background image

 

 

R

R

G

G

S

S

-

-

P

P

R

R

9

9

0

0

0

0

0

0

 

 

I

I

n

n

d

d

u

u

s

s

t

t

r

r

i

i

a

a

l

l

 

 

R

R

a

a

c

c

k

k

-

-

M

M

o

o

u

u

n

n

t

t

 

 

E

E

t

t

h

h

e

e

r

r

n

n

e

e

t

t

 

 

S

S

w

w

i

i

t

t

c

c

h

h

 

 

 

 

U

U

s

s

e

e

r

r

 

 

M

M

a

a

n

n

u

u

a

a

l

l

 

 

V

V

e

e

r

r

s

s

i

i

o

o

n

n

 

 

1

1

.

.

0

0

 

 

O

O

c

c

t

t

o

o

b

b

e

e

r

r

,

,

 

 

2

2

0

0

1

1

3

3

 

 

w

w

w

w

w

w

.

.

o

o

r

r

i

i

n

n

g

g

-

-

n

n

e

e

t

t

w

w

o

o

r

r

k

k

i

i

n

n

g

g

.

.

c

c

o

o

m

m

 

 

Summary of Contents for RGS-PR9000

Page 1: ...ri ia al l R Ra ac ck k M Mo ou un nt t E Et th he er rn ne et t S Sw wi it tc ch h U Us se er r M Ma an nu ua al l V Ve er rs si io on n 1 1 0 0 O Oc ct to ob be er r 2 20 01 13 3 w ww ww w o or ri...

Page 2: ...penses apportioned by ORing and the distributor This warranty does not cover product modifications or repairs done by persons other than ORing approved personnel and this warranty does not apply to OR...

Page 3: ...stallation 11 3 1 Rack mount Installation 11 3 2 Module Installation 12 3 2 1 RJ 45 Module 12 3 2 2 SFP Module 12 3 2 3 10G SFP Module 13 3 2 4 Power Module 14 3 3 Wiring 14 3 3 1 Grounding 15 3 3 2 F...

Page 4: ...1 7 SSH 42 5 1 8 LLDP 42 5 1 9 Modbus TCP 46 5 1 10 Backup Restore Configurations 46 5 1 11 Firmware Update 46 5 2 DHCP Server 47 5 2 1 Basic Settings 47 5 2 2 Dynamic Client List 47 5 2 3 Client List...

Page 5: ...QoS 87 5 6 11 DSCP Translation 88 5 6 12 DSCP Classification 88 5 6 13 QoS Control List 89 5 6 14 QoS Counters 91 5 6 15 QCL Status 92 5 7 Multicast 93 5 7 1 IGMP Snooping 93 5 7 2 VLAN Configuration...

Page 6: ...g Corp 5 5 10 4 System Log Information 138 5 10 5 Cable Diagnostics 139 5 10 6 SFP Monitor 140 5 10 7 Ping 141 5 11 Synchronization 142 5 12 Troubleshooting 144 5 12 1 Factory Defaults 144 5 12 2 Syst...

Page 7: ...en operating temperature is 20 o C 60o C RGS PR9000 can be managed centrally and conveniently via Open Vision web browsers Telnet and console CLI configuration making it one of the most reliable choic...

Page 8: ...es Jumbo Frame Supports multiple notifications for incidents Supports management via Web based interfaces Telnet Console CLI and Windows utility Open Vision Support LLDP Protocol 1 3 Hardware Specific...

Page 9: ...dules Description SWM 02GP 2 port 10G SFP module with 2x1000 10GBase F X SFP socket 10Gigabit SWM 04GP 4 port 10G SFP module with 4x1000 10GBase F X SFP ports SWM 22GTP 4 port 10Gigabit module with 2x...

Page 10: ...atus LEDs LINK SPD FDX port number 3 Console port 4 Buttons Rest LED Mode Press Reset for 3 seconds to reset and 5 seconds to return to factory default To change port LED mode press the Mode button 5...

Page 11: ...Accessed remotely LNK Green On Port link up SPD Green Blinking Data transmitted FDX Amber On Port works under full duplex 2 2 Rear Panel On the rear panel of the switch sit two panel module slots and...

Page 12: ...nments Follow the following steps to install the switch to a rack Step 1 Install left and right front mounting brackets to the switch using 4 M3 screws on each side provided with switch Step 2 With fr...

Page 13: ...llation Step 1 Switch off the power of the switch Step 2 Insert the modules in Slot 1 2 and 3 respectively Step 3 Switch on the power of the switch 3 2 2 SFP Module Each RGS PR9000 series switch suppo...

Page 14: ...the 10 Gigabit Ethernet port of the switch and links the switch with a fiber optic network Follow the steps bellows for installation Step 1 Switch off the power of the switch Step 2 Insert the modules...

Page 15: ...d common wire Observe all electrical codes dictating the maximum current allowable for each wire size 3 If the current goes above the maximum ratings the wiring could overheat causing serious damage t...

Page 16: ...00 series support dual redundant power supplies Power Supply 1 PWR1 and Power Supply 2 PWR2 The connections for PWR1 PWR2 and the RELAY are located on the terminal block Step 1 Insert the negative pos...

Page 17: ...les pins 1 and 2 are used for transmitting data and pins 3 and 6 are used for receiving data 10 100 Base T RJ 45 Pin Assignments Pin Number Assignment 1 TD 2 TD 3 RD 4 Not used 5 Not used 6 RD 7 Not u...

Page 18: ...BI_DD 6 BI_DB BI_DA 7 BI_DD BI_DC 8 BI_DD BI_DC Note and signs represent the polarity of the wires that make up each wire pair RS 232 port wiring RGS PR9000 can be managed via console ports using a R...

Page 19: ...ch B Switch A Switch B 3 4 3 O Ring O Chain O Ring You can connect three or more switches to form a ring topology to gain network redundancy capabilities through the following steps 1 Connect each swi...

Page 20: ...y checking the checkbox on the management page and select the coupling ring in correspondance to the connected port For more inforamtion on port setting please refer to 4 1 2 Configurations Once the s...

Page 21: ...nect to the O Ring and connect them to the switches in the ring Switch C D 2 In correspondence to the port connected to the ring configure an edge port for both of the connected switches in the chain...

Page 22: ...ry redundant ring technology with recovery time of less than 10 milliseconds and up to 250 nodes The ring protocols identify one switch as the master of the network and then automatically block packet...

Page 23: ...can divide a big ring into two smaller rings to avoid network topology changes affecting all switches It is a good method for connecting two rings Coupling Port Ports for connecting multiple rings A c...

Page 24: ...gned for distributed and complex industrial networks enables the network to recover in less than 10ms for up to 250 switches if at any time a segment of the chain fails O Chain allows multiple redunda...

Page 25: ...in ring configuration to recover from failure rapidly to ensure seamless data transmission A MRP ring IEC 62439 can support up to 50 devices and will enable a back up link in 80ms adjustable to max 20...

Page 26: ...activated Compared to STP which recovers a link in 30 to 50 seconds RSTP can shorten the time to 5 to 6 seconds STP Bridge Status This page shows the status for all STP bridge instance Label Descript...

Page 27: ...STP port role of the CIST port The values include AlternatePort BackupPort RootPort and DesignatedPort State The current STP port state of the CIST port The values include Blocking Learning and Forwar...

Page 28: ...of unknown spanning tree BPDUs received and discarded on the port Discarded Illegal The number of illegal spanning tree BPDUs received and discarded on the port Click to refresh the page immediately C...

Page 29: ...s seconds which are unacceptable in some industrial applications MSTP was developed The technology supports multiple spanning trees within a network by grouping and mapping multiple VLANs into differe...

Page 30: ...by using the 802 1D recommended values Specific allows you to enter a user defined value The path cost is used when establishing an active topology for the network Lower path cost ports are chosen as...

Page 31: ...w as well as the VLAN to MSTI mapping configurations in order to share spanning trees for MSTIs intra region The name should not exceed 32 characters Configuration Revision Revision of the MSTI config...

Page 32: ...you to examine and change the configurations of current STP MSTI bridge instance priority Label Description MSTI The bridge instance CIST is the default instance which is always active Priority Indic...

Page 33: ...for the port Path Cost Configures the path cost incurred by the port Auto will set the path cost according to the physical link speed by using the 802 1D recommended values Specific allows you to ent...

Page 34: ...pology changes to other ports If set it will cause temporary disconnection after changes in an active spanning trees topology as a result of persistent incorrectly learned station location information...

Page 35: ...fferent priorities will be backup ports Label Description Active Activates fast recovery mode port Ports can be set to 12 priorities Only the port with the highest priority will be the active port 1st...

Page 36: ...friendly viewing screen By default IE5 0 or later version do not allow Java applets to open sockets You need to modify the browser setting separately in order to enable Java applets for network ports...

Page 37: ...he information of the switch as below On the right hand side of the management interface shows links to various settings You can click on the links to access the configuration pages of different funct...

Page 38: ...ed string length is 0 to 255 System Description Description of the device System Location The physical location of the node e g telephone closet 3rd floor The allowed string length is 0 to 255 and onl...

Page 39: ...The existing password If this is incorrect you cannot set the new password New Password The new system password The allowed string length is 0 to 31 and only ASCII characters from 32 to 126 are allow...

Page 40: ...the local user database is used for authentication This is only possible if Authentication Method is set to a value other than none or local Click to save changes Click to undo any changes made locall...

Page 41: ...d revert to previously saved values 5 1 5 IPv6 Settings You can configure IPv6 information of the switch on the following page Label Description Auto Configuration Check to enable IPv6 auto configurat...

Page 42: ...c5ff fe03 4dc7 the symbol is a special syntax that can be used as a shorthand way of representing multiple 16 bit groups of contiguous zeros but it can appear only once It can also represent a legall...

Page 43: ...configure the SSH mode in the following page Label Description Mode Indicates the selected SSH mode The modes include Enabled enable SSH Disabled disable SSH Click to save changes Click to undo any ch...

Page 44: ...ze LLDP information received from its neighbors LLDP Neighbor Information This page provides a status overview for all LLDP neighbors The following table contains information for each port on which an...

Page 45: ...tomatic refresh of the page at regular intervals Port Statistics This page provides an overview of all LLDP traffic Two types of counters are shown Global counters will apply settings to the whole swi...

Page 46: ...ry in the table if Chassis ID or Remote Port ID is not included in the table Entries are removed from the table when a given port links down an LLDP shutdown frame is received or when the entry ages o...

Page 47: ...nformation regarding Modbus please visit http www modbus org Label Description Mode Shows the existing status of the Modbus TCP function 5 1 10 Backup Restore Configurations You can save view or load...

Page 48: ...CP settings for the switch You can check the Enabled checkbox to activate the function Once the box is checked you will be able to input information in each column 5 2 2 Dynamic Client List When DHCP...

Page 49: ...relay When DHCP relay is enabled the agent forwards and transfers DHCP messages between the clients and the server when they are not in the same subnet domain to prevent the DHCP broadcast message fr...

Page 50: ...from a DHCP message when transferring to a DHCP client It only works when DHCP relay mode is enabled Disabled disable DHCP relay information Relay Information Policy Indicates the policies to be enfor...

Page 51: ...circuit ID Receive Bad Remote ID The number of packets whose Remote ID do not match the known Remote ID Label Description Transmit to Client The number of packets relayed from the server to the clien...

Page 52: ...link speed options for a given switch port Auto selects the highest speed supported by the link partner Disabled disables switch port configuration configures all ports Flow Control When Auto is selec...

Page 53: ...l power consumption of the board measured in percentage Click to save changes Click to undo any changes made locally and revert to previously saved values Click to refresh the page Any changes made lo...

Page 54: ...adio button to include a port in an aggregation or clear the radio button to remove the port from the aggregation By default no ports belong to any aggregation group Only full duplex ports can join an...

Page 55: ...ust be in the same speed in each group Key The Key value varies with the port ranging from 1 to 65535 Auto will set the key according to the physical link speed 10Mb 1 100Mb 2 1Gb 3 Specific allows yo...

Page 56: ...the aggregation ID Last Changed The time since this aggregation changed Last Channged Indicates which ports belong to the aggregation of the switch stack The format is Switch ID Port Click to refresh...

Page 57: ...artner s system ID MAC address Partner Port The partner s port number associated with the port Click to refresh the page immediately Check to enable an automatic refresh of the page at regular interva...

Page 58: ...tically preventing the loop attack from affecting other network devices Label Description Enable Loop Protection Activate loop protection functions as a whole Transmission Time The interval between ea...

Page 59: ...allows for adding and deleting VLANs as well as adding and deleting port members of each VLAN Label Description Delete Check to delete the entry It will be deleted during the next save VLAN ID The VLA...

Page 60: ...following types Unaware Customer C port Service S port Custom Service S custom port If port type is Unaware all frames are classified to the port VLAN ID and tags are not removed Ingress Filtering En...

Page 61: ...to the port VLAN ID If the classified VLAN ID of a frame transmitted on the port is different from the port VLAN ID a VLAN tag with the classified VLAN ID will be inserted in the frame Port VLAN ID C...

Page 62: ...ransmitted by C port will be set to 0x8100 S port When the port receives untagged frames an untagged frame obtains a tag based on PVID and is forwarded When the port receives tagged frames 1 if the ta...

Page 63: ...RGS PR9000 Series User Manual ORing Industrial Networking Corp 62...

Page 64: ...RGS PR9000 Series User Manual ORing Industrial Networking Corp 63...

Page 65: ...ries User Manual ORing Industrial Networking Corp 64 Examples of VLAN Settings VLAN Access Mode Switch A Port 7 is VLAN Access mode Untagged 20 Port 8 is VLAN Access mode Untagged 10 Below are the swi...

Page 66: ...RGS PR9000 Series User Manual ORing Industrial Networking Corp 65 VLAN 1Q Trunk Mode Switch B Port 1 VLAN 1Qtrunk mode tagged 10 20 Port 2 VLAN 1Qtrunk mode tagged 10 20 Below are the switch settings...

Page 67: ...RGS PR9000 Series User Manual ORing Industrial Networking Corp 66 VLAN Hybrid Mode Port 1 VLAN Hybrid mode untagged 10 Tagged 10 20 Below are the switch settings...

Page 68: ...AN QinQ Mode VLAN QinQ mode is usually adopted when there are unknown VLANs as shown in the figure below VLAN X Unknown VLAN 9000 Series Port 1 VLAN Settings VLAN ID Settings When setting the manageme...

Page 69: ...rce port mask and there are no connections to VLANs This means that VLAN IDs and private VLAN IDs can be identical A port must be a member of both a VLAN and a private VLAN to be able to forward packe...

Page 70: ...he table and the private VLAN can be configured as needed The allowed range for a private VLAN ID is the same as the switch port number range Any values outside this range are not accepted and a warni...

Page 71: ...rs from 33 to 126 are allowed The field only suits to SNMPv1 and SNMPv2c SNMPv3 uses USM for authentication and privacy and the community string will be associated with SNMPv3 community table Write Co...

Page 72: ...rs from 33 to 126 are allowed Trap Destination Address Indicates the SNMP trap destination address Trap Destination IPv6 Address Provides the trap destination IPv6 address of this switch IPv6 address...

Page 73: ...engine ID mode Possible values include Enabled enable security engine ID mode for SNMP trap probe Disabled disable security engine ID mode for SNMP trap probe Trap Security Engine ID Indicates the SNM...

Page 74: ...e The entry index keys are Engine ID and User Name Label Description Delete Check to delete the entry It will be deleted during the next save Engine ID An octet string identifying the engine ID that t...

Page 75: ...ong to Possible authentication protocols include None no authentication protocol MD5 an optional flag to indicate that this user is using MD5 authentication protocol SHA an optional flag to indicate t...

Page 76: ...included v1 Reserved for SNMPv1 v2c Reserved for SNMPv2c usm User based Security Model USM Security Name A string identifying the security name that this entry should belong to The allowed string leng...

Page 77: ...r entry whose view type is Included and its OID subtree oversteps the Excluded entry OID Subtree The OID defining the root of the subtree to add to the named view The allowed OID length is 1 to 128 Th...

Page 78: ...t may potentially SET new values The allowed string length is 1 to 32 and only ASCII characters from 33 to 126 are allowed 5 6 Traffic Prioritization 5 6 1 Storm Control There is a unicast storm rate...

Page 79: ...ually 1002 1 pps 5 6 2 Port Classification QoS is an acronym for Quality of Service It is a method to achieve efficient bandwidth utilization between individual applications or protocols Label Descrip...

Page 80: ...AN aware the frame is tagged and Tag Class is enabled then the frame is classified to a DP level that is mapped from the PCP and DEI value in the tag Otherwise the frame is classified to the default D...

Page 81: ...rking for all switch ports Label Description Port The switch port number to which the following settings will be applied Click on the port number to configure tag remarking Mode Shows the tag remarkin...

Page 82: ...uration parameters available in Ingress 1 Translate 2 Classify 1 Translate Check to enable ingress translation 2 Classify Classification has 4 different values Disable no Ingress DSCP classification D...

Page 83: ...or from the DSCP Translation Egress Remap DP1 table 5 6 5 Port Policing This page allows you to configure Policer settings for all switch ports Label Description Port The port number for which the co...

Page 84: ...icer for individual switch ports Rate Configures the rate of each queue policer The default value is 500 This value is restricted to 100 to 1000000 when the Unit is kbps and is restricted to 1 to 3300...

Page 85: ...this switch port Queue Shaper Enable Check to enable queue shaper for individual switch ports Queue Shaper Rate Configures the rate of each queue shaper The default value is 500 This value is restrict...

Page 86: ...default value is 500 This value is restricted to 100 to 1000000 when the Unit is kbps and it is restricted to 1 to 3300 when the Unit is Mbps Port Shaper Unit Configures the unit of measurement for e...

Page 87: ...duler Mode is set to Weighted Queue Scheduler Percent Shows the weight of the queue in percentage This parameter is only shown if Scheduler Mode is set to Weighted Port Shaper Enable Check to enable p...

Page 88: ...g 800 Mbps Qn Shows disabled or actual port shaper rate e g 800 Mbps 5 6 10 DSCP Based QoS This page allows you to configure basic QoS DSCP based QoS Ingress Classification settings for all switches...

Page 89: ...uration parameters for DSCP Translation 1 Translate DSCP can be translated to any of 0 63 DSCP values 2 Classify check to enable ingress classification Egress Configurable engress parameters include R...

Page 90: ...ssified DSCP value 0 63 5 6 13 QoS Control List This page allows you to edit or insert a single QoS control entry at a time A QCE consists of several parameters These parameters vary with the frame ty...

Page 91: ...4 and 0x86DD IPv6 The default value is Any LLC SSAP Address valid SSAP Source Service Access Point values can range from 0x00 to 0xFF or Any The default value is Any DSAP Address valid DSAP Destinatio...

Page 92: ...iated Code Point can be a specific value a range or Any DSCP values are in the range 0 63 including BE CS1 CS7 EF or AF11 AF43 Sport Source TCP UDP port 0 65535 or Any specific value or port range app...

Page 93: ...ch Label Description User Indicates the QCL user QCE Indicates the index of QCE Frame Type Indicates the type of frame to look for incoming frames Possible frame types are Any the QCE will match all f...

Page 94: ...available In that case it shows conflict status as Yes otherwise it is always No Please note that conflict can be resolved by releasing the hardware resources required to add the QCL entry by pressing...

Page 95: ...ayed will be the one with the lowest VLAN ID found in the VLAN Table The VLAN input field allows the user to select the starting point in the VLAN Table Clicking the button will update the displayed t...

Page 96: ...er of transmitted Querier V1 Reports Receive The number of received V1 reports V2 Reports Receive The number of received V2 reports V3 Reports Receive The number of received V3 reports V2 Leave Receiv...

Page 97: ...5 8 1 Remote Control Security Configurations Remote Control Security allows you to limit the remote access to the management interface When enabled requests of the client which is not in the allow li...

Page 98: ...IP MAC that does not match the entry will not be allowed to access the network Shutdown shuts down the port No Link Alive Check Active Check to enable alive check When enabled switch will ping the dev...

Page 99: ...ready for next move Attacked DDOS attacks occur Device IP Address Specifies IP address of the device Device MAC Address Specifies MAC address of the device Advanced Configurations Alias IP Address Thi...

Page 100: ...Reboot Device Disables or enables PoE power DDoS Prevention This page provides DDOS Prevention configurations The switch can monitor ingress packets and perform actions when DDOS attack occurred on t...

Page 101: ...the same number in the low and high fields Filter If packet type is UDP or TCP please choose the socket direction Destination Source Action Indicates the action to take when DDOS attacks occur Possibl...

Page 102: ...scription Device Type Indicates device types Possible types are no specification IP Camera IP Phone Access Point PC PLC and Network Video Recorder Location Address Indicates location information of th...

Page 103: ...ID Select to apply a policy to the port The allowed values are 1 to 8 The default value is 1 Action Select to Permit to permit or Deny to deny forwarding The default value is Permit Rate Limiter ID Se...

Page 104: ...ion Rate Limiter ID The rate limiter ID for the settings contained in the same row Rate The rate unit is packet per second pps which can be configured as 1 2 4 8 16 32 64 128 256 512 1K 2K 4K 8K 16K 3...

Page 105: ...es can match the ACE Notice the ARP frames will not match the ACE with Ethernet type IPv4 only IPv4 frames can match the ACE Notice the IPv4 frames will not match the ACE with Ethernet type Action Spe...

Page 106: ...specific source MAC address with the ACE choose this value A field for entering an SMAC value appears SMAC Value When Specific is selected for the SMAC filter you can enter a specific source MAC addre...

Page 107: ...The allowed range is 1 to 4095 Frames matching the ACE will use this VLAN ID value Tag Priority Specifies the tag priority for the ACE A frame matching the ACE will use this tag priority The allowed...

Page 108: ...this entry Any any value is allowed don t care IP Fragment Specifies the fragment offset settings for the ACE This includes settings of More Fragments MF bit and Fragment Offset FRAG OFFSET for an IPv...

Page 109: ...estination IP address and destination IP mask in the DIP Address and DIP Mask fields that appear DIP Address When Host or Network is selected for the destination IP filter you can enter a specific DIP...

Page 110: ...d that appears Network target IP filter is set to Network Specify the target IP address and target IP mask in the Target IP Address and Target IP Mask fields that appear Target IP Address When Host or...

Page 111: ...cording to their ARP RARP protocol address space PRO settings 0 ARP RARP frames where the PRO is equal to IP 0x800 must not match this entry 1 ARP RARP frames where the PRO is equal to IP 0x800 must m...

Page 112: ...is don t care Specific if you want to filter a specific TCP UDP source filter with the ACE you can enter a specific TCP UDP source value A field for entering a TCP UDP source value appears Range if yo...

Page 113: ...the ACE will use this TCP UDP destination value TCP UDP Destination Range When Range is selected for the TCP UDP destination filter you can enter a specific TCP UDP destination range value The allowed...

Page 114: ...ield is set must be able to match this entry Any any value is allowed don t care 5 8 4 AAA Common Server Configurations This page allows you to configure authentication servers Label Description Timeo...

Page 115: ...one server has been configured 5 8 5 RADIUS Authentication and Accounting Server Configurations The table has one row for each RADIUS authentication server and a number of columns which are Label Des...

Page 116: ...e RADIUS accounting server If the port is set to 0 zero the default port 1813 is used on the RADIUS accounting server Secret The secret up to 29 characters long shared between the RADIUS accounting se...

Page 117: ...me expires The number of seconds left before this occurs is displayed in parentheses This state is only reachable when more than one server is enabled Label Description The RADIUS server number Click...

Page 118: ...state is only reachable when more than one server is enabled Authentication and Accounting Server Statistics The statistics map closely to those specified in RFC4668 RADIUS Authentication Client MIB...

Page 119: ...tworking Corp 118 Other Info This section contains information about the state of the server and the latest round trip time Label Description Packet Counters RADIUS accounting server packet counters T...

Page 120: ...addresses to authenticate against the backend server As intruders can create counterfeit MAC addresses MAC based authentication is less secure than 802 1X authentication Overview of 802 1X Port Based...

Page 121: ...ore the server timeout should be smaller than the supplicant s EAPOL Start frame retransmission rate Overview of MAC Based Authentication Unlike 802 1X MAC based authentication is not a standard but m...

Page 122: ...ption Mode Indicates if 802 1X and MAC based authentication is globally enabled or disabled on the switch If globally disabled all ports are allowed to forward frames Reauthenti cation Enabled If chec...

Page 123: ...de reauthentication does not cause direct communications between the switch and the client so this will not detect whether the client is still attached or not and the only way to free any resources is...

Page 124: ...tion server are using or how many information exchange frames are needed for a particular method The switch simply encapsulates the EAP part of the frame into the relevant type EAPOL or RADIUS and for...

Page 125: ...icant s MAC address once successfully authenticated b Multi 802 1X In port based 802 1X authentication once a supplicant is successfully authenticated on a port the whole port is opened for network tr...

Page 126: ...ck traffic for that particular client using the Port Security module Only then will frames from the client be forwarded on the switch There are no EAPOL frames involved in this authentication and ther...

Page 127: ...quiet period of the port runs out EAPOL based authentication For MAC based authentication reauthentication will be attempted immediately The button only has effect on successfully authenticated clien...

Page 128: ...m a new client for MAC based authentication This page provides detailed IEEE 802 1X statistics for a specific switch port using port based authentication For MAC based ports only selected backend serv...

Page 129: ...ckend RADIUS frame counters are available for the following administrative states 802 1X MAC based Auth Last Supplicant Clien t Info Information about the last supplicant client that attempts to authe...

Page 130: ...elected fault event happens the Fault LED on the switch panel will light up and the electric relay will signal at the same time 5 9 2 System Warning SYSLOG Setting The SYSLOG is a protocol that transm...

Page 131: ...nder since UDP is a connectionless protocol and it does not provide acknowledgments The syslog packet will always be sent even if the syslog server does not exist Possible modes are Enabled enable ser...

Page 132: ...tion username Password the authentication password Confirm Password re enter password Recipient E mail Address The recipient s e mail address A mail allows for 6 recipients Apply Click to activate the...

Page 133: ...out alert when SNMP authentication fails O Ring Topology Change Sends out alerts when O Ring topology changes Port Event SYSLOG SMTP event Disable Link Up Link Down Link Up Link Down Apply Click to a...

Page 134: ...control of the mode and thus the user cannot change the configurations An example of such a module is MAC Based authentication under 802 1X You can configures the port to dynamically learn the MAC ad...

Page 135: ...Save to save the changes MAC Table Each page shows up to 999 entries from the MAC table with a default value of 20 selected by the Entries Per Page input field When first visited the web page will sho...

Page 136: ...s for the next lookup When it reaches the end the text no more entries is shown in the displayed table Use the button to start over Label Description Type Indicates whether the entry is a static or dy...

Page 137: ...ess or egress congestion Filtered The number of received frames filtered by the forwarding process Check to enable an automatic refresh of the page at regular intervals Updates the counter entries sta...

Page 138: ...d with a valid CRC Rx Fragments The number of short 1 frames received with an invalid CRC Rx Jabber The number of long2 frames received with an invalid CRC Rx Filtered The number of received frames fi...

Page 139: ...x only only frames transmitted from this port are mirrored to the mirror port Frames received are not mirrored Disabled neither transmitted nor recived frames are mirrored Enabled both received and tr...

Page 140: ...essage The MAC address of the switch Check this box to enable an automatic refresh of the page at regular intervals Updates system log entries starting from the current entry ID Flushes all system log...

Page 141: ...sconnected while running VeriPHY diagnostics Therefore running VeriPHY on a 10 or 100 Mbps management port will cause the switch to stop responding until VeriPHY is complete Label Description Port The...

Page 142: ...l packets are received or until a timeout occurs PING6 server 10 10 132 20 64 bytes from 10 10 132 20 icmp_seq 0 time 0ms 64 bytes from 10 10 132 20 icmp_seq 1 time 0ms 64 bytes from 10 10 132 20 icmp...

Page 143: ...figurations The following values are possible Output enable the 1 pps clock output Input enable the 1 pps clock input Disable disable the 1 pps clock in out put External Enable The box allows you to c...

Page 144: ...clock Master Only master only Slave Only slave only Port List Set check mark for each port configured for this Clock Instance 2 Step Flag Static member defined by the system true if two step Sync even...

Page 145: ...for vlan tagging i e Port Type Unaware and PortVLAN mode None and the port is member of the VLAN VID VLAN identifiers used for tagging the PTP frames PCP Priority code point values used for PTP frames...

Page 146: ...4GP also supports CLI management You can use console or telnet to manage the switch by CLI CLI Management by RS 232 Serial Console 115200 8 none 1 none Before configuring RS 232 serial console connect...

Page 147: ...RGS PR9000 Series User Manual ORing Industrial Networking Corp 146 Step 2 Input a name for the new connection...

Page 148: ...nual ORing Industrial Networking Corp 147 Step 3 Select a COM port in the drop down list Step 4 A pop up window that indicates COM port properties appears including bits per second data bits parity st...

Page 149: ...s then press Enter CLI Management by Telnet You can can use TELNETto configure the switch The default values are IP Address 192 168 10 1 Subnet Mask 255 255 255 0 Default Gateway 192 168 10 254 User N...

Page 150: ...es User Manual ORing Industrial Networking Corp 149 Step 2 The Login screen will appear Use the keyboard to enter the Username and Password same as the password for Web browser and then press Enter Co...

Page 151: ...ration all port_list Reboot Restore Default keep_ip Contact contact Name name Location location Description description Password password Username username Timezone offset Log log_id all info warning...

Page 152: ...rt_list discard restart Statistics port_list command up down VeriPHY port_list SFP port_list MAC MAC Configuration port_list Add mac_addr port_list vid Delete mac_addr vid Lookup mac_addr vid Agetime...

Page 153: ...ort_list Add pvlan_id port_list Delete pvlan_id Lookup pvlan_id Isolate port_list enable disable Security Security Switch Switch security setting Network Network security setting AAA Authentication Au...

Page 154: ...p history_id Alarm Add alarm_id interval alarm_variable absolute delta rising_threshold rising_event_index falling_threshold falling_event_index rising falling both Alarm Delete alarm_id Alarm Lookup...

Page 155: ...tdown Policy port_list policy Rate rate_limiter_list rate_unit rate Add ace_id ace_id_next port port_list policy policy policy_bitmask tagged vid tag_prio dmac_type etype etype smac dmac arp sip dip s...

Page 156: ...ble disable ip_addr_string secret server_port ACCT_RADIUS server_index enable disable ip_addr_string secret server_port Statistics server_index STP STP Configuration Version stp_version Non certified...

Page 157: ...k port_list Msti Port Configuration msti port_list Msti Port Cost msti port_list path_cost Msti Port Priority msti port_list priority Aggr Aggr Configuration Add port_list aggr_id Delete aggr_id Looku...

Page 158: ...orm Broadcast enable disable packet_rate QCL Add qce_id qce_id_next port_list tag vid pcp dei smac dmac_type etype etype LLC DSAP SSAP control SNAP PID ipv4 protocol sip dscp fragment sport dport ipv6...

Page 159: ...disable Flooding enable disable Groups vid Status vid ACL ACL Configuration port_list Action port_list permit deny rate_limiter port_copy logging shutdown Policy port_list policy Rate rate_limiter_lis...

Page 160: ...y Engine ID enable disable Trap Security Engine ID engineid Trap Security Name security_name Engine ID engineid Community Add community ip_addr ip_mask Community Delete index Community Lookup index Us...

Page 161: ...ockinst utcoffset valid leap59 leap61 timetrac freqtrac ptptimescale timesource PTP PortDataSet clockinst port_list announceintv announceto syncintv delaymech minpdelayreqintv delayasymmetry ingressLa...

Page 162: ...e Status port_list IPMC IPMC Configuration igmp Mode igmp enable disable Flooding igmp enable disable VLAN Add igmp vid VLAN Delete igmp vid State igmp vid enable disable Querier igmp vid enable disab...

Page 163: ...linkdown both DHCPServer DHCPServer Mode enable disable Setup ip_start ip_end ip_mask ip_router ip_dns ip_tftp lease bootfile Ring Ring Mode enable disable Master enable disable 1stRingPort port 2ndR...

Page 164: ...Port DDOS High port_list socket_number Port DDOS Filter port_list source destination Port DDOS Action port_list do_nothing block_1_min block_10_mins block shutdown only_log reboot_ device Port DDOS S...

Page 165: ...act enable disable 1stRingPort mrp_port 2ndRingPort mrp_port Parameter MRP_TOPchgT value Parameter MRP_TOPNRmax value Parameter MRP_TSTshortT value Parameter MRP_TSTdefaultT value Parameter MRP_TSTNRm...

Page 166: ...imiting User Define Jumbo frame Up to 9 6K Bytes Security Features Device Binding security feature Enable disable ports MAC based port security Port based network access control 802 1x Single 802 1x a...

Page 167: ...ed SPD Duplex FDX Remote RMT green LED indicator x 4 Mode select Button MODE Link Act LK ACT Speed SPD Duplex FDX Remote RMT mode select button Port 1 28 Link Act LK ACT LED show Green x 28 Fault cont...

Reviews: