background image

IES-P3073GC Series User Manual

ORing Industrial Networking Corp

99

RCS

RCS>

Mode [enable|disable]

Add [<ip_addr>] [<port_list>] [web_on|web_off]

[telnet_on|telnet_off] [snmp_on|snmp_off]

Del <index>

Configuration

FastReocvery

FastRecovery>

Mode [enable|disable]

Port [<port_list>] [<fr_priority>]

SFP

SFP>

syslog [enable|disable]

temp [<temperature>]

Info

DeviceBinding

Devicebinding>

Mode [enable|disable]

Port Mode [<port_list>] [disable|scan|binding|shutdown]

Port DDOS Mode [<port_list>] [enable|disable]

Port DDOS Sensibility [<port_list>] [low|normal|medium|high]

Port DDOS Packet [<port_list>]

[rx_total|rx_unicast|rx_multicast|rx_broadcast|tcp|udp]

Port DDOS Low [<port_list>] [<socket_number>]

Port DDOS High [<port_list>] [<socket_number>]

Port DDOS Filter [<port_list>] [source|destination]

Port DDOS Action [<port_list>]

[do_nothing|block_1_min|block_10_mins|block|shutdown|only_

log|reboot_device]

Port DDOS Status [<port_list>]

Port Alive Mode [<port_list>] [enable|disable]

Port Alive Action [<port_list>]

[do_nothing|link_change|shutdown|only_log|reboot_device]

Port Alive Status [<port_list>]

Port Stream Mode [<port_list>] [enable|disable]

Port Stream Action [<port_list>] [do_nothing|only_log]

Summary of Contents for IES-P3073GC Series

Page 1: ...s I In nd du us st tr ri ia al l M Ma an na ag ge ed d E Et th he er rn ne et t S Sw wi it tc ch h U Us se er r M Ma an nu ua al l V Ve er rs si io on n 1 1 1 1 J Ja an n 2 20 01 14 4 w ww ww w o or ri in ng g n ne et tw wo or rk ki in ng g c co om m ...

Page 2: ...xpenses apportioned by ORing and the distributor This warranty does not cover product modifications or repairs done by persons other than ORing approved personnel and this warranty does not apply to ORing products that are misused abused improperly installed or damaged by accidents Please refer to the Technical Specifications section for the actual warranty period s of the product s associated wit...

Page 3: ...ware Installation 9 3 1 DIN rail Installation 9 3 2 Wall Mounting 10 3 3 Wiring 11 3 3 1 Grounding 12 3 3 2 Fault Relay 12 3 3 3 Redundant Power Inputs 12 3 4 Connection 13 3 4 1 Cables 13 3 4 2 SFP 15 3 4 3 O Ring O Chain 15 Redundancy 19 4 1 O Ring 19 4 1 1 Introduction 19 4 1 2 Configurations 19 4 2 Open Ring 21 4 2 1 Introduction 21 4 2 2 Configurations 21 4 3 O Chain 22 4 3 1 Introduction 22 ...

Page 4: ...ore 41 5 1 8 Firmware Update 42 5 2 Multicast 43 5 2 1 IGMP Snooping 43 5 2 2 MVR 44 5 2 3 Static Multicast Filtering 45 5 3 Port Setting 45 5 3 1 Port Control 46 5 3 2 Port Status 46 5 3 3 Port Alias 47 5 3 4 Rate Limit 47 5 3 5 Port Trunk 48 5 3 6 Loop Guard 49 5 3 7 VLAN 49 5 4 Traffic Prioritization 52 5 4 1 QoS Policy 52 5 4 2 Port base priority 54 5 4 3 COS 802 1p 54 5 4 4 TOS DSCP 55 5 5 DH...

Page 5: ...6 2 SNMP Trap 60 5 6 3 SNMPV3 61 5 6 4 Security 63 5 6 5 IP Guard 68 5 6 6 Warning 70 5 7 Monitor and Diag 73 5 7 1 System Event Log 73 5 7 2 MAC Address Table 74 5 7 3 Ping 80 5 7 4 Save Configuration 81 5 7 5 Factory Default 81 5 7 6 System Reboot 81 Command Line Interface Management 82 ...

Page 6: ...g a wide operating temperature from 40o C to 70 o C the switch can meet the demanding requirements of power substations and rolling stock applications 1 2 Software Features Supports O Ring recovery time 10ms over 250 units of connection and MSTP RSTP STP for Ethernet redundancy Supports Open Ring to interoperate with other vendors ring technology in open architecture Supports O Chain to allow mult...

Page 7: ...ernet ports with combo port 3 x 100 1000Base X SFP ports with combo port 1 x Console Port Redundant DC power inputs IEC 61850 3 and IEEE 1613 compliance Din rail and wall mounting available Operating Temperature 40 to 85o C Storage Temperature 40 to 85o C Operating Humidity 5 to 95 non condensing Casing IP 30 Dimensions 96 4 W x 145 5 D x 154 H mm ...

Page 8: ... 45 100 1000Base X SFP ports Console port 1 x console port Reset button 1 x reset button Press the button for 3 seconds to reset and 5 seconds to return to factory default 1 10 100 1000Base T X or 100 1000Base X SFP with combo ports 2 LNK ACT LED for Gigabit SFP ports 3 LNK ACT LED for Ethernet LAN ports 4 Ethernet LAN ports 5 100Mbps speed LED for LAN ports 6 Power LED 7 Power 1 LED 8 Power 2 LED...

Page 9: ...CT Green On Ethernet links connected Blinking Transmitting data Speed Amber On Port work on 100Mbps transmission Off Port work on 10 1000Mbps transmission SFP Combo ports LNK ACT Green On Ethernet links connected Blinking Transmitting data 2 2 Rear Panel On the rear panel of the switch sit three sets of screw holes The two sets placed in triangular patterns on both ends of the rear panel are used ...

Page 10: ...it to allow you to fasten the switch to a DIN rail in any environments DIN rail Kit Measurement Installing the switch on the DIN rail is easy First screw the Din rail kit onto the back of the switch right in the middle of the back panel Then slide the switch onto a DIN rail from the Din rail kit and make sure the switch clicks into the rail firmly ...

Page 11: ... switch can be fixed to the wall via a wall mount panel which can be found in the package Wall Mount Kit Measurement To mount the switch onto the wall follow the steps 1 Screw the two pieces of wall mount kits onto both ends of the rear panel of the switch A total of six screws are required as shown below ...

Page 12: ...ddle of the plate and fasten the screw to the wall with a screwdriver 4 If the screw goes through the cross shaped aperture slide the switch down before tightening the screw Note Instead of screwing the screws in all the way leave about 2 mm to allow room for sliding the wall mount panel between the wall and the screws 3 3 Wiring WARNING Do not disconnect modules or wires unless power has been swi...

Page 13: ...s from pulling loose use a small flat blade screwdriver to tighten the wire clamp screws on the front of the terminal block connector ATTENTION 1 Be sure to disconnect the power cord before installing and or wiring your switches 2 Calculate the maximum possible current in each power wire and common wire Observe all electrical codes dictating the maximum current allowable for each wire size 3 If th...

Page 14: ...specifications Cable Types and Specifications Cable Type Max Length Connector 10BASE T Cat 3 4 5 100 ohm UTP 100 m 328 ft RJ 45 100BASE TX Cat 5 100 ohm UTP UTP 100 m 328 ft RJ 45 1000BASE TX Cat 5 Cat 5e 100 ohm UTP UTP 100 m 328ft RJ 45 With 10 100Base T X cables pins 1 and 2 are used for transmitting data and pins 3 and 6 are used for receiving data 10 100 Base T X RJ 45 Pin Assignments Pin Num...

Page 15: ...it 7 Not used Not used 8 Not used Not used 1000Base T X MDI MDI X Pin Assignments Pin Number MDI port MDI X port 1 BI_DA BI_DB 2 BI_DA BI_DB 3 BI_DB BI_DA 4 BI_DC BI_DD 5 BI_DC BI_DD 6 BI_DB BI_DA 7 BI_DD BI_DC 8 BI_DD BI_DC Note and signs represent the polarity of the wires that make up each wire pair RS 232 console port wiring The IES P3073GC series can be managed via console ports using a RS 23...

Page 16: ...bit Ethernet ports allowing you to connect to fiber networks for longer transmission distances You can choose appropriate SFP transceivers based on your needs as they are hot swappable SFP transceivers are available in multi or single mode with LC connectors Please remember that the TX port of Switch A should be connected to the RX port of Switch B 3 4 3 O Ring O Chain O Ring You can connect three...

Page 17: ...nnect the rings you can form them into a couping ring All you need to do is select two switches from each ring to be connected for example switch A and B from Ring 1 and switch C and D from ring 2 Decide which port on each switch to be used as the coupling port and then link them together for example port 1 of switch A to port 2 of switch C and port 1 of switch B to port 2 of switch D Then enable ...

Page 18: ...ch A B from the ring for connecting to the switches in the RSTP network core switches The connection of one of the switches Switch A or B will act as the primary path while the other will act as the backup path that is activated when the primary path connection fails O Chain When connecting multiple O Rings to meet your expansion demand you can create an O Chain topology through the following step...

Page 19: ...connect them to the switches in the ring Switch C D 2 In correspondence to the port connected to the ring configure an edge port for both of the connected switches in the chain by checking the box in the management page see 4 1 2 Configurations 3 Once the setting is completed one of the connections will act as the main path and the ohter as the back up path ...

Page 20: ...y time of less than 30 milliseconds in full duplex Gigabit operation or 10 milliseconds in full duplex Fast Ethernet operation and up to 250 nodes The ring protocols identify one switch as the master of the network and then automatically block packets from traveling through any of the network s redundant loops In the event that one branch of the ring gets disconnected from the rest of the network ...

Page 21: ...an divide a big ring into two smaller rings to avoid network topology changes affecting all switches It is a good method for connecting two rings Couple Port Ports for connecting multiple rings A coupling ring needs four switches to build an active and a backup link Links formed by the coupling ports will run in active backup mode Enable Dual Homing Check to enable Dual Homing When Dual Homing is ...

Page 22: ...ility with other vendors products With this technology you can add any ORing switches to the network based on other ring technologies 4 2 2 Configurations Label Description Enable Check to enable Open Ring topology Vender Choose the venders that you want to join in their rings 1 st Ring Port The first port to connect to the ring 2nd Ring Port The second port to connect to the ring ...

Page 23: ...ks enables the network to recover in less than 30 milliseconds in full duplex Gigabit operation or 10 milliseconds in full duplex Fast Ethernet operation for up to 250 switches if at any time a segment of the chain fails O Chain allows multiple redundant rings of different redundancy protocols to join and function together as a large and the most robust network topologies It can create multiple re...

Page 24: ...rts The ports with a smaller switch MAC address will serve as the backup link and RM LED will light up 4 4 MRP 4 4 1 Introduction MRP Media Redundancy Protocol is an industry standard for high availability Ethernet networks MRP allowing Ethernet switches in ring configuration to recover from failure rapidly to ensure seamless data transmission A MRP ring IEC 62439 can support up to 50 devices and ...

Page 25: ...re always in Full mode 4 5 STP RSTP MSTP 4 5 1 STP RSTP STP Spanning Tree Protocol and its advanced versions RSTP Rapid Spanning Tree Protocol and MSTP Multiple Spanning Tree Protocol are designed to prevent network loops and provide network redundancy Network loops occur frequently in large networks as when two or more paths run to the same destination broadcast packets may get in to an infinite ...

Page 26: ...twork Edge Port Only the edge device connected to RSTP device needs to specify edge port The user must specify the edge port according to topology of network RSTP Bridge Setting Label Description RSTP mode You must enable or disable RSTP function before configuring the related parameters Priority 0 61440 A value used to identify the root bridge The bridge with the lowest value has the highest prio...

Page 27: ... time interval a switch sends out the BPDU packet to check RSTP current status The time is measured in seconds and the valid value is between 1 through 10 Forwarding Delay Time 4 30 The time of a port waits before changing from RSTP learning and listening states to forwarding state The valid value is between 4 through 30 Apply Click to apply the configurations NOTE the calculation of the MAX Age H...

Page 28: ...flag indicating whether the port is connected directly to edge devices or not no bridges attached Transiting to the forwarding state is faster for edge ports operEdge set to true than other ports STP Neighbor The port uses mathematical calculations according to STP True means not included in mathematical calculations and False means contained in mathematical calculations according to STP State Det...

Page 29: ...h is assigned to an MST region Hence each MST region consists of one or more MSTP switches with the same VLANs at least one MST instance and the same MST region name Therefore switches can use different paths in the network to effectively balance loads Bridge Settings This page allows you to examine and change the configurations of current MSTI ports A MSTI port is a virtual port which is instanti...

Page 30: ...ion of the MSTI configuration named above This must be an integer between 0 and 65535 Priority 0 61440 A value used to identify the root bridge The bridge with the lowest value has the highest priority and is selected as the root If the value changes you must reboot the switch The value must be a multiple of 4096 according to the protocol standard rule Max Age Time 6 40 The number of seconds a bri...

Page 31: ...00000000 The path cost incurred by the port The path cost is used when establishing an active topology for the network Lower path cost ports are chosen as forwarding ports in favor of higher path cost ports The range of valid values is 1 to 200000000 Admin P2P Configures whether the port connects to a point to point LAN rather than a shared medium This can be configured automatically or set to tru...

Page 32: ...sables the instance VLANs The VLAN which is mapped to the MSTI A VLAN can only be mapped to one MSTI An unused MSTI will be left empty ex without any mapped VLANs Priority 0 61440 A value used to identify the root bridge The bridge with the lowest value has the highest priority and is selected as the root If the value changes you must reboot the switch The value must be a multiple of 4096 accordin...

Page 33: ...r path cost ports are chosen as forwarding ports in favor of higher path cost ports The range of valid values is 1 to 200000000 Apply Click to apply the configurations 4 6 Fast Recovery Fast recovery mode can be set to connect multiple ports to one or more switches thereby providing redundant links Fast recovery mode supports 10 priorities Only the first priority will be the active port and the ot...

Page 34: ...user friendly viewing screen Note By default IE5 0 or later version do not allow Java applets to open sockets You need to modify the browser setting separately in order to enable Java applets for network ports Management via Web Browser Follow the steps below to manage your switch via a Web browser System Login 1 Launch an Internet Explorer 2 Type http and the IP address of the switch Press Enter ...

Page 35: ...e switch as below On the right hand side of the management interface shows links to various settings Clicking on the links will bring you to individual configuration pages 5 1 Basic Settings The Basic Settings page allows you to configure the basic functions of the switch 5 1 1 System Information This page shows the general information of the switch ...

Page 36: ...he allowed string length is 0 to 255 and only ASCII characters from 32 to 126 are allowed System Contact The textual identification of the contact person for this managed node together with information on how to contact this person The allowed string length is 0 to 255 and only ASCII characters from 32 to 126 are allowed System Timezone offset minutes Provides the time zone offset from UTC GMT The...

Page 37: ... client If DHCP fails or the configured IP address is zero DHCP will retry If DHCP retry fails DHCP will stop trying and the configured IP settings will be used IP Address Assigns the IP address of the network in use If DHCP client function is enabled you do not need to assign the IP address The network DHCP server will assign an IP address to the switch and it will be displayed in this column The...

Page 38: ...y configuration or automatically by a SNTP server System Date Specifies the year month and day of the system clock YYYY MM DD Year 2006 2015 Month Jan Dec Day 1 31 28 System Time Specify the hour minute and second of the system clock hh mm ss Hour 0 24 Minute 0 59 Second 0 59 SNTP SNTP Simple Network Time Protocol is a protocol able to synchronize the time on your system to the clock on the Intern...

Page 39: ... vary each year Daylight Saving Offset Configures the offset time Apply Click to apply the changes The following table lists different location time zones for your reference Local Time Zone Conversion from UTC Time at 12 00 UTC November Time Zone 1 hour 11 am Oscar Time Zone 2 hours 10 am ADT Atlantic Daylight 3 hours 9 am AST Atlantic Standard EDT Eastern Daylight 4 hours 8 am EST Eastern Standar...

Page 40: ...aland 12 hours Midnight PTP Client The Precision Time Protocol PTP is a time transfer protocol defined in the IEEE 1588 2002 standard that allows precise synchronization of networks e g Ethernet Accuracy within the nanosecond range can be achieved with this protocol when using hardware generated timestamps Label Description PTP Client Enables or disables PTP Client 5 1 5 LLDP LLDP Link Layer Disco...

Page 41: ...hows neighbor device info including system name MAC address and IP address 5 1 6 Modbus TCP Modbus TCP uses TCP IP and Ethernet to carry the data of the Modbus message structure between compatible devices The protocol is commonly used in SCADA systems for communications between a human machine interface HMI and programmable logic controllers This page enables you to enable and disable Modbus TCP s...

Page 42: ...ch it will upgrade firmware automatically Before updating make sure you have your TFTP server ready and the firmware image and configuration files are on the TFTP server 5 1 7 Backup Restore You can save current values from the switch to a TFTP server and restore the switch to the settings by going to the TFTP restore configuration page The following page allows you to save the existing configurat...

Page 43: ...lick to back up the configurations To Local PC You can save the configuration file to your PC instead of a TFTP server Restore Click to restore the configurations Form Local PC You can use the file stored on a local PC instead of from the TFTP server Click Browse to locate the file you want to use for update and then click Restore 5 1 8 Firmware Update This page allows you to update the firmware o...

Page 44: ...The switch uses what IGMP snooping learns to forward multicast traffic only to interfaces that are connected to interested receivers This conserves bandwidth by allowing the switch to send multicast traffic to only those interfaces that are connected to hosts that want to receive the traffic instead of flooding the traffic to all interfaces in the VLAN This page allows you to set up IGMP snooping ...

Page 45: ...e not part of a multicast VLAN to receive multicast streams from the multicast VLAN As a result the multicast VLAN can be shared across the network and there is no need to send duplicate multicast streams to each requesting VLAN in the network Label Description MVR Mode Enables or disables MVR MVR VLAN The number of MVR VLANs Type Indicates the MVR type of the port Inactive means the port is not p...

Page 46: ...affic to the ports connected to registered end devices The function allows you to control the multicast traffic precisely Label Description Multicast IP Address Assigns a multicast group IP address in the range of 224 0 0 0 239 255 255 255 Member Ports Check the box next to the port number to include them as member ports in the specific multicast group Add Click to add the ports to the IP multicas...

Page 47: ...l Supports symmetric and asymmetric modes to avoid packet loss when congestion occurs Security Enabling port security will disable MAC address learning in this port Thus only the frames with MAC addresses in the port security list will be forwarded otherwise will be discarded Auto Detect 100 1000 Automatically detects SFP port speed 100M 1000M Apply Click to apply the configurations 5 3 2 Port Sta...

Page 48: ...ddresses here 5 3 4 Rate Limit This page allows you to define the rate limits applied to a port including incoming and outgoing traffic Label Description Ingress Limit Frame Type Valid values include All Broadcast only Broadcast Multicast and Broadcast Multicast Flooded Unicast Ingress The transmission rate for incoming traffic Egress The transmission rate for outgoing traffic Apply Click to activ...

Page 49: ...n a single physical link between the devices is insufficient to handle the traffic load This page allows you to configure the aggregation hash mode and the aggregation group Label Description Group ID Indicates the ID of each aggregation group None means no aggregation Only one group ID is valid per port Type The switch supports two types of link aggregation static and 802 3ad LACP Static trunks a...

Page 50: ...the total number of group member ports Apply Click to activate the configurations Label Description Group ID Indicates the ID of each aggregation group None means no aggregation Only one group ID is valid per port Trunk Member Lists members of a specific trunk group Type Indicates the type of the port trunk 5 3 6 Loop Guard This feature prevents loop attack When receiving loop packets the port wil...

Page 51: ... that provides IEEE 802 1Q compliant VLAN pruning and dynamic VLAN creation on 802 1Q trunk ports With GVRP the switch can exchange VLAN configuration information with other GVRP switches prune unnecessary broadcast and unknown unicast traffic and dynamically create and manage VLANs on switches connected through 802 1Q trunk ports Management VLAN ID The VLAN ID for the entry Link type Three link t...

Page 52: ...e VLAN tag in an original VLAN frame Untagged VID Set the port default VLAN ID for untagged devices that connect to the port The range is 1 to 4094 Tagged VIDs Set the tagged VIDs to carry different VLAN frames to other switch Apply Click to set the configurations VLAN Setting Port based Label Description VLAN Operation Mode Available options include Disable Port Base and 802 1Q Add Click to start...

Page 53: ...on With traffic prioritization schemes the switch can transmit data based on its importance thereby ensuring mission critical applications such as VoIP and video teleconferencing have sufficient bandwidth for transmission when the network is congested QoS Quality of Service is a method to achieve efficient bandwidth utilization between devices by prioritizing frames according to individual require...

Page 54: ...mined by COS and TOS but COS first TOS first the output priority is determined by COS and TOS but TOS first QOS policy Using the 8 4 2 1 weight fair queue scheme the output queues will use an 8 4 2 1 ratio to transmit packets from the highest to lowest queue For example 8 high queue packets 4 middle queue packets 2 low queue packets and the one lowest queue packets are transmitted in one turn Use ...

Page 55: ...OS 802 1p COS Class of Service also known as 802 1p is a parameter for differentiating the types of payloads contained in the packet to be transmitted CoS operates only on 802 1Q VLAN Ethernet at Layer 2 while other QoS mechanisms operate at the Layer 3or use a local QoS tagging system that does not modify the actual packet COS supports up to 7 priorities and 4 priority queues High Middle Low and ...

Page 56: ...P Differentiated Services Code Point The output priority of a packet can be determined by this field and the supported priority value ranges from 0 to 63 DSCP supports four priority queues High Middle Low and Lowest Label Description Priority Assigns a port to a priority queue Four priority queues are available High Middle Low and Lowest Apply Click to apply the configurations Help Shows help file...

Page 57: ... The lowest IP address in the range is considered the start IP address For example if the range is from 192 168 1 100 to 192 168 1 200 192 168 1 100 will be the start IP address High IP Address The end of the dynamic IP address range The highest IP address in the range is considered the end IP address For example if the range is from 192 168 1 100 to 192 168 1 200 192 168 1 200 will be the end IP ...

Page 58: ...is connected to the port and requests for dynamic IP assigning the switch will assign the IP address that has previously been assigned to the connected device 5 5 4 DHCP Relay Agent The DHCP relay agent relays DHCP messages between clients and servers for DHCP on different subnet domain DHCP relay agent use Option 82 to insert specific information into a request that is being forwarded to a DHCP s...

Page 59: ...rver There are 4 types supported IP MAC Client ID and Other DHCP Option 82 Circuit ID Table Option 82 Circuit ID encodes an agent local identifier of the circuit from which a DHCP client to server packet was received It is intended for use by agents in relaying DHCP responses back to the proper circuit Apply Click Apply to set the configurations 5 6 SNMP SNMP Simple Network Management Protocol is ...

Page 60: ... Three SNMP versions are supported including SNMP V1 SNMP V2c and SNMP V3 SNMP V1 SNMP V2c agents use a community string to authenticate the SNMP management station and SNMP agent SNMP V3 requires MD5 or DES authentication which will encrypt data for higher data security Community String The default community string that provides monitoring or read capability is often public The default management...

Page 61: ...nd inform messages Apply Click to apply the configurations 5 6 2 SNMP Trap SNMP traps are event reports sent to a list of managers configured to receive event notifications when an error occurs SNMP traps provide the value of one or more instances of management information A trap manager is a management station that receives traps If no trap manager is defined no traps will be issued You can creat...

Page 62: ...cluding their community strings and trap versions Remove Click to remove a trap server from the profile 5 6 3 SNMPV3 Unlike SNMP v1 and v2 which uses community strings for authentication SNMP v3 uses username password authentication along with an encryption key Therefore SNMPv3 provides greater security features for authentication privacy and access control The switch supports SNMP v3 which can be...

Page 63: ...section In Current User Profiles select an entry you want to remove and click Remove In New User Profiles specify the following information of a new entry User ID the username of the user Authentication Password the authentication password for the user Privacy Password the private password for the user Click Add after inputting the information Group Table You can manage existing and add new group ...

Page 64: ...write view name provided for the v3 user Notify View Name the notify view name provided for the v3 user Click Add after inputting the information MIBview Table You can configure MIB views for users and groups by entering the OID number of the MIB view A MIB view consists of a family of view subtrees which may be individually included in or occasionally excluded from the view Each view subtree is e...

Page 65: ...B Management Check to enable WEB management Enable Telnet Management Check to enable Telnet management Enable SNMP Management Check to enable MPSN management Apply Click to apply the configurations Help Shows help file Static MAC Forwarding You can use static MAC addresses to provide port security for the switch With this method only the frames with the MAC addresses in this list will be forwarded...

Page 66: ...ver receive any frame Label Description MAC Address Enter a MAC address for a specific port Port NO Select a switch port Add Add the MAC address and port information Delete Delete an entry Help Shows help file 802 1x The IEEE 802 1X standard defines a port based access control procedure that prevents unauthorized access to a network by requiring users to first submit credentials for authentication...

Page 67: ...L or RADIUS and forwards it When authentication is complete the RADIUS server sends a special packet containing a success or failure indication Besides forwarding the result to the supplicant the switch uses it to open up or block traffic on the switch port connected to the supplicant Note in an environment where two backend servers are enabled the server timeout is configured to X seconds using t...

Page 68: ...al between authentication failure and the start of a new authentication attempt Tx Period The time that the switch waits for response to an EAP request identity frame from the client before resending the request Supplicant Timeout The period of time the switch waits for a supplicant respond to an EAP request Server Timeout The period of time the switch waits for a Radius server respond to an authe...

Page 69: ...ed by the outcome of the 802 1x authentication Disable the port will not participate in the 802 1x protocol Apply Click to apply the configurations Help Shows help file 5 6 5 IP Guard Port Setting This page allows you to configure IP guard functions for each port an intelligent and user friendly IP security method It protects the network from unknown IP IPs not in the allowed list attack Unauthori...

Page 70: ...y creating an allow list traffic from the IP addresses in the list will be allowed Label Description IP IP address of the allowed entry MAC MAC address of the allowed entry Port Port number of the allowed entry Status The option allows you to block suspicious IP traffic Active allows the IP traffic Suspend blocks the IP traffic Delete Check to delete an entry Super IP List A super IP list enables ...

Page 71: ... entry is logged Add to Allow List Check to add the entry to the allow list 5 6 6 Warning The switch supports several alerting methods including SYSLOG e mail and fault relay These methods enable you to monitor switch status remotely When an event occurs the system will send an alert to your appointed servers SYSLOG Setting SYSLOG is a protocol that allows a device to send event notification messa...

Page 72: ...cription Syslog Mode Disable disables SYSLOG Client Only logs in to a local system Server Only logs in to a remote SYSLOG server Both logs in to a local and remote server SYSLOG Server IP Address The IP address of the remote SYSLOG server Apply Click to apply the configurations Help Shows help file Fault Relay When any selected fault event happens the Fault LED on the switch panel will light up an...

Page 73: ...MTP server to receive the notification e mail Mail Subject Subject of the mail Sender The email account to send the alert Authentication Username the authentication username Password the authentication password Confirm Password re enter password Recipient E mail Address The recipient s e mail address A mail allows for 6 recipients Apply Click to activate the configurations Help Shows help file Eve...

Page 74: ...O Ring topology change Sends alerts when O Ring topology changes Port Event Sends alerts when the port meets a specified condition Available options include Disable disables alert function Link Up sends alerts when port is connected Link Down sends alerts when port is not connected Link Up Link Down sends alerts when port is connected and disconnected Apply Click to apply the configurations Help S...

Page 75: ...s a table in a network switch that maps MAC addresses to ports The switch uses the table to determine which port the incoming packet should be forwarded to Entries in a MAC address table fall into two types dynamic and static entries Entries in a static MAC table are added or removed manually and cannot age out by themselves Entries in a dynamic MAC tablet will age out after a configured aging tim...

Page 76: ...e address and port on which the packet was received to the MAC table if the address does not exist in the table by examining the source address of each packet received on a port This is called learning It allows the MAC table to expand dynamically If the learning mode for a given port is grayed out it means another module is in control of the mode and thus the user cannot change the configurations...

Page 77: ...Bad Packet The number of bad packets sent by this port RX GOOD Packet The number of good packets received by this port RX Bad Packet The number of bad packets received by this port TX Abort Packet The number of packets aborted by this port Packet Collision The number of times a collision is detected by this port Clear Clears all counters Help Shows help file Port Counter The displayed counters inc...

Page 78: ...half duplex only InBroadcasts The number of good frames received that have a Broadcast destination MAC address InMulticasts The number of good frames received that have a Multicast destination MAC address Octets64 Total frames received and or transmitted with a length of exactly 64 octes including those with errors Octets127 Total frames received and or transmitted with a length of between 65 and ...

Page 79: ... in half duplex only Undersize Total frames received with a length of less than 64 octets but with a valid FCS Fragments Total frames received with a length of more than 64 octets and with an invalid FCS Oversize Total frames received with a length of more than MaxSize octets but with a valid FCS Jabber Total frames received with a length of more than MaxSize octets but with an invalid FCS InMACRc...

Page 80: ...Note that keep all source ports unchecked in order to disable port monitoring Label Description Destination Port The port will receive a copied frame from source port for monitoring purpose Source Port Check to monitor specific ports TX The frames transmitted by a port RX The frames received by a port Apply Click to activate the configurations Clear Clears all checked boxes disable the function He...

Page 81: ...broadcast packets Disable disables the function Time Interval Sets the time interval of counting Increasing Quantity Specify a threahold for the counter When the result of calucation exceeds the value an alert will be issued Event Alarm Specifies alarm type SYSLOG or SMTP 5 7 3 Ping This command sends ICMP echo request packets to another node on the network Using the ping command you can see if an...

Page 82: ... otherwise the changes you make will be lost when the power is off or system is reset Label Description Save Saves all configurations Help Shows help file 5 7 5 Factory Default This function is to force the switch back to the original factory settings You can decide to keep current IP address settings or username password by checking in the boxes 5 7 6 System Reboot You can reset the stack switch ...

Page 83: ... the switch by CLI CLI Management by RS 232 Serial Console 115200 8 none 1 none Before configuring RS 232 serial console connect the RS 232 port of the switch to your PC Com port using a RJ45 to DB9 F cable Follow the steps below to access the console via RS 232 serial cable Step 1 On Windows desktop click on Start Programs Accessories Communications Hyper Terminal Step 2 Input a name for the new ...

Page 84: ...Manual ORing Industrial Networking Corp 83 Step 3 Select a COM port in the drop down list Step 4 A pop up window that indicates COM port properties appears including bits per second data bits parity stop bits and flow control ...

Page 85: ...Step 5 The console login screen will appear Use the keyboard to enter the Username and Password same as the password for Web browsers then press Enter CLI Management by Telnet You can can use TELNETto configure the switch The default values are IP Address 192 168 10 1 ...

Page 86: ...in Password admin Follow the steps below to access console via Telnet Step 1 Telnet to the IP address of the switch from the Run window by inputting commands or from the MS DOS prompt as below Step 2 The Login screen will appear Use the keyboard to enter the Username and Password same as the password for Web browser and then press Enter ...

Page 87: ...disable Setup ip_addr ip_mask ip_router vid Ping ip_addr_string ping_length SNTP ip_addr_string Port port Configuration port_list up down Mode port_list auto 10hdx 10fdx 100hdx 100fdx 1000fdx sfp_auto_ams Flow Control port_list enable disable State port_list enable disable MaxFrame port_list max_frame Power port_list enable disable actiphy dynamic Excessive port_list discard restart Statistics por...

Page 88: ...d untag_all tag_all PortType port_list unaware c port s port s custom port EtypeCustomSport etype Add vid name ports_list Forbidden Add vid name port_list Delete vid name Forbidden Delete vid name Forbidden Lookup vid name name Lookup vid name name combined static nas all Name Add name vid Name Delete name Name Lookup name Status port_list combined static nas mstp all conflicts Private VLAN PVLAN ...

Page 89: ...iguration Method console telnet ssh web none local radius enable disable Security Switch SSH Security switch ssh Configuration Mode enable disable Security Switch HTTPS Security switch ssh Configuration Mode enable disable Security Switch RMON Security switch rmon Statistics Add stats_id data_source Statistics Delete stats_id Statistics Lookup stats_id History Add history_id data_source interval b...

Page 90: ...AS Configuration port_list Mode enable disable State port_list auto authorized unauthorized macbased Reauthentication enable disable ReauthPeriod reauth_period EapolTimeout eapol_timeout Agetime age_time Holdtime hold_time Authenticate port_list now Statistics port_list clear eapol radius Security Network ACL Security Network ACL Configuration port_list Action port_list permit deny rate_limiter po...

Page 91: ..._id Clear Status combined static loop_protect dhcp ptp ipmc conflicts Port State port_list enable disable Security Network DHCP Security Network DHCP Configuration Mode enable disable Server ip_addr Information Mode enable disable Information Policy replace keep drop Statistics clear Security Network AAA Security Network AAA Configuration Timeout timeout Deadtime dead_time RADIUS server_index enab...

Page 92: ...t Configuration port_list Port Mode port_list enable disable Port Edge port_list enable disable Port AutoEdge port_list enable disable Port P2P port_list enable disable auto Port RestrictedRole port_list enable disable Port RestrictedTcn port_list enable disable Port bpduGuard port_list enable disable Port Statistics port_list Port Mcheck port_list Msti Port Configuration msti port_list Msti Port ...

Page 93: ...st PoE PoE Configuration port_list Mode port_list disabled poe poe Priority port_list low high critical Mgmt_mode class_con class_res al_con al_res lldp_res lldp_con Maximum_Power port_list port_power Status Primary_Supply supply_power QoS QoS DSCP Map dscp_list class dpl DSCP Translation dscp_list trans_dscp DSCP Trust dscp_list enable disable DSCP Classification Mode dscp_list enable disable DSC...

Page 94: ...p_v6 dscp sport dport class dp classified_dscp QCL Delete qce_id QCL Lookup qce_id QCL Status combined static conflicts QCL Refresh Mirror Mirror Configuration port_list Port port disable Mode port_list enable disable rx tx Dot1x Dot1x Configuration port_list Mode enable disable State port_list macbased auto authorized unauthorized Authenticate port_list now Reauthentication enable disable Period ...

Page 95: ...Configuration port_list Action port_list permit deny rate_limiter port_copy logging shutdown Policy port_list policy Rate rate_limiter_list packet_rate Add ace_id ace_id_next switch port port policy policy vid tag_prio dmac_type etype etype smac dmac arp sip dip smac arp_opcode arp_flags ip sip dip protocol ip_flags icmp sip dip icmp_type icmp_code ip_flags udp sip dip sport dport ip_flags tcp sip...

Page 96: ...ies Trap Probe Security Engine ID enable disable Trap Security Engine ID engineid Trap Security Name security_name Engine ID engineid Community Add community ip_addr ip_mask Community Delete index Community Lookup index User Add engineid user_name MD5 SHA auth_password DES priv_password User Delete index User Changekey engineid user_name auth_password priv_password User Lookup index Group Add secu...

Page 97: ...aultDS clockinst priority1 priority2 domain CurrentDS clockinst ParentDS clockinst Timingproperties clockinst utcoffset valid leap59 leap61 timetrac freqtrac ptptimescale timesource PTP PortDataSet clockinst port_list announceintv announceto syncintv delaymech minpdelayreqintv delayasymmetry ingressLatency LocalClock clockinst update show ratio clockratio Filter clockinst def_delay_filt period dis...

Page 98: ...own time Port Configuration port_list Port Mode port_list enable disable Port Action port_list shutdown shut_log log Port Transmit port_list enable disable Status port_list IPMC IPMC Configuration igmp Mode igmp enable disable Flooding igmp enable disable VLAN Add igmp vid VLAN Delete igmp vid State igmp vid enable disable Querier igmp vid enable disable Fastleave igmp port_list enable disable Rou...

Page 99: ...s enable disable SMTP SnmpAuthenticationFailure enable disable SMTP RingTopologyChange enable disable SMTP Port port_list disable linkup linkdown both DHCPServer DHCPServer Mode enable disable Setup ip_start ip_end ip_mask ip_router ip_dns ip_tftp lease bootfile Ring Ring Mode enable disable Master enable disable 1stRingPort port 2ndRingPort port Couple Mode enable disable Couple Port port Dualhom...

Page 100: ...nable disable Port DDOS Sensibility port_list low normal medium high Port DDOS Packet port_list rx_total rx_unicast rx_multicast rx_broadcast tcp udp Port DDOS Low port_list socket_number Port DDOS High port_list socket_number Port DDOS Filter port_list source destination Port DDOS Action port_list do_nothing block_1_min block_10_mins block shutdown only_ log reboot_device Port DDOS Status port_li...

Page 101: ...e_location Port Description port_list device_description MRP MRP Configuration Mode enable disable Manager enable disable React enable disable 1stRingPort mrp_port 2ndRingPort mrp_port Parameter MRP_TOPchgT value Parameter MRP_TOPNRmax value Parameter MRP_TSTshortT value Parameter MRP_TSTdefaultT value Parameter MRP_TSTNRmax value Parameter MRP_LNKdownT value Parameter MRP_LNKupT value Parameter M...

Page 102: ...tures Enable disable ports MAC based port security Port based network access control 802 1x VLAN 802 1Q to segregate and secure network traffic Supports Q in Q VLAN for performance security to expand the VLAN space Radius centralized password management SNMP v1 v2c v3 encrypted authentication and access security Software Features STP RSTP MSTP IEEE 802 1D w s Redundant Ring O Ring with recovery ti...

Page 103: ... 373VDC on dual 3 pin terminal block Power Consumption Typ 12 Watts 12 Watts Overload Current Protection Present Reverse Polarity Protection Present on terminal block Physical Characteristic Enclosure IP 30 Dimension W x D x H 96 4 W x 145 5 D x 154 H mm 3 8 W x 5 73 D x 6 06 H inch 96 4 W x 145 5 D x 154 H mm 3 8 W x 5 73 D x 6 06 H inch Weight g 1415 g 1935 g Environmental Storage Temperature 40...

Reviews: