privileged Mode 26 show acl This command is used to displays information about ACL entries Format show acl Mode Privileged Mode 27 show dhcpsnooping This command is used to display dhcp snooping information 27 1 show dhcpsnooping config This command is used to displays dhcp...

Page 56: ...lnet the other host Format telnet A B C D Mode Privileged Mode 3 4 Global Config mode commands Commands Description Syntax exit This command is used to exit current shell Format exit Mode Global Config This command is used to configure vlan 1 vlan add This command is used to create a new vlan or some vlans 1 1 vlan add number This command enter a vlan ID Format vlan add number vlan ID Mode Global ...

Page 57: ...ch aging time Format bridge aging time 0 1048575 Mode Global Config lacp syspri This command is used to configure lacp system priority Format lacp syspri system priority 0 65535 Mode Global Config This command is used to configure link aggregation 1 link aggregation addport This command is used to configure LAG groups Format Link Aggregation addport lag LAG ID Mode Global Config 2 link aggregation...

Page 58: ...gure log notification level 2 1 log logging target memory This command is used to specify memory log notify level Format log logging target memory enable disable Mode Global Config 2 2 log logging target flash This command is used to specify flash log notify level Format log logging target flash enable disable Mode Privileged Mode 2 3 log logging target console This command is used to specify cons...

Page 59: ...r 3 3 monitor des port ID probetype egress This command configures port monitor probetype as egress traffic Format monitor des port ID probetype egress src port list Mode Global Config e g Switch config monitor des 1 probetype egress src 2 8 1 dot1x enable This command enables global 802 1x function Format dot1x enable Mode Global Config 2 dot1x disable This command disables global 802 1x function...

Page 60: ...act information Format network sysinfo syscontact WORD Mode Global Config 6 network admin timeout This command configures web console admin time out interval 0 means disable Format network admin timeout 0 65535 Mode Global Config 1 port all admin mode This command configures ports admin mode Format port all admin mode enable disable Mode Global Config 2 port all auto negotiate This command configu...

Page 61: ...m control for broadcast multicast and unknown unicast Format port all Storm Control all cast value Mode Global Config 1 qos qos advanced Configure qos advanced mode 1 1 qos qos advanced DSCP This command enables DSCP mode Format qos qos advanced DSCP Mode Global Config 1 2 qos qos advanced ip_precedence This command enables IP Precedence mode Format qos qos advanced ip_precedence Mode Global Confi...

Page 62: ... robustness variable Format set igmp robustness 1 20 Mode Global Config 1 8 set igmp router port This command specifies igmp router port e g Switch config set igmp router port ports 1 10 Format set igmp router port ports port list Mode Global Config 2 set igmp querier This command configures igmp querier Format set igmp querier enable disable Mode Global Config 3 set igmp proxy This command config...

Page 63: ...sion 1 2 Mode Global Config 5 1 3 snmp trapstation add ip addr community community name type both Send trap when system reboot or port link change Format snmp trapstation add ip addr community community name type both trap version 1 2 Mode Global Config 5 1 4 snmp trapstation add ip addr community community name type none Send no trap Format snmp trapstation add ip addr community community name ty...

Page 64: ... command configures revision level Format spanning trees configuration revision 0 65535 Mode Global Config 3 spanning tree forward time This configures the bridge forward delay parameter Format spanning tree forward time 4 30 Mode Global Config 4 spanning tree max age This command configures the bridge max age parameter Format spanning tree max age 6 40 Mode Global Config 5 spanning tree max hops ...

Page 65: ... the last MST instance Format spanning tree mst instance delete Mode Global Config 8 2 spanning tree mst vlan This command adds or deletes vlan frome a MSTP instance 8 2 1 spanning tree mst vlan MST ID vlan list add This command creates a MST instance Format spanning tree mst vlan MST ID vlan list add Mode Global Config e g Switch Config Spanning Tree mst vlan 3 3 5 add 8 2 2 Spanning Tree mst vla...

Page 66: ...w access list Format access list name WORD add priority 1 65535 Mode Global Config 2 access list name WORD action 2 1 access list name WORD action deny This command denies an ACL entry Format access list name WORD action deny Mode Global Config 2 2 access list name WORD action permit This command permits an ACL entry and queue 1 4 will assign priority queue when rule activated Format access list n...

Page 67: ...e WORD set 6 1 access list name WORD set priority This command specifies ACL entry priority Format access list name WORD set priority 0 65535 Mode Global Config 6 2 access list name WORD set IP mode 6 2 1 access list name WORD set IP mode SRC IP This command specifies a source IP address Format access list name WORD set IP mode SRC IP IP addr mask addr Mode Global Config 6 2 2 access list name WOR...

Page 68: ...amic aging time between 0s and 999s 0 means disable arp dynamic aging time 0 999 Global Config 1 3 arp dynamic ports This command set dynamic arp ports to trust and un trust arp dynamic ports trust untrust port list Global Config e g Swtich Config arp dynamic ports trust 1 4 Config arp dynamic ports untrust 4 1 4 arp dynamic vlan This command set add remove dynamic arp on specified vlan Format arp...

Page 69: ...meout 1 30 bal Config tacplus 3 tacplus del This command is used to delete a TACACS server Format tacplus del server IP_addr Mode Global Config green eth This command is used to enable disable green Ethernet function Enable green Ethernet mode will reduce system power consumption when the link is not present Format green eth enable disable Mode Global Config 1 dhcpsnooping enable This command is u...

Page 70: ... command is used to delete a dynamic dhcp entry Format dhcpsnooping dynamic delete ip A B C D mac mac address port port id vid vlan id lease time 1 9999999 Mode Global Config 1 Loop_detect enable This command is used to enable port self loop detection Format loop_detect enable Mode Global Config 2 loop_detect disable This command is used to disable port self loop detection Format loop_detect disab...

Page 71: ...ble Mode Global Config 3 ipsrcgd ports This command is used to configure ports to enable or disable ip source guard Format ipsrcgd ports enable disable Mode Global Config 4 ipsrcgd retry This command is used to configure the retry mechanism of ip source guard database 4 1 ipsrcgd retry now This command is used to retry inactive entries now Format ipsrcgd retry now Mode Global Config Ipsrcgd 4 2 ip...

Page 72: ...sociated with a remote MSAP identifier However lldp agents are not provided any means of soliciting information from other lldp agents via this protocol 1 lldp state set Only transfer the lldp status lldp state tx rx tx_rx disable Interface Config 2 configure notifications Enable disable notification form the agent lldp notification enable disable Interface Config 3 Configures which TLVs are enabl...

Page 73: ... This command limits egress rate which the unit is Kbps Format rate limit egress enable token bsize Burst Size Value Mode Interface Config 1 2 rate limit egress disable This command disable egress rate limit rate limit 2 rate limit ingress This command limits ingress rate which the unit is Kbps Format rate limit ingress rate Mode Interface Config 1 Enable disable storm control Format storm control...

Page 74: ...ion check enable disable Interface Config 5 spanning tree mst This command configures multiple spanning tree instance 5 1 spanning tree mst cost This command configure the path cost on a MST instance 1 200000000 spanning tree mst cost MST ID pathcost Interface Config 5 2 spanning tree mst priority This command configure the port priority on a MST instance 0 4094 spanning tree mst priority 0 4094 0...

Page 75: ... configure port PVID Format vlan pvid pvid Mode Interface Config e g Switch Interface 1 vlan pvid 1 Interface commands This command is used to change to another interface Format Interface port number Mode Interface Config e g Switch Interface 1 interface g1 ...

Page 76: ... STP or shielded twisted pair wiring is only necessary for network environments exposed to excessive amounts of electromagnetic interference or EMI These environments include areas with high sources of electrical power air conditioning generators and radio signals STP is also used for wiring outdoors There are two types of the wiring straight through cable and crossover cable Category 5 UTP STP ca...

Page 77: ...77 Figure 4 1 shows the diagram of Straight Through Cables Figure 4 2 shows the diagram of Crossover Cables ...

Page 78: ...ing filtering and proxy Broadcast Strom Control QoS Traffic classification Port Priority Bandwidth Control Security IEEE802 1x port based authentication Port security with MAC address Access Control List IP MAC Port Binding DHCP Relay Agent option 82 Management Web based Telnet Console SNMP TFTP software upgrade Cabling Diagnostics SNMP MIBs SNMPv1 v2 v3 Interface MIB Address Translation MIB IP MI...

Page 79: ...im its quality performance merchantability or fitness for any particular purpose We reserve the right to revise or update its products software or documentation without obligation to notify any individual or entity The information in this guide may be changed without notice The manufacturer assumes no responsibility for any errors which may appear in this guide Ethernet is a trademark of XEROX Cor...

Page 80: ...80 CE Mark Warning This is a Class A product In a domestic environment this product may cause radio interference in which case the user may be required to take adequate measures ...

Reviews: