background image

 

R

EVISED

 2018-09-21

W

EB

 C

ONFIGURATION

 S

OFTWARE

D

RAWING

 N

O

. LP0991-G

H

ELP

N-Tron

®

 Series NT24K

®

 Software Manual

2-120

2.27

Help

The Help menu provides information on monitoring and configuring the manageable parameters of the device. 
Specific help can be found by using the left hand navigation menu or clicking on the Help link in the top menu.

Summary of Contents for N-Tron Series

Page 1: ...N Tron Series NT24k Software Manual September 2018 Software User Manual Firmware Version 2 1 10 ...

Page 2: ... NT24k are registered trademarks of Red Lion Controls Inc All other company and product names are trademarks of their respective owners Red Lion Controls Inc 20 Willow Springs Circle York PA 17406 CONTACT INFORMATION Inside US 1 877 432 9908 Outside US 1 717 767 6511 Website www redlion net Email support redlion net ...

Page 3: ...d Documents vii Additional Product Information vii Document Comments vii Features and Specifications 1 1 NT24k Series Common Features 1 1 Overview of Advanced Features 1 2 Mode of Operation 1 2 Port Mirroring 1 2 Port Trunking 1 2 Quality of Service QoS 1 3 Virtual Local Area Network VLAN 1 3 Rapid Spanning Tree Protocol RSTP 1 4 SNMP Traps 1 4 IGMP Snooping 1 4 N Link 1 4 N Ring 1 5 Bypass Relay ...

Page 4: ...ult 2 21 File Transfer 2 23 Network 2 29 System 2 30 User Management 2 31 Authorized Users 2 31 Configuration 2 32 Bridging 2 33 Aging Time 2 33 Multicast Addresses 2 33 Unicast Addresses 2 34 CIP 2 36 Configuration 2 36 Status 2 37 EIP Indicators 2 38 DHCP Client Configuration 2 39 DHCP Relay Agent Configuration 2 40 DHCP Server Configuration 2 42 DHCP Server Current Leases 2 43 DHCP Server Scope...

Page 5: ...nfiguration Port Sets 2 65 Configuration Advanced 2 66 Configuration Status 2 68 N View 2 72 Ports 2 73 Ports 2 74 Configuration 2 74 Mirroring 2 76 PoE 2 77 QOS Quality of Service 2 80 Rate Limiting 2 82 Status Statistics 2 84 Status Utilization 2 85 Trunking 2 85 PPP 2 87 Security 2 88 Local Security 2 88 Local Security Configuration View 2 88 Modify Local Security Configuration 2 89 Port Securi...

Page 6: ...n 2 100 Trap Stations 2 101 RSTP 2 103 Bridge 2 103 Time 2 107 Basic 2 107 SNTP 2 109 Precision Time Protocol PTP 2 110 PTP Basic Configuration 2 110 PTP Port Configuration 2 111 PTP Advanced Configuration 2 112 Status 2 114 VLAN 2 117 Help 2 120 Service and Support Information S 121 Licensing Warranty W 122 Appendix A A 123 Appendix B B 133 Appendix C C 136 ...

Page 7: ...on how to apply and use the functions on the Red Lion N Tron Series NT24k switches Audience The manual is intended for use by personnel who are responsible for operating and maintaining network equipment consequently it assumes a basic working knowledge of general switch functions the Internet Protocol IP and Simple Network Management Protocol SNMP Compliance Statements User Information FCC Compli...

Page 8: ...apparatus meets all requirements of the Canadian Interference Causing Equipment Regulations Cet appareil numérique de la classe A respecte toutes les exigences du Règlement sur le matérial brouilleur du Canada Trademark Acknowledgments Red Lion Controls Inc acknowledges and recognizes ownership of the following trademarked terms used in this document EtherNet IP and CIP are trademarks of ODVA All ...

Page 9: ...rs and or e mail addresses listed on the inside of the front cover and in the Service and Support section of this manual Document Comments Red Lion appreciates all comments that will help us improve our documentation quality The user can submit comments through the Red Lion Customer Service Simply email us at support redlion net Issue Revision Release Date Content Description 2015 02 12 February 2...

Page 10: ...all Gigabit copper Gigabit fiber or SFP ports IEEE 802 3af at Power over Ethernet PoE models are also available Please reference the N Tron Series NT24k Compact Industrial Managed Gigabit Ethernet Switches Hardware Manual for more information Performance NT24k managed switches provide uncompromising performance in harsh environments including network features like N Ring Virtual Local Area Network...

Page 11: ...mitters defer nor do they monitor or react to receive activity as there is no contention for a shared medium in this mode However a receiving endpoint may request that the transmitting endpoint pause transmission to prevent receive buffer overflow When the receiving buffer capacity becomes sufficient again the receiving endpoint will notify the transmitting endpoint that transmission may resume Au...

Page 12: ...fault VLAN when it is reconfigured to another VLAN See the VLAN configuration section in Chapter 2 for additional information If switch ports are configured to transmit and receive untagged frames then their connected devices are able to communicate throughout the LAN Using Tagged VLANs the switch has the ability to take non tagged packets in some ports add a VLAN tag to the packet and send it out...

Page 13: ...power up Also there can be manual only or manual and dynamic operation Note that static multicast group address can be used whether IGMP Snooping is enabled or not The Internet Group Management Protocol IGMP is a protocol that provides a way for a device to report its multicast group membership to adjacent routers In this case NT24k switches provide router like functionality Multicasting allows on...

Page 14: ...ware technology that forces paired BR ports to create a physical connection when the switch powers down The BR switch is in bypass mode when it is powered down This feature allows devices connected via these ports to continue communicating despite the BR switch being powered down Note BR ports are only supported on select NT24k models BR capable equipment is denoted by a R in the model name Likewi...

Page 15: ...fected Port Properties Port Trunking BR port pairs cannot be members of the same trunk group to prevent a network loop being created in bypass mode VLAN VLAN group membership must be identical between BR port pairs to ensure proper flow of traffic when the switch enters bypass mode Caution must also be taken when modifying VLAN tags or filtering VLAN traffic on BR ports to ensure that all devices ...

Page 16: ...ing once the switch enters bypass mode Note It is still possible to customize port settings in any configuration desired based on network require ments Network testing must be performed to ensure correct network operation whether the switch is powered on or powered off 1 2 11 3 Segment Length Based on IEEE specifications the maximum segment length for 10 100 1000BaseT X is 100 meters 328 ft This r...

Page 17: ...e coordinated timing among devices NT24k models with software implementations of PTP are capable of achieving microsecond level accuracy PTP is disabled by default and can be enabled as a Boundary or Transparent clock through the Web Browser interface The switch must have a valid PTP license installed before PTP can be enabled 1 2 14 Point to Point Protocol PPP PPP allows a browser like interface ...

Page 18: ...nts see Event Logging are transmitted to a remote logging device known as a Syslog Collector The Syslog is disabled by default but can be enabled disabled through the Web Browser interface 1 2 19 Local Security The switch is configured for secure access by the SSH and HTTPS The Telnet Server and Hypertext Transfer Protocol HTTP may be enabled to provide backwards compatibility with less secure cli...

Page 19: ...sure the Power LED is ON 2 Make sure sufficient current is supplied to the switch per model specifications Note The Inrush current will exceed the steady state current by 2X 3 Verify that Link LEDs are ON for connected ports 4 Verify integrity of cabling between stations 5 Verify that cabling is Category 5E or greater for 100Mbit and Gigabit operation ...

Page 20: ...address bar The DHCP Client is enabled by default with 192 168 1 201 as the fallback address The following login screen will appear For the User Name enter admin all lowercase For the password enter admin all lowercase Note For security purposes it is recommended that the password be changed according to your internal policies Login credentials can be changed on the User Management page Upon succe...

Page 21: ...f a destabilizing event Which events are watched for and how notifications occur are configured on the Fault page File Transfer The File Transfer page provides the administrator the ability to upgrade the firmware or to import or export a configuration file and export the Event Log to a file Network The network page is used to setup the device s IP and IP Fallback addresses as well as Client ID an...

Page 22: ...er location and NT24K AC2 if there are two AC power units If the product name ends with DC1 or DC2 this indicates that there is either one or two DC power units Switch Model The base model of the switch Switch Family The switch family this model and similar models belong to Software Version The current firmware software version Build Date The build date of the firmware Boot Loader The boot loader ...

Page 23: ...iscard all unsaved changes and load the most recently saved configuration If a configuration device is installed and enabled the configuration stored on the device will be loaded and used See notes below Reboot Click on the Reboot button to reboot the switch and load the most recently saved configuration If a configuration device is installed and enabled the configuration stored on the device will...

Page 24: ...factory defaults Before a configuration can be customized click on the Save button in order to create the file Configuration Fault When the switch is booted and misconfigured settings are detected a Configuration Fault will be triggered and the configuration may not be saved This can occur when updating system firmware where settings permitted in the previous release may no longer be permitted In ...

Page 25: ...layed when Event Logging is disabled albeit they may not be recent events If the Event Log was disabled when the latest Startup event occurred no events will be displayed as shown below When the Event Log is cleared an informational event will be displayed Note All enabled events since the last Clear Log event including multiple Startup and Shutdown events are stored on the system and may be expor...

Page 26: ...REVISED 2018 09 21 WEB SOFTWARE CONFIGURATION DRAWING NO LP0991 G EVENT LOG N Tron Series NT24K Software Manual 2 17 ...

Page 27: ...e entire Event Log may be exported to the host PC for further analysis and archiving purposes It will contain all events that occurred while Event Log was enabled since the last Clear Log event On the File Transfer Firmware Config page select Transfer Type Export Event Log from switch Click on Event Log in the Export Event Log from switch panel and select the storage location for the exported file...

Page 28: ...ron Series NT24K Software Manual 2 19 Example Event Log CSV in Microsoft Excel Where the fields are Sequence Number Each entry is assigned the next sequence number these may not always be listed in numerical order due to the priority of the internal tasks which generate the events ...

Page 29: ... minutes seconds based on the initial value of Current System Time as defined in the System Configuration View Severity most severe to least severe Component Internal component that generated the event entry Event Description Description of the event entry Emergency Major failure Immediate intervention required Alert Failure of a component Immediate corrective steps should be taken Critical Partia...

Page 30: ...ollowing values Note These are based on the Event Log s Severity Emergency Alert Critical Error Warning Notice Informational Debug LED Status This field shows the current color of the Power Fault LED Green indicates there is no fault and Red indicates a fault condition exists Contact Status This field shows the current open closed status of the fault relay Contact Operation This field determines i...

Page 31: ...wer input DC V4 N Ring Manager Fault Descriptions The faults listed below appear when the switch is configured as an N Ring manager N Ring Broken Indicates that an N Ring connection is completely broken N Ring Partial Break High Indicates that an N Ring connection is only broken in the direction of the higher port N Ring Partial Break Low Indicates than an N Ring connection is only broken in the d...

Page 32: ...TPS Protocol TFTP Protocol File Name Click on the Browse button to browse to the desired location and select an image file typically called NT24k_image tar File names are limited to a maximum length of 63 characters Server This field displays the IP address of the TFTP server It is automatically populated with the IP address of the PC which is connected to the switch File Name This field displays ...

Page 33: ...iguration to switch Select which configuration settings to keep when the new configuration file is imported by checking on the relevant checkbox Server This field displays the IP address of the TFTP server File Name This field displays the name of the file to be imported typically NT24k_settings xml File names are limited to a maximum length of 63 characters Import Configuration to switch Select w...

Page 34: ...Security Authorization List to switch Select which configuration settings to keep when the new configuration file is imported by checking on the relevant checkbox Server This field displays the IP address of the TFTP server File Name This field displays the name of the file to be imported typically NT24k_portsecurity auth File names are limited to a maximum length of 63 characters Import Port Secu...

Page 35: ...browse to the desired location and select a license file typically NT24k_license lic File names are limited to a maximum length of 63 characters Server This field displays the IP address of the TFTP server File Name Click on the Browse button to browse to the desired location and select a license file typically NT24k_license lic File names are limited to a maximum length of 63 characters Click on ...

Page 36: ...ttings xml per default Server This field displays the IP address of the TFTP server File Name This field displays the name of the file to be exported typically NT24k_settings xml File names are limited to 63 characters maximum Click on the Export button to export the settings to the specified TFTP server HTTP HTTPS Protocol TFTP Protocol Click on the Port Security Authorization List link to export...

Page 37: ...ince the last Clear Log event was performed HTTP HTTPS Protocol TFTP Protocol Click on the Event Log link to export the log file to your computer A download dialog pop up will appear prompting the user to open or save the configuration file Server This field displays the IP address of the TFTP server File Name This field displays the name of the file to be imported typically eventlog csv File name...

Page 38: ...dministrative domain The identifier may be the MAC address switch name or entered as a text string or hex characters This option is only shown in DHCP Mode IP Address Contains the current IP Address of the device Subnet Mask Contains the current Subnet Mask of the device Gateway Contains the current Gateway of the device Fallback IP Enables disables the use of the Fallback IP address Fallback IP A...

Page 39: ...h temperature sensors Upper Threshold The highest temperature for the switch without causing a fault to occur The threshold is specified as an integer in degrees Celsius The range is from 60 C to 120 C and the default is product dependent This option is only shown on devices with temperature sensors Lower Threshold The lowest temperature for the switch without causing a fault to occur The threshol...

Page 40: ...ll the users who have access to the management features of the switch and their access permissions Note Up to 5 web users may be logged into the Web Management tool at once Adding Users The system administrator can add users change passwords and define access permissions for each user Click on the Add button and the following dialog window will appear User Name User names may include all alphanume...

Page 41: ... enter the User Name to be deleted and click on the Remove button 2 10 2 Configuration The User Management Configuration screen allows for the switch to be configured with a user password length minimum and user password length maximum Password Length Min The minimum number of characters allowed in a user password The default is 3 characters Password Length Max The maximum number of characters all...

Page 42: ...Address Entry Table after the aging time period has expired The internal aging time period will be between 1 and 2 times the selected aging time value To modify the Aging Time field click on the Modify button Enter the desired Aging Time value must be between 10 630 seconds and click on the Update button The default value for this field is 300 seconds To save the changes made return to the Configu...

Page 43: ...tton to return to the Display Static Multicast Group Addresses page To save the changes go to the Configuration menu and click on the Save button Removing a Multicast Group Address To remove a Multicast Address click on the Remove button A listing of available Multicast Group Addresses will appear Click on the Delete button to remove an address 2 11 3 Unicast Addresses The Unicast Addresses dialog...

Page 44: ...ackets will be directed Click on the Update button to add the unicast address and return to the Display Static Unicast MAC Addresses dialog window To save the changes go to the Configuration menu and click on the Save button Removing a Unicast MAC Address To remove a Unicast Address click on the Remove button and a dialog window with a listing of available Unicast MAC Addresses will appear Click o...

Page 45: ...splays the CIP status as well as the Multicast and Unicast RPIs Requested Packet Interval Click on the Modify button to make changes to the CIP Configuration CIP Status This field determines whether CIP is enabled or disabled on the NT24k switch The default setting is Enabled Multicast RPI The minimum Requested Packet Interval for Class 1 multicast connections in milliseconds is shown in this fiel...

Page 46: ... Adapter 0x0C hex Major Revision This field displays the major revision of the CIP implementation Minor Revision This field shows the minor revision of the CIP implementation Serial Number hex This field shows the CIP serial number which is unique across all N Tron CIP devices The number shown is the last 4 octets of the base switch MAC address Connection Information Number of Multicast Connection...

Page 47: ...atus indicator shows the status of the EtherNet IP network interface These indicators are located on the back of the rack mount version of the switch or on the front of the CPU module on the DIN Rail versions of the switch Module Status Network Status Indicator State Summary Description Steady Off No power The switch is not powered up Steady Green Device operational The switch is operating normall...

Page 48: ...ically obtain an IP assignment from a DHCP server or optionally Fallback to a configured IP assignment if unable to get an IP assignment from a DHCP server Communication between the client and server can optionally go through a DHCP Relay Agent DHCP Client is enabled by default with 192 168 1 201 as the factory fallback address Refer to section 2 8 Network for enabling DHCP Client mode ...

Page 49: ...T24K Software Manual 2 14 DHCP Relay Agent Configuration A relay agent configured via the Relay Agent Configuration View provides a way for DHCP client requests to reach DHCP servers including those that reside on a different subnet and or VLAN Note DHCP traffic is sent and received only on Management VLANs View Page ...

Page 50: ... MAC address Client ID Other String or Other Hex characters Relay Agent ID A unique identifier that designates this relay agent switch DHCP Server 1 4 IP The configured IP address of the DHCP servers Enable Indicates whether relay agent functionality is enabled for the port Port No The number of the port This field is read only Port Name The descriptive name of the port This field is read only Cir...

Page 51: ... subnet or VLAN DHCP traffic is sent and received only on Management LANs Note A DHCP Relay Agent is required to provide an IP address to clients on a different subnet or VLAN The following screen shows the Advanced configuration hidden The following screen shows the Advanced configuration unhidden Click on the Modify button to open the DHCP Server Configuration Modification page Click on the Upda...

Page 52: ...ies when Allow Broadcast is Enabled The range is 0 2500 and the default is 500 2 15 1 DHCP Server Current Leases The Current Leases table shows the IP addresses that have been leased or offered to devices Sort By Sort the current leases by Pool Name Binding Identifier MAC Address IP Address Status Remaining Lease or Label Pool Name The pool from which the lease was obtained Binding Identifier The ...

Page 53: ...e configuration pool Click on the Add button to add the new scope Click on the Remove button to remove an existing or new scope Click on the Update button to apply the changes Enabled Indicates whether the pool is enabled or disabled Pool Name Descriptive name of the scope configuration pool This field is required and must be unique Pool Range Starting and ending IP addresses for the pool of addre...

Page 54: ... Page Select the Pool Name drop down list to filter on a specified pool Click on the Modify button to open the Modify DHCP Server Static Assignments page Modify Page Click on the IP address hyperlink to modify the corresponding static assignment Click on the Add button to add the new static assignment Click on the Remove button to remove an existing or new static assignment ...

Page 55: ... in days hours and minutes that will be offered to a client This field is read only Type The type of binding identifier for the static assignment The options are Option 61 and Relay Agent Option 82 IP Address The static IP address offered to the DHCP client Binding Identifier The binding identifier of the static IP address assignment For Option 61 the binding identifier requires a Client ID the id...

Page 56: ...t Name The descriptive name of the port This field is read only IP Address The IP address offer to the DHCP client connected to the port Subnet Mask The subnet mask offer to the DHCP client connected to the port Gateway The gateway offer to the DHCP client connected to the port Domain Name The domain name offer to the DHCP client connected to the port The field is optional DNS 1 The primary DNS of...

Page 57: ...erent destinations 2 16 1 Event Log Filter The Event Log Filter allows the user to define which events will be logged based on the severity level of the event Note The event log is enabled by default for critical events 2 16 1 1 Event Log Filter View The Event Log Filter page displays the current minimum severity settings for each component Events below the minimum severity level will not be logge...

Page 58: ...t Minimum Severity Events below the minimum severity level will not be logged A severity of None will disable events for that component For more information see Severity under section 2 5 Event Log 2 16 2 Syslog The Syslog feature allows certain system events see Event Log to be sent as messages to remote hosts for monitoring and analysis The messages can be sent to up to 5 different remote hosts ...

Page 59: ... disabled or enabled Syslog Status This field indicates whether the Syslog Distributor client has been enabled or disabled To enable Syslog at least one Syslog Collector server must be specified Facility This is used to identify which process is logging the message This is a global setting for the switch and will be used for all messages Available Facility values as defined per RFC 5424 are 1 user...

Page 60: ...ive all messages from 4 to 0 The importance of a message increases with a lower severity level setting value These are the same Severity level setting values as the Event Log and Event Log Filter For more information see Severity under section 2 5 Event Log Send Events This setting can be enabled or disabled per Collector to control the distribution of Event Log messages 2 16 2 3 Syslog Help Infor...

Page 61: ...s Router Mode The available options for this field are Auto This option allows for dynamically detected and manually set router ports This is the default value None This option allows for no router ports Manual This option allows for manually set router ports Remove Unused Groups If this option is checked unused IGMP Groups will be removed and traffic with those multicast addresses will be treated...

Page 62: ... view aaa bbb ccc ddd counting each joined port are displayed here Group IP This field shows the dynamically created multicast group IP address Port Name The descriptive name of the port is shown here VLAN ID This field indicates the VLAN in which the Group IP is assigned The available range is 1 4094 2 17 3 RFilter Ports From the RFilter Router Multicast Data Filter option the user can choose whe...

Page 63: ... router ports get data frames with known multicast destination addresses RFilter can be set for individual ports any all or none For each port RFilter will have an impact only if that port is manually or dynamically chosen as a router port Click on the Modify button to make changes to the IGMP RFilter Configuration The following dialog window will appear From this dialog window the administrator s...

Page 64: ...ection 1 2 11 Bypass Relay BR on page 5 Example of a standard N Link configuration N Ring Manager N Ring Auto Member N Link Slave N Ring Member N Link Master N Ring Member Partner Link N Ring Segment Control Link N Ring Auto Member N Ring Manager N Link Coupler N Ring Member N Link Coupler N Ring Member N Ring Auto Member N Ring Auto Member Primary Coupler Link Standby Coupler Link Coupler Port De...

Page 65: ... must be a direct link between the Master and Slave Control ports Use of media converters or other switches is not supported There must be a direct link between the Master and Slave Partner ports Use of media converters or other switches is not supported There must be an N Link aware switch on each side of the Master N Link will only support a single point of failure Multiple points of failure and...

Page 66: ...on must be 1 gigabit fiber when the other N Ring segments have a 1 gigabit speed When using a 700 7000 Series N Link Slave the control port should use a fiber connection 2 18 1 Configuration Basic The Basic tab under the N Link Configuration category will display the basic configuration settings By default N Link is in Auto Configuration mode and will use A4 as the Default Coupler port The port co...

Page 67: ...e range is 2 180 seconds The default Auto Configure detection time is 4 seconds Click on the Modify button to change the detection timeout Click on the Update button once the field has been updated with the required information To save the changes made return to the Configuration menu and click on the Save button 2 18 3 Status The Status dialog window displays the N Link status If the switch is an...

Page 68: ...AC The MAC address of the N Link Partner switch Coupler Port State Blocking or Forwarding Status If there are no errors the status will show OK Otherwise a description of the faults detected will be shown N Link Auto Configure N Link State Current N Link mode of switch Coupler State The port used to establish a redundant path for Ethernet data transmission This port will be detected automatically ...

Page 69: ... NT24K Software Manual 2 18 4 Status Examples N Link Status Master and Slave where the Primary Coupler is broken N Link Auto Configure that is not an N Link Master and has not become an N Link slave or an N Link Coupler N Link Coupler Switch N Link Master Switch N Link Slave Switch ...

Page 70: ...991 G STATUS EXAMPLES N Tron Series NT24K Software Manual 2 61 N Link Master and Slave where the Standby Coupler link is broken N Link Master and Slave where the Control link is broken N Link Master and Slave where the Partner link is broken ...

Page 71: ... Bypass Relay BR on page 5 Click on the Modify button to make changes to the N Ring Basic Configuration Disabled If selected this option disables the N Ring capabilities on the switch Auto Member When set to auto member the switch automatically detects when it is a part of an N Ring for participation in the ring Manager When in Manager mode the administrator may select different Port Sets as N Rin...

Page 72: ... IDs VLAN ID This field is auto generated based on the selected N Ring number See table for N Ring numbers and corresponding VLAN IDs Tagging The type of VLAN tagging used Currently tagged mode is the only supported mode Multi Member When in multi member mode a switch can be a member of multiple rings If selected then N Ring Membership Configurations can be added for each N Ring to which the switc...

Page 73: ... List of available N Ring Numbers and their corresponding VLAN ID Configuration Requirements 1 N Ring requires tagged frames to optimize frame prioritization 2 Do not create redundant links unless either RSTP or N Ring is enabled 3 The Default VLAN and any active N Ring VLAN cannot be deleted 4 RSTP and N Ring are different modes and cannot share links or segments If a port is both an RSTP port an...

Page 74: ...rk storm multiple segments between N Ring members on one or more N Rings must not occur N Ring members should only be connected to each other by the N Ring ports 2 19 2 Configuration Port Sets A port set is a group of two ports that may be used for an N Ring The default N Ring Port Set is A1 A2 Click on the Modify button to make changes to the Port Sets Set This field displays the Port set table i...

Page 75: ...pdate button when port set configuration is complete The N Ring Port Sets Entry dialog window will appear Click on the Done button To save the changes made return to the Configuration menu and click on the Save button 2 19 3 Configuration Advanced Auto Member Mode N Ring Mode This field is defined in the N Ring Configuration Basic dialog window Keep Alive Timeout Secs This field displays the amoun...

Page 76: ...ign on information from ring members The default value is 1000 Msecs Sign On Match Packets The number of times the switch count must match before starting the sign on process The default value is 3 Sign On Interval Msecs The interval of time to wait in milliseconds before requesting subsequent sign on information from ring members when the ring is broken The default value for this field is 3000 Ms...

Page 77: ...991 G 2 68 N Tron Series NT24K Software Manual 2 19 4 Configuration Status When an N Ring Auto Member is not participating in an N Ring the following information is shown When an N Ring Auto Member is participating in an N Ring the following information is shown ...

Page 78: ... NO LP0991 G CONFIGURATION STATUS N Tron Series NT24K Software Manual 2 69 When N Ring is in Manager Mode the following data will be as shown below If the MAC is selected more data is retrieved and shown about the N Ring Member switch ...

Page 79: ...member Switch Number 1 TX2 is broken A warning Switch order may be incorrect and all switches may not be shown is displayed in yellow This indicates that the Sign On frames cannot get around the N Ring and the data may not have been updated since the last successful update N Ring Multi Member Status View N Ring Number N Ring number to which the N Ring Membership is associated N Ring Manager Addres...

Page 80: ...tag to be used with this N Ring The VLAN ID is associated with the N Ring and can be changed by switching the N Ring number Status Current status of the N Ring Membership The values are Active The N Ring Membership is connected and operating normally Inactive The N Ring Membership is not responding and not functioning correctly ...

Page 81: ...figuration N View Status This field determines whether the N Ring is enabled or disabled N View Interval This field determines the frequency in which N View reports its information Increasing the interval slows the update rate and decreasing it allows N View to report more frequently The available range is 10 500 seconds Interval values are converted to increments of 10 seconds The default value i...

Page 82: ...spectively Click on the Modify button to make changes to the N View Ports The user can modify these two variables to enable or disable N View related multicast out of the port and if MIB stats are sent out for those ports The ports that can be installed Modules currently installed or currently linked up can also be viewed Click on the Update button after required changes have been made To save the...

Page 83: ...description of the port Ports with R in their description are Bypass Relay capable ports Refer to section 1 2 11 Bypass Relay BR on page 5 for more information on Bypass Relay devices and ports Admin Status This configurable field displays the existing status of the port The two options are Enabled or Disabled Link Status Shows the current state of the port The two options are Up or Down Auto Nego...

Page 84: ...an active trunk member Usage Alarm Low This field indicates the bandwidth utilization percentage below which a fault is triggered if enabled For the half duplex option the bandwidth utilization percentage is the sum of both RX and TX bandwidth utilization For the full duplex option this is the higher of TX or RX bandwidth utilization Usage Alarm High This field displays the bandwidth utilization p...

Page 85: ... a monitored port The Mirroring dialog window displays the status including the list of Source Ports and the Destination Port that the Sources are being mirrored to Click on the Modify button to make changes to the Port Mirroring Configuration Mirror Status Enable or Disable the Mirroring functionality by selecting the option in the drop down menu Destination Port Select the destination ports that...

Page 86: ...oring destination port is not allowed to overlap with the following features Care should be taken to avoid configuration conflicts N Ring N Link Trunking Click on the Update button To save the changes made navigate to the Configuration menu and click on the Save button 2 21 3 PoE PoE Power Over Ethernet is an internal hardware capability that outputs power and data on Ethernet cabling to Powered D...

Page 87: ...uick configure selection menu updates the PoE port table with the desired settings based on the quick configuration option selected The following values for 8 PoE Ports are P1 P8 at 30W Class 4 default P1 P8 at 15 4W Class 3 0 P1 P8 at 7W Class 2 P1 P8 at 4W Class 1 All ports disabled For 16 PoE Ports the values are P1 P8 at 30W Class 4 default P9 P16 at 30W Class 4 P1 P16 at 15 4W Class 3 0 P1 P1...

Page 88: ... are Active PoE power is outputted on the specific port Inactive PoE power is not outputted on the specific port Disabled PoE functionality is disabled on the specific port Max Power Limit The maximum budgeted power for the port Power Consumption The actual power consumption of the port Detected PD Class The classification of the connected device which can range from Class 0 4 Information Details ...

Page 89: ...lick on the Modify button to make changes to the QOS Configuration Include DSCP This configurable field displays the status of whether or not to include the ingress frame s RFC 2474 DSCP value in determining the transmit priority and egress frame s IEEE 802 1p User Priority value If the ingress frame type is IP IPv4 or IPv6 and Include DSCP is enabled DSCP processing will override all other settin...

Page 90: ...Save button Include DSCP Setting Include 802 1p Setting Ingress Frame Type Ingress Frame Has VLAN Output Port Priority and Egress IEEE 802 1p User Priority Enabled N A IP N A Ingress DSCP Value N A Enabled Not IP Yes Ingress IEEE 802 1p UP N A Enabled Not IP No Default Priority Setting N A Disabled Not IP N A Default Priority Setting Disabled Enabled N A Yes Ingress IEEE 802 1p UP Disabled Enabled...

Page 91: ...s and the Pass Rate Percentage per port for each of the following Broadcast Multicast Unknown Unicast and Known Unicast A packet type will be affected by the rate limit setting if the check box is selected and it exceeds the total number of packets established by the ingress rate limit within an assigned time period The time periods are 1 Gbps 10 ms 100 Mbps 100 ms and 10 Mbps 1 sec ...

Page 92: ... rate percentage for each and every port by entering the desired value Packet Types Select what Packet Types are to be passed Broadcast Multicast Unknown Unicast and Known Unicast Port Name Select which ports are affected by the changes made Note Unicast packets with destinations not in the ARL table can be rate limited rather than all being flooded This is known as Unknown Unicast Click on the Up...

Page 93: ...s Statistics This dialog window displays the MIB counters for the selected port specified by the Port pull down menu Pressing the Clear button resets all counters for the selected port The Clear All Ports button resets all counters for all ports including the selected port The Refresh button reloads the dialog window ...

Page 94: ...bandwidth percentage graph of all the ports The graph is scaled based on the Scale drop down list 2 21 8 Trunking The Trunking dialog window displays trunking information Note Bypass Relay models affect this feature For more information see section 1 2 11 Bypass Relay BR on page 5 Trunk ID This column displays the trunk identifier number The valid range is 1 127 ...

Page 95: ...nk Trunk Status The existing status of the trunk is shown in this column Available trunk status options are Enabled or Disabled Configuration Note Note The trunk ports are not allowed to overlap with the following features Care should be taken to avoid configuration conflicts N Ring N Link 802 1X Mirroring Click on the Modify button to add modify or delete ports Click on the Add button and the fol...

Page 96: ...xisting Trunk Group click on the Trunk ID and make the required changes To Delete an existing Trunk Group click on the Delete button associated with the Trunk ID to be deleted 2 21 9 PPP The console can be either in CLI mode or PPP mode The PPP mode provides a TCP IP connection over the serial port A browser may then be used to view switch information or make configuration changes PPP mode is ente...

Page 97: ...r can disable or enable these protocols as desired A RADIUS server can be configured to authenticate the user name and password entered for local access The N Tron Configuration Device NTCD SD card slot can be enabled or disabled allowing an administrator to block and unblock reading and writing settings from the SD card as desired A new certificate and keys can also be generated at boot up by sel...

Page 98: ... HTTPS secure connections The default is disabled HTTP users are not authenticated by the RADUIS server If Radius authentication is exclusively required then HTTP should be disabled HTTPS This field indicates whether HTTPS is enabled or disabled Disabling HTTPS requires HTTP to be enabled The default is enabled A RADIUS server may be used to manage user accounts that have access to the switches RA...

Page 99: ...ically learned MAC addresses and manually entered MAC addresses as authorized Dynamically learned MAC addresses are those that the switch detects on any port while in Learning mode A manually entered MAC address must designate the port s that the address is authorized on A non authorized MAC address will be discarded and will be shown on the intruder log Port security allows secured ports to run w...

Page 100: ...The current status of Port Security It can be Disabled Learning or Locked Transitioning from Locked to Learning clears the Authorization List table on all ports Transitioning from Locked to Disabled retains the current Authorization List When transitioning from Learning to Locked the Authorization List represents the authorized MAC addresses The default value is Disabled Port No The number of the ...

Page 101: ...dresses The last row is used to add new MAC addresses and to change the ports of an existing MAC address Make the required modifications and click on the Update button To save the changes made navigate to the Configuration menu and click on the Save button Field Description Port Name The descriptive name of the port MAC Address The authorized host MAC address Port List The port s that are authoriz...

Page 102: ...n Note Ports that are set to Single MAC cannot be included in static entries in the Authorization List 2 22 2 3 Ports Security Intruder Log The Intruder Log page displays a list of unauthorized MAC addresses that attempted to access the secured device Each intruder entry in the log is based on MAC address and Port Multicast source MAC addresses will not be displayed in the Intruder Log table The l...

Page 103: ...de navigate to the Configuration menu and click on the Save button An authorized entry will be displayed as green text color for that particular row in the Intruder Log table The corresponding checkbox in the Authorize column will be checked and cannot be modified Field Description Authorize This is the selection to Authorize MAC Address es from the Intruder Log System Up Time The elapsed time sin...

Page 104: ... MAC addresses are not allowed to be assigned to a port designated as Single MAC If a port is enabled under port security and then changed to Single MAC all learned addresses will be cleared and the next MAC address that comes in will be the new Single MAC address Single MAC addresses reset anytime the port security status is changed to Learning Single MAC addresses are persistent when port securi...

Page 105: ...ecurity settings click on the Modify button and the fields shown below will become editable 802 1x Status This field indicates whether the 802 1x feature is enabled or disabled At least one RADIUS server must be specified for 802 1x to be enabled Ports must also be individually enabled on the ports configuration page Default Reauthentication Status Select whether the 802 1x Reauthentication option...

Page 106: ... displays the shared secret for the primary server The shared secret authenticates the switch to the RADIUS server and must match the shared secret value on the RADIUS server Backup RADIUS Server This field indicates the IP address of the backup RADIUS server If contact with the primary server is lost contact with the backup server will then be attempted Backup RADIUS UDP Port Number The UDP port ...

Page 107: ...2 1x Status This column indicates whether the existing 802 1X port is enabled or disabled Ports only require 802 1x authentication if they are enabled and 802 1x is globally enabled on the configuration page 802 1x State This column shows the current state of the port This option is only valid when the port is enabled and 802 1x is globally enabled Link Down There is no link detected on the port I...

Page 108: ...ll be blank when queried With this release the IEEE 802 1x MIB support is limited Ports are only tracked when an 802 1x aware supplicant is attached This means that not all 802 1x enabled ports will be visible only those with valid supplicants The statistics available through the MIB only pertain to the device since it either passed or failed authentication Once the link goes down on the port the ...

Page 109: ...le field represents the Authorized Community Name for SNMP Set requests Only alphanumeric characters are allowed The default is for this field is private Only administrators can view or modify this field Trap Community Name This configurable field represents the Authorized Community Name for SNMP Traps Only alphanumeric characters are allowed The default is for this field is public SNMP Notificati...

Page 110: ...l 2 23 2 Trap Stations The Trap Stations dialog window displays the SNMP Trap Stations IP Address This field represents the IP address of the Management Station to be sent SNMP Traps Parameter This field displays the Target Parameters entry TRAPv1 TRAPv2 etc to be used for sending traps to the Management Station ...

Page 111: ... Default Security Parameters The SNMP V3 default user parameters are shown here for reference only as they are necessary for connecting to the switch securely using an SNMP V3 client when in defaults The default user and other users can be added deleted or modified by an administrator via an SNMP V3 client and the values below may be invalid if they are changed by an SNMP administrator Username in...

Page 112: ...ield shows the time spent in seconds by legacy STP Bridges in transitioning Root and designated ports to forwarding This delays port transitions until other bridges have received spanning tree information Max Age Sec For RSTP this is the maximum time in seconds that a bridge will wait for configuration BPDUs before deciding it is no longer connected to the root bridge Root Path Cost The cost of th...

Page 113: ...cted to the root bridge The range is 6 40 The default value is 16 seconds Tx Hold Count This is the maximum number of configuration BPDUs that can be transmitted in one second from a port on this Bridge before transmission is throttled The range is 1 to 10 The default value for this field is 6 Topology Changes This is the number of RSTP topology changes since the switch has been powered on or rebo...

Page 114: ...cates the number of the port Port Name Displays the descriptive name of the port Port State The current RSTP state of the port is shown here This state may be seen as Forwarding No STP Disabled Listening Learning and Discarding STP BPDU Shows whether or not a legacy STP BPDU has been received or not Path Cost Displays the current path cost of the port The range is 0 200 000 000 If configured to 0 ...

Page 115: ...e not and Force True or Force False if the automatic determination would be wrong The default value is Auto Designated Bridge Identifier Priority The priority of the designated bridge associated with the port s LAN segment is shown in this field The designated bridge provides the lowest cost path from this bridge port s LAN segment through the designated bridge to the root bridge Designated Bridge...

Page 116: ...em The system date time defaults to 2000 01 01 00 00 00 CST UTC 06 00 at system start The system date time can be set manually but in the event of a power cycle or reboot it will revert to the default value Time Source This field controls how the switch will automatically set its clock The default value of Set Time Manually means that the time the switch uses can only be set manually Setting this ...

Page 117: ...reviation This field represents the common abbreviation for the selected time zone during daylight saving time or summer time If a custom preset is selected the abbreviation may be edited UTC Offset Minutes This field displays the offset in minutes from UTC This is used to determine the local time If a custom preset is selected the offset may be edited Any change to the offset will affect the time...

Page 118: ...d Query Interval Sec The periodic query interval used to request the time from the server s The valid range is between 4 and 129600 The default value is 1024 Primary Server The address of the server to query first and most often If contact with this server is lost then contact with the backup server will be attempted Either an SNTP or an NTP server may be specified Backup Server The address of the...

Page 119: ...the administrator to disable the protocol or enable one of two clock modes Boundary or Transparent PTP Mode This field indicates whether PTP is disabled operating as a Boundary clock or operating as a Transparent clock Click on the Modify button to change the PTP Mode When the desired mode has been selected click Update Note When switching between PTP modes it will be necessary to save the configu...

Page 120: ...tervals that must elapse without receipt of an announce message before a non communicating Master is marked as unavailable The default value is 3 intervals The current value is dynamically updated by the PTP protocol and may differ from the setting Sync Interval This only applies to Boundary Clock mode This log2value determines how often a sync message will be sent The default value of 1 is twice ...

Page 121: ...al Delay Request Interval or PTP Port Mode have been made click on the Update button Note The settings on the PTP Port Configuration View page are associated with the mode set on the PTP Basic Configuration View page 2 25 3 3 PTP Advanced Configuration The PTP Advanced Configuration View displays common advanced PTP settings and advanced settings that relate specifically to the Boundary Clock mode...

Page 122: ...at boot time All times exchanged in the PTP protocol are either Arbitrary or PTP Times that are Arbitrary cannot be converted to calendar time correctly and may have no connection to external accurate time Times that are PTP can be con verted to accurate calendar time using the UTC offset The default is Arbitrary because the switch does not boot with a valid calendar time It can be changed for int...

Page 123: ...ngs on the PTP Advanced Configuration View page are associated with the mode set on the PTP Basic Configuration View page Note The Current UTC Valid Current UTC Offset and Current Timescale values are not displayed on the View or Modify pages when PTP is currently disabled or in transparent mode because they do not apply 2 25 3 4 Status The PTP Status and Information page displays read only inform...

Page 124: ...n be converted to a calendar time using the Current UTC offset Current Announce Interval This only applies to Boundary Clock mode This is the log2 value that sets the interval for how often to announce the switch as an eligible PTP Master The default value of 1 is every 2 seconds The current value is dynamically updated by the PTP protocol and may differ from the setting Current Announce Timeout T...

Page 125: ...ult value of 1 is twice per second The slave value is dynamically updated by the PTP protocol and may differ from the setting Slave Delay Request Interval This only applies to Boundary Clock mode This log2 value determines how often the switch will request a path delay measurement from its Master The default value of 0 is once per second The slave value is dynamically updated by the PTP protocol a...

Page 126: ...s are dropped by the selected ports Ingress VID Filtering for Ports Specifies whether or not to filter out ingress frames when a VID violation is detected on the selected ports Primary Management VLAN The default egress VLAN used for communications initiated by the switch i e DHCP requests VLAN Groups VLAN ID Displays the VLAN identification for the group members The range should be 1 4094 VLAN Na...

Page 127: ...s whether or not the port is a member of the VLAN group Untag on Egress Specifies whether or not egress frames are tagged by the port Click on the Modify button and the following VLAN Configuration page will appear The top table is used for general VLAN changes Once the required changes have been made click on the Update button and then go to the Configuration menu and click on the Save button to ...

Page 128: ...imited to a maximum of 60 configured VLAN groups Note The total number of configured VLAN groups is constrained by system resource usage which varies depending upon network configuration with VLAN port membership count being the most significant factor Note A port is automatically moved to the Default VLAN if no other VLAN contains that port Once the required changes have been made click on the Up...

Page 129: ...LP N Tron Series NT24K Software Manual 2 120 2 27 Help The Help menu provides information on monitoring and configuring the manageable parameters of the device Specific help can be found by using the left hand navigation menu or clicking on the Help link in the top menu ...

Page 130: ...e supply us with as many details about the problem as you can The information you supply will be written on the SO form and supplied to the repair department before your unit arrives This helps us to provide you with the best service in the fastest manner Repairs are completed as soon as possible If you need a quicker turnaround ship the unit to us by air freight We give priority service to equipm...

Page 131: ...WARRANTY OF FITNESS FOR A PARTICULAR PURPOSE OR C WARRANTY AGAINST INFRINGEMENT OF INTELLECTUAL PROPERTY RIGHTS OF A THIRD PARTY WHETHER EXPRESS OR IMPLIED BY LAW COURSE OF DEALING COURSE OF PERFORMANCE USAGE OF TRADE OR OTHERWISE Customer shall be responsible for determining that a Product is suitable for Customer s use and that such use complies with any applicable local state or federal law b T...

Page 132: ...our organization Only alphanumeric and special characters _ and are allowed admin system set location locationname The physical location of the switch Only alphanumeric and special characters _ and are allowed admin system set name switchname Contains the name assigned to the device which allows alphanumeric and special characters _ and only When IP Configuration is DHCP this may be used as the Cl...

Page 133: ...k Subnet mask gateway Gateway address Example CLI admin ip set ip address 192 168 2 212 mask 255 255 255 0 gateway 192 168 2 1 admin ip show Show Internet protocol settings Example CLI admin ip show arl Show ARL Configuration arl show Show ARL Configuration Example CLI arl show Arl Settings Src MAC Address Vlan Sta Drop Blk Loc Destination Ports Applies only to Ports 00 07 af 7d 37 e0 1 Y N N FDB ...

Page 134: ... tables used by the address resolution protocol Options silent Suppress output MUST be the first argument i ifname Specify interface First one if not specified t Temporary ARP entry p Public ARP entry i e proxy ARP entry r Send an ARP request to the host address V routetab Specify route table 0 if not specified Commands a Display the currently existing ARP entries A Delete all the ARP entries d De...

Page 135: ...sole only reboot Reboot the switch and load the most recently saved configuration who Display users currently logged in whoami Show current user info help edit Show editing keys Example CLI help edit Available editing keystrokes Delete current character Ctrl d Delete text up to cursor Ctrl u Delete from cursor to end of line Ctrl k Move to beginning of line Ctrl a Move to end of line Ctrl e Get pr...

Page 136: ...ing without arguments to get help Surround multiple arguments with double quotes Example ping c 3 192 168 2 121 port Port Mirroring configuration display and control port config show portlist Show all port configuration information for the specified ports port config show all Show all port configuration information for all ports on the switch port config show basic portlist Show basic port configu...

Page 137: ...urce Ports A4 portSecurity Port Security portSecurity status set disabled learning locked Set port security status portSecurity status show Show port security status portSecurity intruderLog show Show the contents of the intruder log portSecurity authList show portlist Show the contents of the authorization list ppp Start PPP server available from the serial console only reboot Reboot the switch a...

Page 138: ...REVISED 2018 09 21 APPENDIX A DRAWING NO LP0991 G N Tron Series NT24K Software Manual A 129 System Information Command admin system show Description Show general system information ...

Page 139: ...parameter all or basic specifies how much information to show and the port list parameter can be used to filter the displayed ports This can be a single port a range of ports ex 1 3 or multiple ranges of ports separated by a comma Ports can also be selected by name or by number Note If you want all information for a specific port or set of ports simply call port config show port list If you want o...

Page 140: ...mediate mode Typing will provide the command options available here Once in the IP immediate mode it is easy to change the address configuration Once set the new configuration must be saved for this change to be retained after a reboot Performing a File Transfer File transfers can be initiated through the CLI by using TFTP Protocol Command fileTransfer tftp server ip address transferType UpgradeSy...

Page 141: ...y are not automatically saved to NVRAM and will be discarded at the next power cycle Configuration changes must be saved to be retained across power cycles Command config save Description Save all current changes to the configuration for use after the next power cycle If a Configuration Device is installed the configuration will also be saved to the device ...

Page 142: ...being set by the configuration file will be reset to their default setting In the example below the mode is set to Keep so that other switch settings are not reset to defaults Additional information about the content of the configuration file can be found at the top of any exported configuration file Using Port Numbers Instead of Port Names In a configuration file it is valid to use port numbers i...

Page 143: ...in the imported configuration file then these additional ports will have their settings set to default values if the mode has not been set to Keep Ports on the target switch that do not exist in the configuration file will be added to Default VLAN 1 If the configuration file has extra VLANs with ports that do not exist an error will be generated for each non existent port SystemConfiguration Mode ...

Page 144: ...ion BridgingGroup BridgingConfig MulticastFilters PortList SystemConfiguration BridgingGroup BridgingConfig UnicastFilters PortNumber SystemConfiguration IgmpGroup IgmpConfig ManualRouterPorts SystemConfiguration IgmpGroup IgmpConfig RFilterPorts SystemConfiguration MirrorGroup MirrorConfig RxSourcePorts SystemConfiguration MirrorGroup MirrorConfig TxSourcePorts SystemConfiguration NViewGroup NVie...

Page 145: ...representation of switch version that the settings were exported from Version Optional If present represents the version of the section If not present the default value is used instead of being inherited from the parent section Default 1 MinSwVer Optional String representation of switch version If present ignore settings for the section if switch software version does not meet minimum requirement ...

Page 146: ...Default Ports are validated No Invalid ports are ignored Model Optional If present represents the switch model that the settings were exported from Notes Comments added to this file will not be preserved SystemConfiguration SystemConfiguration Model NT24k DR16 ValidatePorts Yes Convert Auto Mode Delete MinSwVer 1 0 Version 2 CurSwVer 1 9 2 BridgingGroup BridgingConfig AgingTime 300 AgingTime Enabl...

Reviews: