background image

 

                                             

 

 

151

display 

 

Feature 

Command Line 

VLAN Port Configuration 

Port 

Interface 

Configuration 

Switch# conf ter   

Switch(config)# interface gi5 

Switch(config-if)#

 

VLAN Port PVID 

Switch(config-if)# switchport trunk native vlan 2 

Set port default vlan id to 2 success 

Port Accept Frame 

Type 

Switch(config)# inter fa1 

Switch(config-if)# acceptable frame type all 

any kind of frame type is accepted! 

Switch(config-if)# acceptable frame type vlantaggedonly 

only vlan-tag frame is accepted! 

Ingress Filtering (for 

fast Ethernet port 1) 

Switch(config)# interface fa1 

Switch(config-if)# ingress filtering enable 

ingress filtering enable 

Switch(config-if)# ingress filtering disable 

ingress filtering disable 

Egress rule – Untagged 

(for VLAN 2) 

Switch(config-if)# switchport access vlan 2 

switchport access vlan - success 

Egress rule – Tagged 

(for VLAN 2) 

Switch(config-if)# switchport trunk allowed vlan add 2 

Display – Port Ingress 

Rule (PVID, Ingress 

Switch# show interface fa1 

Interface fastethernet1 

Summary of Contents for PMI-110-F2G

Page 1: ...1 PMI 110 F2G User s Manual Version 3 0 Industrial Managed PoE Switch ...

Page 2: ...2 Copyright Notice Copyright 2019 Westermo Network Technologies AB All rights reserved Reproduction in any form or by any means without permission is prohibited ...

Page 3: ...s equipment generates uses and can radiate radio frequency energy and if not installed and used in accordance with the instruction manual may cause harmful interference to radio communications Operation of this equipment in a residential area is likely to cause harmful interference in which case the user will be required to correct the interference at his expense The user is cautioned that changes...

Page 4: ... Preparation for Serial Console 23 3 2 Preparation for Web Interface 24 3 3 Preparation for Telnet Console 27 4 Feature Configuration 30 4 1 Command Line Interface Introduction 32 4 2 Basic Setting 42 4 3 Port Configuration 71 4 4 Power over Ethernet 84 4 5 Network Redundancy 99 4 6 VLAN 138 4 7 PVLAN Configuration 144 4 8 Traffic Prioritization 163 4 9 Multicast Filtering 174 4 10 SNMP 183 4 11 S...

Page 5: ...1 5 2 Westermo Private MIB 234 5 3 Revision History 235 ...

Page 6: ...tandards and can deliver up to 15 4W and 30W power per port to enable the high power requiring devices such as Wireless APs PTZ and dome network cameras etc The two Gigabit Ethernet combo ports provide high speed uplink to connect with higher level backbone switches with network redundancy technology while ensuring the reliability of video transfer through the exclusive 5ms recovery time By suppor...

Page 7: ...0 1000Mbps DDM SFP transceiver for High Quality Monitoring The SFP sockets of the PMI 110 F2G supports 100Mbps and 1000Mbps SFP type fiber transceiver with speed detection and independent indication Moreover it supports DDM Digital Diagnostic Monitoring type SFP transceivers allowing users to diagnose optical cable transmission problem through maintenance and debugging of the optical signal qualit...

Page 8: ... Dual Homing technology By integrating MSR and LACP Link Aggregation Control Protocol the PMI series can enhance the link ability and increase the overall link capacity Two or more Fast Ethernet connections are combined in order to increase the bandwidth and to create a resilient and redundant link Seamless Ring Port Restoration Seamless restoration is a new patented technology which can restore a...

Page 9: ...ome are a single path and the others are aggregated by links where the number of links in a trunk group can be different Users can enhance the link redundancy at different locations in accordance to the need And the link with less speed is more likely to be used as the backup path for restoring the network to full play capacity Link Aggregation Control Protocol Link Aggregation Control Protocol al...

Page 10: ...l network environment the switch supports advanced network features such as Tag VLAN IGMP Snooping Quality of Service QoS Link Aggregation Control Protocol LACP Rate Control etc The PoE switch can be smartly configured through WeDashboard Web Browser SNMP Telnet and RS 232 local console with its command like interface The failure notifications are sent through e mail SNMP trap Local Remote system ...

Page 11: ...Private VLAN GVRP QoS IGMP Snooping Rate Control Online Multi Port Mirroring Advanced DHCP server Client Advanced Security system by Port Security Access IP list SSH and HTTPS Login Event Notification through E mail SNMP trap and SysLog Supports console CLI Web LLDP SNMP RMON and WeDashboard for remote management Multiple event relay output for enhanced device alarm control Hi Pot Isolation Protec...

Page 12: ...shipped with following items PMI 110 F2G One DIN Rail clip attached to the switch One RS 232 DB 9 to RJ 45 console cable Quick Installation Guide QIG If any of the above items is missing or damaged please contact your local sales representative ...

Page 13: ...ormation Following topics are covered in this chapter 2 1Hardware Introduction Dimension Panel Layout Bottom View Rear Side 2 2Wiring Power Inputs 2 3Wiring the Relay Output DO 2 4Wiring the Digital Input DI 2 5Connecting the Surge Lighting Protection 2 6Wiring Ethernet Ports 2 7Wall mounting Installation ...

Page 14: ...10 2 1 Hardware Introduction Dimension PMI 110 F2G w o DIN Rail mounting kit 95 W x 127 D x 160 H PMI 110 F2G w DIN Rail mounting kit 95 W x 136 2 D x 160 H ...

Page 15: ...t Ethernet RJ 45 SFP socket ports 1 RJ 45 for RS232 console System diagnostic LEDs Port LEDs PoE status LEDs Bottom view The bottom side includes 2 4 pin terminal block connectors and 1 chassis grounding screw One of 4 pin terminal block connectors is for power inputs and the rest is ...

Page 16: ...ached DIN rail clip and one lighting screw to make connection with chassis ground and Switch inner lighting protection circuit The product label is also sticked on the bottom side of DIN rail clip in case if it is missed please contact with your sales representive for product change ...

Page 17: ...13 This label indicates that the type of PoE is Type 2 high power PSE and performs PoE powering by Alternative A mode 1 2 3 6 ...

Page 18: ...I 110 F2G provides Power over Ethernet function and is compliant with IEEE802 3af IEEE802 3at standards therefore the input DC voltage should be in the range of DC 46V to DC 57V For the safety issue turn off AC power input source before connecting the AC DC Power supply module and the terminal block connectors Besides don t turn on the source of AC DC power module and make sure all connections wer...

Page 19: ...15 ...

Page 20: ...ay output DO is controlled by the pre defined operating rules To activate relay output function please refer to the CD User s Manual for more Relay Output management information Note The relay contact only supports 0 5 A current DC 24V It is not recommended to apply voltage and current higher than the specifications ...

Page 21: ...ough Ethernet when the signal is changed The signal may trigger and generated by external power switch like as door open trigger switch for control cabinet Note the DI accepts DC type signal and supports isolated input circuit with Digital High Level input DC 11V 30V and Digital Low Level input DC 0V 10V Do not apply voltage that higher than the specification it may cause internal circuit damage o...

Page 22: ...ng protection will malfunction Never install or work on with the equipment or the cabling during the period of its lightning activity 2 6 Wiring Fast Ethernet PoE Ports The PMI PoE Switch support 8 10 100Mbps Fast Ethernet ports with power over Ethernet PoE PSE function and 2 Gigabit 10 100 1000Mbps RJ 45 SFP combo ports Both of Gigabit combo ports provide SFP transceiver plug in with first priori...

Page 23: ...as following table for your reference RJ 45 conductor Type of Signal Polarity of power Note 1 RxD V Alternative A 2 RxD V Alternative A 3 TxD V Alternative A 6 TxD V Alternative A Note The PD device should accept power from either 1 2 3 6 data pairs or 4 5 7 8 spare pairs for the detail information please refer to IEEE 802 3at IEEE 802 3af Power over Ethernet standard Gigabit Ethernet SFP combo po...

Page 24: ...iver and the specification of transceiver The following diagram shows the information captured from WEB user interface Range the specification of Westermo defined Current actual value read from SFP transceiver Tx Power dBm optical strength of received Rx Power dBm optical strength of launched Note The Ethernet Switch has to use UL recognized fiber transceiver with Class 1 Laser LED Diode Note It i...

Page 25: ...caused damage while the Power over Ethernet function is enabled and under working at the ambient temperature 70 C Therefore the device should install at the restriced location like as Control cabinet to prevent any damage Follow the steps below to mount PMI Managed Switch to the DIN Rail track 1 First insert the DIN Rail track upper side into the upper end of DIN Rail clip 2 Lightly push the botto...

Page 26: ...e track reverse the steps above Notes 1 The DIN Rail should compliant with DIN EN50022 standard Using wrong DIN rail may cause unsafe installation 2 For UL Safety consideration the equipment is designed for in building installation only and is not intended to be connected to exposed outside plant networks ...

Page 27: ...ely connect to its embedded HTTP web pages or Telnet console Following topics are covered in this chapter 3 1Preparation for Serial Console 3 2Preparation for Web Interface 3 3Preparation for Telnet console 3 1 Preparation for Serial Console In the unit package Westermo attached one RJ 45 to RS 232 DB 9 console cable Please attach RS 232 DB 9 connector to your PC s COM port connect RJ 45 connector...

Page 28: ...the switch from anywhere on the network Before you attempt to use the embedded web interface to manage switch operation verify that your PMI Managed PoE Switch is properly installed on your network and that every PC on this network can access the switch via the web browser 1 Verify that your network interface card NIC is operational and that your operating system supports TCP IP protocol 2 Wire DC...

Page 29: ...efox on the PC 7 Type http 192 168 2 200 or the IP address of the switch And then press Enter 8 The login screen will appear next 9 Key in user name and the password Default user name is admin and password westermo Click on Enter or OK The Welcome page of the web based management interface will then appear Once you enter the web based management interface you can freely change ...

Page 30: ...e configuration commands will be secured and will be hard for the hackers to sniff the login password and configuration commands Launch the web browser and Login 1 Launch the web browser Internet Explorer or Mozilla Firefox on the PC 2 Type https 192 168 2 200 or the IP address of the switch And then press Enter 3 The popup screen will appear and request you to trust the secured HTTPS connection d...

Page 31: ... the Telnet 192 168 2 200 or the IP address of the switch And then press Enter 3 3 2 SSH Secure Shell Westermo PMI managed Switch also support SSH console You can remotely connect to the switch by command line interface The SSH connection can secure all the configuration commands you sent to the switch SSH is a client server architecture while the Switch is the SSH server When you want to make SSH...

Page 32: ...atham putty download html The copyright of PuTTY 1 Open SSH Client PuTTY In the Session configuration enter the Host Name IP Address of your PMI switch and Port number default 22 Choose the SSH protocol Then click on Open to start the SSH session console ...

Page 33: ...er few seconds the SSH connection to Switch is opened 4 Type the Login Name and its Password The default Login Name and Password are admin westermo 5 All the commands you see in SSH are the same as the CLI commands you see via RS232 console The next chapter will introduce in detail how to use command line to configure the switch ...

Page 34: ...itch via the network You can choose Telnet or Web based management You just need to know the device s IP address Then you can remotely connect to its embedded HTML web pages or Telnet console Westermo web management page is developed by CGI Common Gateway Interface It allows you to use a standard web browser such as Microsoft Internet Explorer or Mozilla to configure and interrogate the switch fro...

Page 35: ...31 4 5Network Redundancy 4 6VLAN 4 7Private VLAN 4 8Traffic Prioritization 4 9Multicast Filtering 4 10SNMP 4 11Security 4 12Warning 4 13Monitor and Diag 4 14Device Front Panel 4 15Save 4 16Logout ...

Page 36: ...nd exit These modes are User EXEC Privileged EXEC Global Configuration Port VLAN Interface Configuration modes User EXEC mode As long as you login the switch by CLI You are in the User EXEC mode You can ping telnet remote device and show some basic information Type enable to enter next mode exit to logout to see the command list Switch enable Turn on privileged mode command exit Exit current mode ...

Page 37: ...n the User EXEC mode then you can enter the Privileged EXEC mode In this mode the system allows you to view current configuration reset default reload switch show system information save configuration and enter the global configuration mode ...

Page 38: ...y control end End current mode and change to enable mode exit Exit current mode and down to previous mode hardware hardware function list Print command list no Negate a command or set its defaults pager Terminal pager ping Send echo messages quit Exit current mode and down to previous mode reboot Reboot system reload copy a default config file to replace the current one show Show running system in...

Page 39: ...gvrp GARP VLAN Registration Protocol hostname Set system s network name interface Select an interface to configure ip IP information lacp Link Aggregation Control Protocol list Print command list lldp Link Layer Discovery Protocol log Logging control mac address table mac address table mirror Port mirroring modbus Modbus TCP Slave multiple super ring Configure Multiple Super Ring nameserver DNS Se...

Page 40: ...you can configure port settings The port interface name for fast Ethernet port 1 is fa1 fast Ethernet 7 is fa7 fast Ethernet port 8 is fa8 Gigabit Ethernet port 9 is gi9 and port 10 is gi10 Type the interface name accordingly when you want to enter certain interface configuration mode Type exit to leave current level Type to see the command list ...

Page 41: ...o enable mode exit Exit current mode and down to previous mode flowcontrol Sets the flow control value for an interface garp General Attribute Registration Protocol ingress 802 1Q ingress filtering features lacp Link Aggregation Control Protocol list Print command list loopback Specifies the loopback mode of operation for a port mdix Configure mdix state of a given port mtu Specifies the MTU on a ...

Page 42: ...ble to enter privileged EXEC mode Switch Privileged EXEC In this mode the system allows you to view current configuration reset default reload switch show system information save Enter Type enable in User EXEC mode Exec Type disable to exit to user EXEC mode Switch Switch config interface vlan 1 Switch config if description Interface specific description end End current mode and change to enable m...

Page 43: ...e interface IFNAME VLAN VID to enter interface configuration mode Switch config Port Interface configuration In this mode you can configure port related settings Enter Type interface IFNAME in global configuration mode Exit Type exit or Ctrl Z to global configuration mode Type end to privileged EXEC mode Switch config if VLAN Interface Configuration In this mode you can configure settings for spec...

Page 44: ...ailable command in the next clicking on tab key can help to finish typing soon Ctrl C To stop executing the unfinished command Ctrl S To lock the screen of the terminal You can t input any command Ctrl Q To unlock the screen which is locked by Ctrl S Ctrl Z To exit configuration mode Switch config a access list Add an access list entry administrator Administrator account setting arp Set a static A...

Page 45: ...en multiple users want to configure the switch If the administrator is in configuration mode then the Web users can t change the settings PMI Managed Switch allows only one administrator to configure the switch at a time ...

Page 46: ... reboot the system Following commands are included in this group 4 2 1 Switch Setting 4 2 2 Admin Password 4 2 3 IP Configuration 4 2 4 Time Setting 4 2 5 DHCP Server 4 2 6 Backup and Restore 4 2 7 Firmware Upgrade 4 2 8 Factory Default 4 2 9 System Reboot 4 2 10 CLI Commands for Basic Setting 4 2 1 Switch Basic Setting You can assign System name Location Contact and view system information Below ...

Page 47: ...aracters you can input are 64 System OID The SNMP object ID of the switch You can follow the path to find its private MIB in MIB browser Note When you attempt to view private MIB you should compile private MIB files into your MIB browser first System Description the name of this managed product Firmware Version Display the firmware version installed in this device MAC Address Display unique hardwa...

Page 48: ...44 4 2 2 Admin Password You can change the user name and the password here to enhance security Figure 4 2 2 1 Web UI sample ...

Page 49: ...ord here The default setting is westermo Confirm Password You need to type the new password again to confirm it Once you finish configuring the settings click on Apply to apply your configuration Local User List It will display the list of user name and permission You can select and remove the user by click Remove user RADIUS Server Secondary RADIUS Server RADIUS Server The IP address of Radius ...

Page 50: ...Authentication Authorization and Accounting systems for connecting to network services The fundamental purpose of TACACS is to provide an efficient and secure mechanism for user account management Figure 4 2 2 2 Popup alert window for Incorrect Username 4 2 3 IP Configuration This function allows users to configure the switch s IP address settings Below figure is the UI of IP configuraation ...

Page 51: ...t function is enabled you don t need to assign an IP address to the PMI as it will be overwritten by DHCP server and shown here The default IP is 192 168 2 200 Subnet Mask You can assign the subnet mask for the IP address here If DHCP Client function is enabled you don t need to assign the subnet mask The default Subnet Mask is 255 255 255 0 Note In the CLI we use the enabled bit of the subnet mas...

Page 52: ...are separated by colons and the length of IPv6 address is 128bits An example of an IPv6 address is 2001 0db8 85a3 0000 0000 8a2e 0370 7334 The default IP address of MRI 128 F4G Managed Switch is assigned from MAC address for example fe80 0 0 0 212 77ff fe61 8787 and the Leading zeroes in a group may be omitted Thus the example address may be written as fe80 212 77ff fe61 8787 IPv6 Address field ty...

Page 53: ...ess listing IPv6 Neighbor Table shows the IPv6 address of neighbor connected interface MAC address of remote IPv6 device and current state of neighbor device The system will update IPv6 Neighbor Table automatically and user also can click the icon Reload to refresh the table 4 2 4 Time Setting Time Setting source allow user to set the time manually or through NTP server Network Time Protocol NTP i...

Page 54: ...able the NTP client service NTP client will be automatically enabled if you change Time source to NTP Client The system will send request packet to acquire current time from the NTP server you assigned IEEE 1588 With the Precision Time Protocol IEEE 1588 there is now for the first time a standard available which makes it possible to synchronize the clocks of different end devices over a network at...

Page 55: ...reenwich Mean Time Switch config clock timezone 01 GMT 12 00 Eniwetok Kwajalein 02 GMT 11 00 Midway Island Samoa 03 GMT 10 00 Hawaii 04 GMT 09 00 Alaska 05 GMT 08 00 Pacific Time US Canada Tijuana 06 GMT 07 00 Arizona 07 GMT 07 00 Mountain Time US Canada 08 GMT 06 00 Central America 09 GMT 06 00 Central Time US Canada 10 GMT 06 00 Mexico City 11 GMT 06 00 Saskatchewan 12 GMT 05 00 Bogota Lima Quit...

Page 56: ...Madrid Paris 30 GMT 01 00 Sarajevo Skopje Sofija Vilnius Warsaw Zagreb 31 GMT 01 00 West Central Africa 32 GMT 02 00 Athens Istanbul Minsk 33 GMT 02 00 Bucharest 34 GMT 02 00 Cairo 35 GMT 02 00 Harare Pretoria 36 GMT 02 00 Helsinki Riga Tallinn 37 GMT 02 00 Jerusalem 38 GMT 03 00 Baghdad 39 GMT 03 00 Kuwait Riyadh 40 GMT 03 00 Moscow St Petersburg Volgograd 41 GMT 03 00 Nairobi 42 GMT 03 30 Tehran...

Page 57: ... GMT 09 30 Adelaide 65 GMT 09 30 Darwin 66 GMT 10 00 Brisbane 67 GMT 10 00 Canberra Melbourne Sydney 68 GMT 10 00 Guam Port Moresby 69 GMT 10 00 Hobart 70 GMT 10 00 Vladivostok 71 GMT 11 00 Magadan Solomon Is New Caledonia 72 GMT 12 00 Aukland Wellington 73 GMT 12 00 Fiji Kamchatka Marshall Is 74 GMT 13 00 Nuku alofa Daylight Saving Time click the check box to enable the Daylight Saving Function a...

Page 58: ...er function PMI switch will assign a new IP address to link partners DHCP Server configuration After selecting to enable DHCP Server function type in the Network IP address for the DHCP server IP pool Subnet Mask Default Gateway address and Lease Time for client Once you have finished the configuration click Apply to activate the new configuration ...

Page 59: ...ove an IP address from the Excluded Address List by clicking Add or Remove Manual Binding PMI Switch provides a MAC address and IP address binding and removing function You can type in the specified IP and MAC address and then click Add to add a new MAC IP address binding rule for a specified link partner like PLC or any device without DHCP client function To remove from the binding list just sele...

Page 60: ...nd IP address that was assigned by PMI Switch Click the Reload button to refresh the listing DHCP Relay Agent You can select to Enable or Disable DHCP relay agent function and then select the modification type of option 82 field Helper Address there are 4 fields for the DHCP server s IP address You can filll ...

Page 61: ...ll be modified by the policy and forwarded to DHCP server through the gateway port Relay Policy Drop Drops the option 82 field and do not add any option 82 field Keep Keeps the original option 82 field and forwards to server Replace Replaces the existing option 82 field and adds new option 82 field This is the default setting 4 2 6 Backup and Restore ...

Page 62: ... File Click the Browse button to select the previously saved backup configuration file After locating the configuration file click the Upload button Save Settings to File Click the Save button to save the configuration file TFTP In this mode the switch acts as TFTP client Before you do so make sure that your TFTP server is ready Then please type the IP address of TFTP Server and Backup configurati...

Page 63: ...olders of the path to the target file do not allow you to input space key Note point to the wrong file will cause the entire configuration missed 4 2 7 Firmware Upgrade In this section you can update the latest firmware for your switch Westermo provides the latest firmware in Westermo Web site The new firmware may Technical Tip Default Configuration File The switch provides the default configurati...

Page 64: ...hed network users before you perform this function There are 3 modes for users to backup restore the configuration file Local File mode and TFTP Server and SFTP mode Local File This section allows you to upload a firmware image that is stored locally on your computer Select File Select a firmware image from your computer Click Upgrade to begin upgrading the firmware Click Cancel to clear the selec...

Page 65: ...P address of the SFTP server where your firmware image is stored Port Insert the TCP Port number File Name This is the file name of the firmware image Name Insert the User name for SFTP Password Insert the password of SFTP Click Upgrade to begin upgrading the firmware Click Cancel to clear the selected file After the firmware has upgraded the switch will reboot automatically Please remind the atta...

Page 66: ...and Click on OK to close the screen Then please go to Reboot page to reboot the switch Click on OK The system will then auto reboot the device Note If you already configured the IP of your device to other IP address when you use this command by CLI and Web UI our software will not reset the IP address to default IP The system will remain the IP address so that you can still connect the switch via ...

Page 67: ...ce Note Remember to click on Save button to save your settings Otherwise the settings you made will be gone when the switch is powered off Figure 4 2 9 1 Main screen for Rebooting Click on Yes Then the switch will be rebooted immediately Figure 4 2 9 2 screen appears when rebooting the switch 4 2 9 CLI Commands for Basic Setting Feature Command Line Switch Setting ...

Page 68: ...port westermo se Display SWITCH show snmp server name SWITCH SWITCH show snmp server location Sweden SWITCH show snmp server contact support westermo se SWITCH show version 0 31 20061218 Switch show hardware mac MAC Address 00 07 7c e6 00 00 Admin Password User Name and Password SWITCH config administrator NAME Administrator account name SWITCH config administrator orwell PASSWORD Administrator ac...

Page 69: ... 1 SWITCH config if ip address dhcp SWITCH config if ip address 192 168 2 8 24 SWITCH config if ip dhcp client SWITCH config if ip dhcp client renew Switch config if ipv6 address IPv6 configuration X X X X M IPv6 address e g 3ffe 506 1 48 Switch config if ipv6 address 3ffe 506 1 48 Gateway SWITCH config ip route 0 0 0 0 0 192 168 2 254 24 Remove Gateway SWITCH config no ip route 0 0 0 0 0 192 168 ...

Page 70: ...TCH config clock timezone 26 Sun Jan 1 04 13 24 2006 GMT Greenwich Mean Time Dublin Edinburgh Lisbon London Note By typing clock timezone you can see the timezone list Then choose the number of the timezone you want to select Daylight Saving Switch config clock summer time 4 0 2 12 00 4 0 3 12 00 Clock summer time start week of month start weekday start month start Hour Min end week of month end w...

Page 71: ...s Network time protocol Status Disabled Primary peer N A Secondary peer N A SWITCH show clock Sun Jan 1 04 14 19 2006 GMT Greenwich Mean Time Dublin Edinburgh Lisbon London SWITCH show clock timezone clock timezone 26 GMT Greenwich Mean Time Dublin Edinburgh Lisbon London DHCP Server DHCP Server configuration Enable DHCP Server on PMI Switch Switch Switch configure terminal Switch config router dh...

Page 72: ...h configure terminal Switch config router dhcp Switch config dhcp service dhcp Switch config dhcp ip dhcp relay information option Enable DHCP Relay policy Switch config dhcp ip dhcp relay information policy replace drop Relay Policy keep Drop Keep Replace option82 field replace Show DHCP server information Switch show ip dhcp server statistics Switch show ip dhcp server statistics DHCP Server ON ...

Page 73: ...t conf Writing Configuration OK Note 1 To backup the latest startup configuration file you should save current settings to flash first You can refer to 4 12 to see how to save settings to the flash Note 2 192 168 2 33 is the TFTP server s IP and default conf is name of the configuration file Your environment may use different IP addresses or different file name Please type target TFTP server IP or...

Page 74: ... overwrite tftp 192 168 2 33 pmi 110 bin binary code file name Firmware upgrading don t turn off the switch Tftping file pmi 110 bin binary code file name Firmware upgrading Firmware upgrade success Rebooting Factory Default Factory Default Switch reload default config file Reload OK Switch reboot System Reboot Reboot Switch reboot ...

Page 75: ...tion settings It also allows you to view port status and aggregation information Following commands are included in this group 4 3 1 Port Control 4 3 2 Port Status 4 3 3 Rate Control 4 3 4 Port Trunking 4 3 5 Command Lines for Port Configuration 4 3 1 Port Control Port Control commands allow you to enable disable port state or configure the port auto negotiation speed duplex and flow control ...

Page 76: ...rt Below are the selections you can choose Fast Ethernet Port 1 8 fa1 fa8 AutoNegotiation 10M Full Duplex 10 Full 10M Half Duplex 10 Half 100M Full Duplex 100 Full and 100M Half Duplex 100 Half Gigabit Ethernet Port 9 10 gi9 gi10 AutoNegotiation 10M Full Duplex 10 Full 10M Half Duplex 10 Half 100M Full Duplex 100 Full 100M Half Duplex 100 Half 1000M Full Duplex 1000 Full 1000M Half Duplex 1000 Hal...

Page 77: ...racters length is 130 Once you finish configuring the settings click on Apply to save the configuration Technical Tips If both ends are not at the same speed they can t link with each other If both ends are not in the same duplex mode they will be connected by half mode 4 3 2 Port Status Port Status shows you current port status The description of the columns is as below SFP Vendor Vendor name of ...

Page 78: ...r of DDM SFP transceiver Rx Power dBm The specification and current received power of DDM SFP transceiver Note 1 Most of the SFP transceivers provide vendor information which allows your switch to read it The UI can display vendor name wave length and distance of all Westermo SFP transceiver family If you see Unknown info it may mean that the vendor doesn t provide their information or that the in...

Page 79: ...ess Rule listed here include Broadcast Only Broadcast and multicast Broadcast Multicast and Unknown Unicast or All The packet types of the Egress Rule outgoing only support all packet types Rate This column allows you to manually assign the limit rate of the port Valid values are from 1Mbps 100Mbps for fast Ethernet ports and gigabit Ethernet ports The step of the rate is 1 Mbps Default value of I...

Page 80: ...a There are some different descriptions for the port trunking Different manufacturers may use different descriptions for their products like Link Aggregation Group LAG Link Aggregation Control Protocol Ethernet Trunk Ether Channel etc Most of the implementations now conform to IEEE standard 802 3ad The aggregated ports can interconnect to the other switch which also supports Port Trunking Westermo...

Page 81: ...er ports should use same speed duplex max trunk members for 100Mbps would be 8 and 2 for gigabit Group ID Group ID is the ID for the port trunking group Ports with same group ID are in the same group Type Static and 802 3ad LACP Each Trunk Group can only support Static or 802 3ad LACP Choose the type you need here ...

Page 82: ...t up in Aggregation Setting Type Static or LACP set up in Aggregation Setting Aggregated When LACP links well you can see the member ports in aggregated column Individual When LACP is enabled member ports of LACP group which are not connected to correct LACP member ports will be displayed in the Individual column Link Down When LACP is enabled member ports of LACP group which are not ...

Page 83: ...wn now Switch config if no shutdown Enable port state Port1 Link Change to DOWN Port1 Link Change to UP interface fastethernet1 is up now Switch config if Port1 Link Change to UP Port Control Auto Negotiation Switch config interface fa1 Switch config if auto negotiation Auto negotiation of port 1 is enabled Port Control Force Speed Duplex Switch config if speed 100 Port1 Link Change to DOWN set th...

Page 84: ...for port 1 set ok Switch config if flowcontrol off Flowcontrol off for port 1 set ok Port Status Port Status Switch show interface fa1 Interface fastethernet1 Administrative Status Enable Operating Status Connected Duplex Full Speed 100 Flow Control off Default Port VLAN ID 1 Ingress Filtering Disabled Acceptable Frame Type All Port Security Disabled Auto Negotiation Disable Loopback Mode None ...

Page 85: ...ss or Egress Switch config if rate limit egress Outgoing packets ingress Incoming packets Note To enable rate control you should select the Ingress or Egress rule first then assign the packet type and bandwidth Rate Control Filter Packet Type Switch config if rate limit ingress mode all Limit all frames broadcast Limit Broadcast frames flooded unicast Limit Broadcast Multicast and flooded unicast ...

Page 86: ...n LACP 802 3ad is enabled Note The interface list is fa1 fa3 5 gi8 10 Note different speed port can t be aggregated together Static Trunk Switch config trunk group 2 fa6 7 Trunk group 2 enable ok Display LACP PMI Switch show lacp internal LACP group 1 internal information LACP Port Admin Oper Port Port Priority Key Key State 8 1 8 8 0x45 9 1 9 9 0x45 10 1 10 10 0x45 LACP group 2 is inactive LACP g...

Page 87: ...ividual P In channel D Port Down Trunk Group GroupID Protocol Ports 1 LACP 8 D 9 D 10 D Switch show trunk group 2 FLAGS I Individual P In channel D Port Down Trunk Group GroupID Protocol Ports 2 Static 6 D 7 P Switch ...

Page 88: ...port 1 to port 8 each port with the ability to deliver 30W to compatible IEEE 802 3at standard and provides 120w power budget for hall system Therefore select and install the PoE PD system is The following commands are included in this section 4 4 1 PoE Control 4 4 2 PoE Scheduling 4 4 3 PoE Status 4 4 4 Command Line for PoE control 4 4 1 PoE Control The PoE contrl includes 3 parts PoE System Port...

Page 89: ...ed to the power input Here we suggest uses same specification of power supply If the power supply with different output voltage it may casue system draw more current from one power model which with higher voltage Warning Water Level the warning level is for system warning to alerts user when PoE system drawing power that meet the warning level user defined Port Configuration Dialogue ...

Page 90: ... RJ 45 uses the forced mode must be carefully Power Budget W it allows user assigne the budget control in this field Power priority it supports 3 levels Critical High and low If the system PoE consumption is over the system budgte control the PoE system will turn off low priorty port PoE function until the consumption is becomes smaller than the system budget PD Status Detection Diaglogue ...

Page 91: ...ts duration time The unit is second Most of PD system IP camera will take at least 40 50 seconds Here we suggest user sets the cycle time to 90 seconds prevents any wrong suppose Once user defined this function the PoE Switch will request PD system and turn off PoE power if PD system does not echo the request After the duration time cycle time the PoE switch will start request PD again This functi...

Page 92: ... 30W high power output may cause the PoE disable automatically due the output current protect mechanism activated 0 686A current limite To avoid this issue we suggest adjust the power supply output to 52V DC or higher In usually the Switching power supply adopted adjust resistor for voltage fine tune 4 4 2 PoE Scheduling The PoE Scheduling control is a powerful function to help you save power and ...

Page 93: ...ck As this result be sure the system clock have configured as your local time for the reference of scheduling control 4 4 3 PoE Status The PoE Status page shows the system PoE status and the operating status of each PoE Port The information includes PoE mode Operation status and PD class Power Consumption Voltage and Current For system information it includes the setting of system power budget PoE...

Page 94: ...oe system Parameters Command Mode Enable mode Description Display the status of the PoE system Examples Switch enable Switch show poe system PoE System PoE Admin Enable PoE Hardward Normal PoE Input Voltage 47 700 V Output power 0 00 Watts Power Budget ...

Page 95: ...face Examples Switch enable Switch show poe interface fa1 Interface fastethernet1 POE Port 1 Control Mode User Disable Powering Mode 802 3af Operation Status Off Detection Status Valid Classification N A Priority Highest Output Power 0 0 Watts Voltage 0 0 V Current 0 mA Power Budget Budget 32 0 Watts effective 0 Watts Warning water level N A Utilization 0 Event Normal Syntax show poe pd_detect Par...

Page 96: ... Cycle Time 10 Host 2 Target IP 192 168 2 200 Cycle Time 20 Host 3 Target IP 192 168 2 15 Cycle Time 30 Host 4 Target IP 192 168 2 20 Cycle Time 40 Syntax show poe schedule IFNAME Parameters IFNAME interface name Command Mode Enable mode Description Display the status of schedule of interface Examples Switch show poe schedule fa1 Interface fastethernet1 POE Schedule Status Disable ...

Page 97: ...power if and only if the attached PD comply with IEEE 802 3af forced deliver power no maater what PD attached Command Mode Interface mode Description Set the Powring mode of PoE Examples EX 1 Set 802 3af powring mode Switch config poe powering mode 802 3af EX 2 Set forced powering mode Switch config poe powering mode forced Syntax poe powering mode 802 3at 2 event lldp Parameters 2 event deliver p...

Page 98: ...Command Mode Interface mode Description Set the control mode of port Examples Set PoE port 2 to user mode EX 1 Switch config interface fa2 Switch config if poe control mode user Set PoE port 2 to schedule mode EX 2 Switch config if poe control mode schedule Syntax poe user enable disable Parameters enable enable port in user mode disable disable port in user mode Command Mode Interface mode Descri...

Page 99: ...type IPCam 1 Syntax poe budget POWER Parameters POWER 0 4 30 Command Mode Interface mode Description Set the port budget The max budget is different between 802 3af 802 3at and forced powering mode The max budget of 802 3af powering mode is 15 4 The max budget of 802 3at powering mode is 30 The max budget of force powering mode is 30 Examples Set the max value of power consumption to 12 W with man...

Page 100: ...r situation Examples Set the priority to critical Switch config if poe priority critical Syntax poe schedule weekday hour Parameters Weekday Valid range 0 6 0 Sunday 1 Monday 6 Saturday Hour Valid range 0 23 Valid format a b c d Command Mode Interface mode Description Add a day schedule to an interface Examples Add a schedule which enables PoE function at hour 1 3 5 and 10 to 23 on Sunday Switch c...

Page 101: ...tion mode Description Set the warning water level of total power budget Examples Set the warning water level to 60 Switch config if poe budget warning 60 Syntax poe pd_detect enable disable Parameters enable enable PD Status Detection function disable disable PD Status Detection function Command Mode Configuration mode Description Enable Disable the PD Status Detection function Examples To enable ...

Page 102: ... of 10 Command Mode Configuration mode Description Apply a rule of PD Status Detection Examples Apply a rule which ping 192 160 1 2 per 20 seconds And if 192 160 1 2 is timeout pd status detection will re enable the PoE Switch config poe pd_detect 192 160 1 2 20 ...

Page 103: ...r RSTP cloud together which is also known as Auto Ring Coupling To become backwards compatible with the Legacy Super Ring technology implemented in PMI switches PMI Switch also supports Super Ring Client mode The Super Ring ports can pass through Super Ring control packets extremely well and works with Super Ring Besides ring technology all PMI Managed Switch support 802 1D 2004 version Rapid Span...

Page 104: ...100 4 5 5 MSTP Port Configuration 4 5 6 MSTP information 4 5 7 Multiple Super Ring 4 5 8 Multiple Super Ring Info 4 5 9 Command Lines for Network Redundancy 4 5 10 Command Lines for Network Redundancy ...

Page 105: ...ters for STP and RSTP After select the MSTP mode please go to MSTP Configuration page RSTP is the abbreviation of Rapid Spanning Tree Protocol If a switch has more than one path to a destination it will lead to message loops that can generate broadcast storms and quickly bog down a network The spanning tree was created to combat the negative effects of message loops in switched networks A spanning...

Page 106: ... both RSTP and STP all switches that support RSTP are also backward compatible with switches that support only STP Bridge Configuration Bridge Address This shows the switch s MAC address Priority 0 61440 RSTP uses bridge ID to determine the root bridge the bridge with the highest bridge ID becomes the root bridge The bridge ID is composed of bridge priority and bridge MAC address So that the bridg...

Page 107: ...ology Hello Time 1 10 Enter a value from 1 to 10 seconds here This is a periodic timer that drives the switch to send out BPDU Bridge Protocol Data Unit packet to check current STP status The root bridge of the spanning tree topology periodically sends out a hello message to other devices on the network to check if the topology is healthy The hello time is the amount of time the root has waited du...

Page 108: ...guration Select the port you want to configure and you will be able to view current setting and status of the port STP State Chosse Enable or Disable for the port Path Cost Enter a number between 1 and 200 000 000 This value represents the cost of the path to the other bridge from the transmitting bridge at the specified port ...

Page 109: ... the link to be manipulated administratively Auto means to auto select P2P or Share mode P2P means P2P is enabled the 2 ends work at Full duplex mode While Share is enabled it means P2P is disabled the 2 ends may connect through a share media and work in Half duplex mode Edge A port directly connected to the end stations cannot create a bridging loop in the network To configure this port as an edg...

Page 110: ... Root Priority Root Port Root Path Cost and the Max Age Hello Time and Forward Delay of BPDU sent from the root switch Port Information You can see port Role Port State Path Cost Port Priority Oper P2P mode Oper edge port mode and Aggregated ID Type ...

Page 111: ... belong to different group acts as root or designate switch generate BPDU for the network to maintain the forwarding table of the spanning tree With MSTP it can also provide multiple forwarding paths and enable load balancing Understand the architecture allows you to maintain the correct spanning tree and operate effectively One VLAN can be mapped to a Multiple Spanning Tree Instance MSTI The maxi...

Page 112: ... all adjuacent MST regions and acts as a virtual bridge node for communications with STP or RSTP nodes in the global network MSTP connects all bridges and LAN segments with a single Common and Internal Spanning Tree CIST The CIST is formed as a result of the running spanning tree algorithm between switches that support the STP RSTP MSTP protocols ...

Page 113: ... In this network a Region may have different instances and its own forwarding path and table however it acts as a single Brige of CST To configure the MSTP setting the STP Mode of the STP Configuration page should be changed to MSTP mode first ...

Page 114: ... switches within the Region should have the same Region and Revision leve Region Name The name for the Region Maximum length 32 characters Revision The revision for the Region Range 0 65535 Default 0 Once you finish your configuration click on Apply to apply your settings New MST Instance This page allows mapping the VLAN to Instance and assign priority to the instance Before mapping VLAN to Insta...

Page 115: ...n the priority to the instance After finish your configuration click on Add to apply your settings Current MST Instance Configuration This page allows you to see the current MST Instance Configuration you added Click on Apply to apply the setting You can Remove the instance or Reload the configuration display in this page 4 5 5 MSTP Port Configuration ...

Page 116: ...00 This value represents the cost of the path to the other bridge from the transmitting bridge at the specified port Priority Enter a value between 0 and 240 using multiples of 16 This is the value that decides which port should be blocked by priority in a LAN Link Type There are 3 types for you select Auto P2P and Share Some of the rapid state transitions that are possible within RSTP depend upon...

Page 117: ...s an edge port set the port to the Enable state When the non bridge device connects an admin edge port this port will be in blocking state and turn to forwarding state in 4 seconds Once you finish your configuration click on Apply to save your settings 4 5 6 MSTP Information This page allows you to see the current MSTP information Choose the Instance ID first If the instance is not added the infor...

Page 118: ...facilitates PMI Managed Switch to connect with a core managed switch easily and conveniently With RDH technology you can also couple several Rapid Super Rings or RSTP cloud together which is also known as Auto Ring Coupling TrunkRing technology allows integrate MSR with LACP Port Trunking The LACP Trunk aggregated ports is a virtual interface and it can work as the Ring port of the MSR MultiRing i...

Page 119: ...ell and works with Super Ring New Ring To create a Rapdis Super Ring Just fill in the Ring ID which has range from 0 to 31 If the name field is left blank the name of this ring will be automatically naming with Ring ID Ring Configuration ID Once a Ring is created This appears and can not be changed Name This field will show the name of the Ring If it is not filled in when creating it will be autom...

Page 120: ...ected to be Ring Ports For Ring Master one of the ring ports will become the forwarding port and the other one will become the blocking port Path Cost Change the Path Cost of Ring Port1 If this switch is the Ring Master of a Ring then it determines the blocking port The Port with higher Path Cost in the two ring ports will become the blocking port If the Path Cost is the same the port with larger ...

Page 121: ... home to the same foreign network The Extension ID range from 0 to 7 With the combination of Extension ID 0 to 7 and Ring ID 0 to 31 we can now support up to 256 8 32 different dual homing rings Ring status To enable disable the Ring Please remember to enable the ring after you add it Click Apply to apply the settings Click Remove Selected to remove the setting selected Click Cancel to clear the s...

Page 122: ...cation Note Always remember to go to Save page to save the settings Otherwise the settings you made will be lost when the switch is powered off Rapid Dual Homing Port Configration Ring ID The Ring Identifier referring to this Ring Auto Detect Enable RDH auto detect RDH port mode Port Enable RDH on specific ports Click Apply to apply the setting Click Cancel to clear the modification ...

Page 123: ...f any one of the link in this Ring is broken then the status will be Abnormal RM MAC The MAC address of Ring Master of this Ring It helps to find the redundant path Blocking Port This field shows which is blocked port of RM Role Transition Count This means how many times this switch has changed its Role from nonRM to RM or from RM to nonRM Role state Transition Count This number means how many tim...

Page 124: ... Protection mode Node Role If the switch is the owner of the Ring Protection Link RPL of the ring set this to RPL Owner If not set this to Ring Node There must be one and only one RPL Owner in the ring Control Channel The VLAN used as the ring s control channel The control channel is used to transmit and receive Ring Automatic Protection Switching R APS messages Ring Port 1 The first port connecte...

Page 125: ... Owner RPL Neighbour Ring Node Control Channel Vlan ID from 1 4094 Sub Ring Without Virtual Channel True or False Virtual Channel of Sub Ring Vlan ID from 1 4094 Ring Port1 The firt port of the ring Ring Port2 The second port of the ring RPL Port The blocking port of the ring ports Revertive Mode Revertive will take the reversion action when ring nodes recover and no external requests are active M...

Page 126: ...r Period Guard Timer period in ms Guard Timer Remain Guard Timer remain in ms Statistics Ring ID The Ring Identifier referring to this Ring R APS FS Tx Forced Switch Tx R APS FS Rx Force Switch Rx R APS SF Tx Signal Fail Tx R APS SF Rx Signal Fail Rx R APS MS Tx Manual Switch Tx R APS MS Rx Manual Switch Rx R APS NR RB Tx No Request RPL blocked Tx R APS NR RB Rx No Request RPL blocked Rx R APS NR ...

Page 127: ...ed it will show Loop Detected and Disabled information and the link indicator will not turn off and also the port is disabled by system Once the looping is fixed the blocked port will keep at blocked state and must be enabled by manual or perform system reset to recovery it Reload refresh and update the port status information 4 5 12 Command Lines Feature Command Line Global STP RSTP MSTP Enable S...

Page 128: ...l the timing in one time Forward Delay Switch config spanning tree forward time 4 30 Valid range is 4 30 seconds Switch config spanning tree forward time 15 Max Age Switch config spanning tree max age 6 40 Valid range is 6 40 seconds Switch config spanning tree max age 20 Hello Time Switch config spanning tree hello time 1 10 Valid range is 1 10 seconds Switch config spanning tree hello time 2 MST...

Page 129: ...e and apply all changes exit exit current mode and apply all changes instance the mst instance list Print command list name the name of mst region no Negate a command or set its defaults quit exit current mode and apply all changes revision the revision of mst region show show mst configuration Region Configuration Region Name Switch config mst name NAME the name string Switch config mst name West...

Page 130: ...isplay Current MST Configuraion Switch config mst show current Current MST configuration Name Westermo Revision 65535 Instance Vlans Mapped 0 1 4 4094 1 2 2 3 Config HMAC MD5 Digest 0xB41829F9030A054FB74EF7A8587FF58D Remove Region Name Switch config mst no name name configure revision revision configure instance the mst instance Switch config mst no name Remove Instance example Switch config mst n...

Page 131: ...and go to the configuration mode Switch config mst quit apply all mst configuration changes Switch config Apply the setting and go to the global mode Switch config mst end apply all mst configuration changes Switch Abort the Setting and go to the configuration mode Show Pending to see the new settings are Switch config mst abort discard all mst configuration changes Switch config spanning tree mst...

Page 132: ...ion Mode Port Configuraiton Switch config interface fa1 Switch config if spanning tree bpdufilter a secure BPDU process on edge port interfcae bpduguard a secure response to invalid configurations received BPDU sent by self cost change an interafce s spanning tree port path cost edge port interface attached to a LAN segment that is at the end of a bridged LAN or to an end node link type the link t...

Page 133: ... spanning tree link type shared Edge Port Switch config if spanning tree edge port enable Switch config if spanning tree edge port disable MSTP Port Configuration Switch config if spanning tree mst MSTMAP cost 1 200000000 the value of mst instance port cost Switch config if spanning tree mst MSTMAP port priority 0 240 the value of mst instance port priority in multiple of 16 Global Information Act...

Page 134: ...for bridge Summary of connected spanning tree ports Port State Summary Blocking Listening Learning Forwarding Disabled 0 0 0 2 8 Port Link Type Summary AutoDetected PointToPoint SharedLink EdgePort 9 0 1 9 Port Info Switch show spanning tree port detail fa7 Interface_ID Rapid Spanning Tree feature Enabled Port 128 6 as Disabled Role is in Disabled State Port Path Cost 200000 Port Identifier 128 6 ...

Page 135: ...c Link Aggregation Group N A Type N A Aggregated with N A BPDU sent 43759 received 4854 TCN sent 0 received 0 Forwarding State Transmit count 12 Message Age Expired count MSTP Information MSTP Configuraiton Switch show spanning tree mst configuration Current MST configuration MSTP is Running Name Westermo Revision 65535 Instance Vlans Mapped 0 1 4 4094 1 2 2 3 Config HMAC MD5 Digest 0xB41829F9030A...

Page 136: ...TP fa2 Designated Forwarding 200000 128 2 P2P Internal MSTP MST01 vlans mapped 2 Bridge address 0012 77ee eeee priority 32768 sysid 1 Root this switch for MST01 Port Role State Cost Prio Nbr Type fa1 Designated Forwarding 200000 128 1 P2P Internal MSTP fa2 Designated Forwarding 200000 128 2 P2P Internal MSTP MSTP Root Information Switch show spanning tree mst root MST Root Root Root Root Max Hello...

Page 137: ... 2 P2P Internal MSTP MSTP Port Information Switch show spanning tree mst interface fa1 Interface fastethernet1 of MST00 is Designated Forwarding Edge Port Edge Edge BPDU Filter Disabled Link Type Auto Point to point BPDU Guard Disabled Boundary Internal MSTP BPDUs sent 6352 received 0 Instance Role State Cost Prio Nbr Vlans mapped 0 Designated Forwarding 200000 128 1 1 4 4094 1 Designated Forwardi...

Page 138: ...itch config multiple super ring priority 0 255 valid range is 0 to 255 default set default Switch config super ring priority 100 Ring Port Switch config multiple super ring port IFLIST Interface list ex fa1 fa3 5 gi8 10 cost path cost Switch config multiple super ring port fa1 fa2 Ring Port Cost Switch config multiple super ring port cost 0 255 valid range is 0 or 255 default set default 128 valid...

Page 139: ...p link auto detection IFNAME Interface name ex fastethernet1 or gi8 Switch config multiple super ring rapid dual homing port fa3 fa5 6 set Rapid Dual Homing port success Note auto detect is recommended for dual Homing Ring Info Ring Info Switch show multiple super ring Ring ID Ring1 Ring1 Current Status Disabled Role Disabled Ring Status Abnormal Ring Manager 0000 0000 0000 Blocking Port N A Giga ...

Page 140: ... protect Ethernet loop protection Switch config loop protect shows parameters of loop protect enable Enable loop protection disable Disable loop protection transmit interval Set the transmission frequency of loop protection in seconds Switch config loop protect enable all Ethernet loop protection is enabled on all interfaces Switch config loop protect transmit interval 1 10 Valid range is 1 10 sec...

Page 141: ... Ethernet loop protection enabled Switch sh loop protect show current loop protect detected information Loop protect information Loop Protect Interface fa6 gi10 Transmit Interval sec 3 Loop Detected Interface N A ...

Page 142: ...o another Layer 2 switch without actually disconnecting these devices from their original switches PMI Industrial Ethernet Switch supports 802 1Q VLAN 802 1Q VLAN is also known as Tag Based VLAN This Tag Based VLAN allows VLAN to be created across different switches IEEE 802 1Q tag based VLAN makes use of VLAN control information stored in a VLAN header attached to IEEE 802 3 packet frames This ta...

Page 143: ...nagement VLAN ID The switch supports management VLAN The management VLAN ID is the VLAN ID of the CPU interface so that only member ports of the management VLAN can ping and access the switch The default management VLAN ID is 1 Static VLAN You can assign a VLAN ID and VLAN Name for new VLAN here VLAN ID is used by the switch to identify different VLANs Valid VLAN ID is between 1 and 4094 1 is the ...

Page 144: ...he VLAN the status of the VLAN will remain in Unused until you add ports to the VLAN Note Before you change the management VLAN ID by Web and Telnet remember that the port attached by the administrator should be the member port of the management VLAN otherwise the administrator can t access the switch via the network Note Currently JetNet6710G only support max 256 groups VLAN Static VLAN Configura...

Page 145: ...AN tagged T Tag Indicates that egress outgoing frames are to be VLAN tagged Steps to configure Egress rules Select the VLAN ID Entry of the selected VLAN turns to light blue Assign Egress rule of the ports to U or T Press Apply to apply the setting If you want to remove one VLAN select the VLAN entry Then press Remove button ...

Page 146: ...re the switch to interoperate with existing tag based VLAN networks and legacy non tag networks Figure 4 6 1 1 Web UI of VLAN configuration PVID The abbreviation of the Port VLAN ID Enter port VLAN ID here PVID allows the switches to identify which port belongs to which VLAN To keep things simple it is recommended that PVID is equivalent to VLAN IDs Tunnel Mode None IEEE 802 1Q tunnel mode is disa...

Page 147: ...t should be Tag it indicates that the egress packet is always tagged This is configured in the Static VLAN Configuration table For example if the VID of S VLAN Tunnel Uplink is 10 the VID of C VLAN Tunnel is The 802 1Q Tunnel port receives Tag 5 from CVLAN and adds Tag 10 to the packet When the packets are forwarded to S VLAN Tag 10 is kept EtherType This allows you to define the EtherType manuall...

Page 148: ...ote Always remember to go to Save page to save the settings Otherwise the settings you made will be lost when the switch is powered off 4 6 3 VLAN Infotrmation The VLAN Information page displays the current settings of your VLAN table including VLAN ID Name Status and Egress rule of the ports 4 7 PVLAN Configuration The private VLAN helps to resolve the primary VLAN ID shortage client ports isolat...

Page 149: ...ty VLAN The client ports can be isolated VLANs or can be grouped in the same Community VLAN The ports within the same community VLAN can communicate with each other However the isolated VLAN ports cannot Private VLAN Type None The VLAN is not included in the Private VLAN Primary The VLAN is the Primary VLAN The member ports can communicate withthe secondary VLANs Isolated The member ports of the V...

Page 150: ...er to go to Save page to save the settings Otherwise the settings you made will be lost when the switch is powered off 4 7 1 PVLAN Port Confgration The PVLAN Port Configuration page allows you to configure the port configuration and private VLAN associations ...

Page 151: ... VLAN Promiscuous Promiscuous ports can be associated to the primary VLAN VLAN ID After assigning the port type this displays the available VLAN ID for which the port can associate Click Apply to apply the settings Note Always remember to go to Savepage to save the settings Otherwise the settings you made will be lost when the switch is powered off ...

Page 152: ...assigned in Private VLAN Configuration page the secondary VLAN can associate to the primary VLAN ID Note Before configuring PVLAN port type the private VLAN Association 4 7 2 PVLAN Infomration In this page you can assign Management VLAN create the static VLAN and assign the Egress rule for the member ports of the VLAN The PVLAN Information page allows you to see the private VLAN information Click ...

Page 153: ...vices GARP Generic Attribute Registration Protocol a protocol that defines procedures by which end stations and switches in a local area network LAN can register and de register attributes such as identifiers or addresses with each other Every end station and switch thus has a current record of all the other end stations and switches that can be reached GVRP like GARP eliminates unnecessary networ...

Page 154: ... is required for each state machine that is in the LV state Leave All Timer Controls the period to initiate the garbage collection of registered VLAN The timer is required on a per Port per GARP Participant basis Click Apply to apply the settings Note Always remember to go to Save page to save the settings Otherwise the settings you made will be lost when the switch is powered off After created th...

Page 155: ...ed Switch config if acceptable frame type vlantaggedonly only vlan tag frame is accepted Ingress Filtering for fast Ethernet port 1 Switch config interface fa1 Switch config if ingress filtering enable ingress filtering enable Switch config if ingress filtering disable ingress filtering disable Egress rule Untagged for VLAN 2 Switch config if switchport access vlan 2 switchport access vlan success...

Page 156: ...table Frame Type All Port Security Disabled Auto Negotiation Enable Loopback Mode None STP Status disabled Default CoS Value for untagged packets is 0 Mdix mode is Auto Medium mode is Copper Display Port Egress Rule Egress rule IP address status Switch show running config interface fastethernet1 switchport access vlan 1 switchport access vlan 3 switchport trunk native vlan 2 interface vlan1 ...

Page 157: ...tion you should create a VLAN interface first Then you can start to add remove ports Default status of the created VLAN is unused until you add member ports to it Remove VLAN Switch config no vlan 2 no vlan success Note You can only remove the VLAN when the VLAN is in unused mode VLAN Name Switch config vlan 2 vlan 2 has exists Switch config vlan name v2 Switch config vlan no name ...

Page 158: ...dress of the VLAN Switch config interface vlan 2 Switch config if Switch config if ip address 192 168 10 18 24 Switch config if no ip address 192 168 10 8 24 Delete the IP address Create multiple VLANs VLAN 5 10 Switch config interface vlan 5 10 Shut down VLAN Switch config interface vlan 2 Switch config if shutdown Switch config if no shutdown Turn on the VLAN Display VLAN table Switch sh vlan VL...

Page 159: ... 192 168 10 255 input packets 639 bytes 38248 dropped 0 multicast packets 0 input errors 0 length 0 overrun 0 CRC 0 frame 0 fifo 0 missed 0 output packets 959 bytes 829280 dropped 0 output errors 0 aborted 0 carrier 0 fifo 0 heartbeat 0 window 0 collisions 0 GVRP configuration GVRP enable disable Switch config gvrp mode disable Disable GVRP feature globally on the switch enable Enable GVRP feature...

Page 160: ...ch config if garp timer 20 60 1000 Note The unit of these timer is centisecond Management VLAN Management VLAN Switch config int vlan 1 Go to management VLAN Switch config if no shutdown Display Switch show running config interface vlan1 ip address 192 168 10 17 24 ip igmp no shutdown ...

Page 161: ...de exit Exit current mode and down to previous mode list Print command list name Assign a name to vlan no no private vlan Configure a private VLAN Private VLAN Type Choose the Types Go to the VLAN you want configure first Switch config vlan VID Switch config vlan private vlan community Configure the VLAN as an community private VLAN isolated Configure the VLAN as an isolated private VLAN primary C...

Page 162: ...witchport private vlan host association Set the private VLAN host association mapping map primary VLAN to secondary VLAN Private VLAN Port Type Promiscuous Port Type Host Port Type Switch config if switchport mode private vlan Set private vlan mode Switch config if switchport mode private vlan host Set the mode to private vlan host promiscuous Set the mode to private vlan promiscuous Switch config...

Page 163: ...ry range VLAN ID of the private VLAN port association Switch config if switchport private vlan host association 2 3 Mapping primary to secondary VLANs This command is only available for promiscuous port Switch config interface gi10 Switch config if switchport mode private vlan promiscuous Switch config if switchport private vlan mapping 2 add 3 Switch config if switchport private vlan mapping 2 ad...

Page 164: ...gi9 I 10 PVLAN Type Switch show vlan private vlan type Vlan Type Ports 2 primary gi10 3 isolated gi9 4 community gi8 5 community fa7 gi9 10 primary Host List Switch show vlan private vlan port list Ports Mode Vlan 1 normal 2 normal 3 normal 4 normal 5 normal 6 normal 7 host 5 8 host 4 ...

Page 165: ...mation Private VLAN Type Switch show run Building configuration Current configuration hostname Switch vlan learning independent vlan 1 vlan 2 private vlan primary vlan 3 private vlan isolated vlan 4 private vlan community vlan 5 private vlan community ...

Page 166: ...2 4 switchport trunk native vlan 4 switchport mode private vlan host switchport private vlan host association 2 4 interface gigabitethernet9 switchport access vlan add 2 5 switchport trunk native vlan 5 switchport mode private vlan host switchport private vlan host association 2 3 interface gigabitethernet10 switchport access vlan add 2 5 switchport trunk native vlan 2 switchport mode private vlan...

Page 167: ...traffic is delivered first This section allows you to configure Traffic Prioritization settings for each port with regard to setting priorities PMI QOS supports 4 physical queues weighted fair queuing WRR and Strict Priority scheme which follows 802 1p COS tag and IPv4 TOS DiffServ information to prioritize the traffic of your industrial network Following commands are included in this group 4 8 1 ...

Page 168: ...164 4 8 3 DSCP Queue Mapping 4 8 4 CLI Commands of the Traffic Prioritization ...

Page 169: ...und Robin PMI will follow 8 4 2 1 rate to process the packets in a queue from the highest priority to the lowest For example the system will process 8 packets with the highest priority in the queue 4 with middle priority 2 with low priority and 1 with the lowest priority at the same time Use a strict priority scheme Packets with higher priority in the queue will always ...

Page 170: ... DSCP first Port priority will follow DSCP Queue Mapping first and then COS Queue Mapping rule Default priority type is COS Only The system will provide default COS Queue table to which you can refer for the next command After configuration press Apply to enable the settings 4 8 2 CoS Queue Mapping This page is to change CoS values to Physical Queue mapping table Since the switch fabric of PMI onl...

Page 171: ...ble the settings 4 8 3 DSCP Queue Mapping This page is to change DSCP values to Physical Queue mapping table Since the switch fabric of PMI only supports 4 physical queues Lowest Low Middle and High Users should therefore assign how to map DSCP value to the level of the physical queue In PMI users can freely change the mapping table to follow the upper layer 3 switch or routers DSCP setting ...

Page 172: ...ress Apply to enable the settings 4 8 4 CLI Commands of the Traffic Prioritization Command Lines of the Traffic Prioritization configuration Feature Command Line QoS Setting Queue Scheduling Strict Switch config qos queue sched ...

Page 173: ...g you should Select the specific port first Ex fa1 means fast Ethernet port 1 Port Setting Trust Mode CoS Only Switch config interface fa1 Switch config if qos trust cos The port trust is set CoS only ok Port Setting Trust Mode CoS First Switch config interface fa1 Switch config if qos trust cos first The port trust is set CoS first ok Port Setting Trust Mode DSCP Only Switch config interface fa1 ...

Page 174: ...weight Display Port Setting Trust Mode Switch show qos trust QoS Port Trust Mode Port Trust Mode 1 DSCP first 2 COS only 3 COS only 4 COS only 5 COS only 6 COS only 7 COS only 8 COS only 9 COS only 10 COS only Display Port Setting CoS Port Default Priority Switch show qos port cos Port Default Cos Port CoS 1 7 2 0 3 0 4 0 ...

Page 175: ...config qos cos map 0 1 The CoS to queue mapping is set ok Map CoS 1 to Queue 0 Switch config qos cos map 1 0 The CoS to queue mapping is set ok Map CoS 2 to Queue 0 Switch config qos cos map 2 0 The CoS to queue mapping is set ok Map CoS 3 to Queue 1 Switch config qos cos map 3 1 The CoS to queue mapping is set ok Map CoS 4 to Queue 2 Switch config qos cos map 4 2 The CoS to queue mapping is set o...

Page 176: ...ig qos cos map 7 3 The CoS to queue mapping is set ok Display CoS Queue mapping Switch sh qos cos map CoS to Queue Mapping CoS Queue 0 1 1 0 2 0 3 1 4 2 5 2 6 3 7 3 DSCP Queue Mapping Format Switch config qos dscp map PRIORITY Assign an priority 63 highest Switch config qos dscp map 0 QUEUE Assign an queue 0 3 Format qos dscp map priority_value queue_value ...

Page 177: ...ueue mapping is set ok Display DSCO Queue mapping Switch show qos dscp map DSCP to Queue Mapping dscp d1 d2 d2 0 1 2 3 4 5 6 7 8 9 d1 0 1 1 1 1 1 1 1 1 0 0 1 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 1 1 1 1 1 1 3 1 1 2 2 2 2 2 2 2 2 4 2 2 2 2 2 2 2 2 3 3 5 3 3 3 3 3 3 3 3 3 3 6 3 3 3 3 ...

Page 178: ...oping manages multicast traffic by making use of switches routers and hosts that support IGMP Enabling IGMP Snooping allows the ports to detect IGMP queries report packets and manage multicast traffic through the switch IGMP has three fundamental types of messages as shown below Message Description Query A message sent from the querier an IGMP router or a switch which asks for a response from each...

Page 179: ... 4 9 1 IGMP Snooping Filtering 4 9 2 IGMP Snooping 4 9 3 GMRP Configuration 4 9 4 CLI Commands of the Multicast Filtering 4 9 1 IGMP Snooping Filtering This page is to enable IGMP Snooping feature assign IGMP Snooping for specific VLAN and view IGMP Snooping table from dynamic learnt or static manual key in PMI Switch support IGMP snooping V1 V2 V3 automatically and IGMP query V1 V2 ...

Page 180: ...Mode This setting determines how unknown multicast packets are handled If the setting is broadcast unknown any unknown multicast packets received by the switch are broadcast to each port on the VLAN If the setting is Source Only Learning any unknown multicast packets received by the switch will be sent to multicast source ports and multicast router ports If it the setting is drop unknown any unkno...

Page 181: ... is a member of Interface The port the multicast group is a member of Click on Reload to reload the information 4 9 2 IGMP Query This page allows users to configure IGMP Query feature Since PMI Switch can only be configured by member ports of the management VLAN IGMP Query can only be enabled on the management VLAN If you want to run IGMP Snooping feature in several VLANs you should notice that wh...

Page 182: ...rier Query Maximum Response Time The span querier detect to confirm there are no more directly connected group members on a LAN Once you finish configuring the settings click on Apply to apply your configuration 4 9 3 GMRP Configuration To enable the GMRP configuration the Global GMRP Configuration should be enabled first And all the port interfaces should enable GMRP learning as well Then the swi...

Page 183: ...te of the GMRP operation on a selected port Click Apply to apply the settings 4 9 4 CLI Commands of the Multicast Filtering Command Lines of the multicast filtering configuration Feature Command Line IGMP Snooping IGMP Snooping Global Switch config ip igmp snooping IGMP snooping is enabled globally Please specify on which vlans ...

Page 184: ...globally ok Disable IGMP Snooping VLAN Switch config no ip igmp snooping vlan 3 IGMP snooping is disabled on VLAN 3 Display IGMP Snooping Setting Switch sh ip igmp interface vlan1 enabled Yes version IGMPv1 query interval 125s query max response time 10s Switch sh ip igmp snooping IGMP snooping is globally enabled Vlan1 is IGMP snooping enabled Vlan2 is IGMP snooping enabled Vlan3 is IGMP snooping...

Page 185: ... config int vlan 1 Go to management VLAN Switch config if ip igmp IGMP Query version Switch config if ip igmp version 1 Switch config if ip igmp version 2 Disable Switch config int vlan 1 Switch config if no ip igmp Display Switch sh ip igmp interface vlan1 enabled Yes version IGMPv2 query interval 125s query max response time 10s Switch show running config interface vlan1 ...

Page 186: ...n Force filtering Enable Force filtering Disable Force filtering Switch config mac address table multicast filtering Filtering unknown multicast addresses ok Switch config no mac address table multicast filtering Flooding unknown multicast addresses ok ...

Page 187: ...nsole through the network Following commands are included in this group 4 10 1 SNMP Configuration 4 10 2 SNMPv3 Profile 4 10 3 SNMP Traps 4 10 4 SNMP CLI Commands for SNMP 4 10 1 SNMP Configuration This page allows users to configure SNMP V1 V2c Community The community string can be viewed as the password because SNMP V1 V2c doesn t request you to enter password before you try to access SNMP agent...

Page 188: ...ince most SNMP management application uses Public and Private as their default community name this might be the leakage of the network security 4 10 2 SNMP V3 Profile SNMP v3 can provide more security functions when the user performs remote management through SNMP protocol It delivers SNMP information to the administrator with user authentication all of data between PMI Switch and the administrato...

Page 189: ...or SHA1 Authentication Password This is the SNMP V3 user Authentication Password DES Password This is the SNMP V3 user DES Encryption Password Click Add to add a SNMP V3 User NMP V3 Users This table provides SNMP V3 user information User Name SNMP V3 user names Security Level This is the SNMP V3 user Security Level None Authentication or Authentication and Privacy Authentication Protocol This is t...

Page 190: ...able SNMP Trap configure the SNMP Trap server IP Community name and trap Version V1 or V2 After configuration you can see the change of the SNMP pre defined standard traps and Westermo pre defined traps The pre defined traps can be found in Westermo private MIB that included in the CD manual or download from Westermo Web site SNMP Trap Enable or Disable the SNMP trap function Click the Apply butto...

Page 191: ...f the SNMP configuration Feature Command Line SNMP Community Read Only Community Switch config snmp server community public ro community string add ok Read Write Community Switch config snmp server community private rw community string add ok SNMP Trap ...

Page 192: ... community name version 1 is the SNMP version SNMP Trap Server IP with version 2 and community Switch config snmp server host 192 168 2 33 version 2 private SNMP trap host add OK Disable SNMP Trap Switch config no snmp server enable trap Set SNMP trap disable ok Display Switch sh snmp server trap SNMP trap Enabled SNMP trap community public Switch show running config snmp server community public r...

Page 193: ...189 ...

Page 194: ...ncluded in this group 4 11 1 Port Security 4 11 2 IP Security 4 11 3 IEEE 802 1x 4 11 4 CLI Commands of the Security 4 11 1 Port Security Port Security feature allows you to stop the MAC address learning for specific port After stopping MAC learning only the MAC address listed in Port Security List can access the switch and transmit receive traffic This is a simple way to ...

Page 195: ...aximum number of MAC addresses that can be dynamically learned on the port valid range is 0 10 Shutdown Time It specifies for how long to shutdown the port valid range is 0 86400 seconds if a security violation occurs Shutdown Status It displays the port is shutdown or not Shutdown Elapsed Time It displays the elapsed time of port shutdown Click the Apply button to apply Port Security State config...

Page 196: ...Enable and Apply to enable IP security function Add Security IP You can assign specific IP addresses and then press Add Only these IP addresses can access and manage PMI via a web browser or Telnet Max security IP is 10 Security IP List This table shows you added security IP addresses You can press Remove to delete Reload to reload the table Once you finish configuring the settings click on Apply ...

Page 197: ...E 802 1X is the protocol that performing authentication to obtain access to IEEE 802 LANs It is port base network access control With the function PMI Switch could control which connection is available or not ...

Page 198: ...ver If user select Local for the authentication method switch use the local user data base which can be create in this page for authentication Radius Server Radius Server IP The IP address of Radius server Shared Key it is the password for communicate between switch and Radius Server Server Port UDP port of Radius server Accounting Port Port for packets that contain the information of account logi...

Page 199: ... This is a list shows the account information User also can remove selected account Here User Name The user name of the local RADIUS user Password The password of the local RADIUS user VID The VLAN ID of the local RADIUS user Click Apply to add a local RADIUS user Click Delete to delete the selected user ...

Page 200: ...ed just opposite the port is blocked If users want to control this port with Radius Server please select Auto for port control MAB If this field is auto the functional MAC Address will bypass to Radius Server for authenticaation Reauthentication If enable this field switch will ask client to re authenticate The default time interval is 3600 seconds Max Request the maximum times that the switch all...

Page 201: ...e Selected to initialize the selected port Click Reauthenticate Selected to reauthenticate the selected port Click Default Selected to set the selected port configuration to default Re Auth Period control the Re authentication time interval 1 65535 is available Quiet Period When authentication failed Switch will wait for a period and try to communicate with radius server again Tx period the time i...

Page 202: ...d Supplicant and Oper Control Direction each port Port The port identifier Port Control Force Authorized means that this port is Authorized and the data is free to travel in and out Force unauthorized is just the opposite and the port is blocked Authorized Status The authorize status of the port Authorized Supplicant The MAC address of the authorized supplicant Oper Control Direction Whether an un...

Page 203: ...ss table unicast static set ok Port Security Switch config interface fa1 Switch config if switchport port security Disables new MAC addresses learning and aging activities Note Rule Add the static MAC VLAN and Port binding first then enable the port security to stop new MAC learning Disable Port Security Switch config if no switchport port security Enable new MAC addresses learning and aging activ...

Page 204: ...200 ok Display Switch show ip security ip security is enabled ip security host 192 168 2 200 802 1x enable diable Switch config dot1x system auth control Switch config Switch config no dot1x system auth control Switch config authentic method Switch config dot1x authentic method local Use the local username database for authentication radius Use the Remote Authentication Dial In User Service RADIUS...

Page 205: ...S Accounting Port 1813 Switch config radius server ip Switch config dot1x radius Switch config dot1x radius server ip 192 168 2 200 key 1234 RADIUS Server Port number NOT given default 1812 RADIUS Accounting Port number NOT given default 1813 RADIUS Server IP 192 168 2 120 RADIUS Server Key 1234 RADIUS Server Port 1812 RADIUS Accounting Port 1813 Switch config radius secondary server ip Switch con...

Page 206: ...t 1813 Secondary RADIUS Server IP 192 168 2 250 Secondary RADIUS Server Key 5678 Secondary RADIUS Server Port 1812 Secondary RADIUS Accounting Port 1813 User name password for authentication Switch config dot1x username Westermo passwd Westermo vlan 1 ...

Page 207: ... as Digital Output The relay DO contact is energized from normal and will form a close circuit under system fault conditions The fault conditions include power failure Ethernet port link fault Ring topology change Ping Failure DI state change or ping remote IP address failure From the firmware version 1 1a the fault relay supports multiple event relay binding function That means fault realy not on...

Page 208: ...rash Note once perform Ping reset the relay ou will form a short circuit Dry Output On period duration of relay output short close Off period duration of relay output open Relay continuous perform On Off behavior different duration DI DI number PMI 110 F2GG supports 1 DI Relay trigger when DI states change to Hi or The Fault relay configuration UI has shown as below The relay supports multiple eve...

Page 209: ...ivce does not reply the Ping the relay will be triggered Ping Reset the relay active as a power switch for remote device If the relay alarm function is occupied for the Ping Reset the other event should be disabled It may cause the relay wrong action IP address device s IPaddress whose power wiring is connected with relay output Reset Time user defined duration of relay contact open to emulate pow...

Page 210: ...n the digital input is off If DI State is set to High the relay will activate when the digital input is on Click Apply to apply the settings Click Cancel to clear the modification Click Reload to reload the settings Note Always remember to go to Save page to save the settings Otherwise the settings you made will be lost when the switch is powered off 4 12 2 1 Event E mail Warning Event Selection E...

Page 211: ...he device by CLI or Web UI Authentication failure An incorrect password SNMP Community String is entered Time Synchronize Failure Accessing to NTP Server is failure Power 1 2 Failure The power input is failure Fault Relay The DO Fault Relay is on Ring Topology Changes Master of Super Ring has changed or backup path is activated SFP The SFP transceiver s state is abnormal Port Event Selection Warni...

Page 212: ...ch events history There are 2 System Log modes provided by PMI Switch local mode and remote mode Local Mode In this mode PMI Switch will print the occurred events selected in the Event Selection page to System Log table of PMI Switch You can monitor the system logs in Monitor and Diag Event Log page Remote Mode The remote mode is also known as Server mode in PMI managed switch series In this mode ...

Page 213: ...n PMI Switch supports E mail Warning feature The switch will send the occurred events to remote E mail server The receiver can then receive notification by E mail The E mail warning is conformed to SMTP standard This page allows you to enable E mail Alert assign the SMTP Server IP Sender E mail and Receiver E mail If SMTP server requests you to authorize first you can also set up the username and ...

Page 214: ...dresses to receive email alarm from PMI Rcpt E mail Address 1 The first email address to receive email alert from PMI Max 40 characters Rcpt E mail Address 2 The second email address to receive email alert from PMI Max 40 characters Rcpt E mail Address 3 The third email address to receive email alert from PMI Max 40 characters Rcpt E mail Address 4 The fourth email address to receive email alert f...

Page 215: ...te Select Relay 1 or 2 first then select the event types DI State Switch config relay 1 di 1 2 DI number Switch config relay 1 di 1 high high is abnormal low low is abnormal Switch config relay 1 di 1 high Dry Output Switch config relay 1 dry 0 4294967295 turn on period in second Switch config relay 1 dry 5 0 4294967295 turn off period in second Switch config relay 1 dry 5 5 Ping Failure Switch co...

Page 216: ...ch config relay 1 port PORTLIST port list Switch config relay 1 port fa1 5 Power Failure Switch config relay 1 power 1 2 power id Switch config relay 1 power 1 Switch config relay 1 power 2 Super Ring Failure Switch config relay 1 ring Disable Relay Switch config no relay 1 2 relay id Switch config no relay 1 Relay_ID 1 or 2 cr Display Switch show relay 1 Relay Output Type Port Link Port 1 2 3 4 S...

Page 217: ... power failure event sfp ddm Switch SFP DDM abnormal event super ring Switch super ring topology change event time sync Switch time synchronize event Ex Cold Start event Switch config warning event coldstart Set cold start event enable ok Ex Link Up event Switch config warning event linkup IFNAME Interface name ex fastethernet1 or gi8 Switch config warning event linkup fa5 Set fa5 link up event en...

Page 218: ...o log syslog local SMTP Configuration SMTP Enable Switch config smtp server enable email alert SMTP Email Alert set enable ok Sender mail Switch config smtp server server 192 168 2 200 ACCOUNT SMTP server mail account ex support westermo se Switch config smtp server server 192 168 2 200 support westermo se SMTP Email Alert set Server 192 168 2 200 Account support westermo se ok Receiver mail Switc...

Page 219: ... email alert SMTP Email Alert set disable ok Disable Authentication Switch config no smtp server authentication SMTP Email Alert set Authentication disable ok Dispaly Switch sh smtp server SMTP Email Alert is Enabled Server 192 168 2 200 Account support westermo se Authentication Enabled Username admin Password westermo SMTP Email Alert Receipt Receipt 1 support westermo se Receipt 2 Receipt 3 Rec...

Page 220: ...ncountering problems related to the switch The features include MAC Address Table Port Statistics Port Mirror Event Log and Ping Following commands are included in this group 4 13 1 LLDP Configuration 4 13 2 MAC Address Table 4 13 3 Port statistics 4 13 4 Port Mirror 4 13 5 Event Log 4 13 6 Ping 4 13 7 CLI Commands of the Monitor and Diag 4 13 1 LLDP Configuration ...

Page 221: ... be lost when the switch is powered off LLDP Port State Local port the current port number that linked with neighbor network device Neighbor Neighbor ID the MAC address of neighbor device on the same network segment Neighbor IP the IP address of neighbor device on the same network segment Neighbor VID the VLAN ID of neightbor device on the same network segment Click Reload to reload the LLDP Port ...

Page 222: ...u can see all the MAC Addresses learnt by the switch fabric The packet types include Management Unicast Static Unicast Dynamic Unicast Static Multicast and Dynamic Multicast The table allows users to sort the address by the packet types and port Packet Types Management Unicast means MAC address of the switch It belongs to CPU port only Static Unicast MAC address can be added and deleted Dynamic Un...

Page 223: ...s Note If you see many Bad Abort or Collision counts increased that may mean your network cable is not connected well the network performance of the port is poor etc Please check your network cable Network Interface Card of the connected device the network application or reallocate the network traffic etc Click on Clear Selected to reinitialize the counts of the selected ports and Clear All to rei...

Page 224: ...Port Mirror Source Port This is also known as Monitor Port These are the ports you want to monitor The traffic of all source monitor ports will be copied to destination analysis ports You can choose a single port or any combination of ports but you can only monitor them in Rx or TX only Click on checkbox of the Port ID RX Tx or Both to select the source ports Destination Port This is also known as...

Page 225: ...have introduced System Log feature When System Log Local mode is selected PMI Switch will record occurred events in local log table This page shows this log table The entry includes the index occurred data and time and content of the events ...

Page 226: ...h the table 4 13 6 Ping This page provides Ping for users to ping remote device and check whether the device is alive or not Type Target IP address of the target device and click on Start to start the ping After few seconds you can see the result in the Result field ...

Page 227: ...s of the Monitor and Diag configuration Feature Command Line MAC Address Table Ageing Time Switch config mac address table aging time 350 mac address table aging time set ok Note 350 is the new ageing timeout value Add Static Unicast MAC address Switch config mac address table static 0012 7701 0101 vlan 1 interface fastethernet7 mac address table ucast static set ok ...

Page 228: ...ble multicast MAC_address VLAN VID interface_list interface_name range Show MAC Address Table All types Switch show mac address table UNICAST MAC ADDRESS Destination Address Address Type Vlan Destination Port 000f b079 ca3b Dynamic 1 fa4 0012 7701 0386 Dynamic 1 fa7 0012 7710 0101 Static 1 fa7 0012 7710 0102 Static 1 fa7 0012 77ff 0100 Management 1 MULTICAST MAC ADDRESS Vlan Mac Address COS Status...

Page 229: ...7 Show MAC Address Table Static MAC addresses Switch show mac address table static Destination Address Address Type Vlan Destination Port 0012 7710 0101 Static 1 fa7 0012 7710 0102 Static 1 fa7 Show Aging timeout time Switch show mac address table aging time the mac address table aging time is 300 sec Port Statistics Port Statistics Switch show rmon statistics fa4 select interface Interface fastet...

Page 230: ...255 11 256to511 64 512to1023 10 1024toMaxSize 42 Port Mirroring Enable Port Mirror Switch config mirror en Mirror set enable ok Disable Port Mirror Switch config mirror disable Mirror set disable ok Select Source Port Switch config mirror source fa1 2 both Received and transmitted traffic rx Received traffic tx Transmitted traffic Switch config mirror source fa1 2 both Mirror source fa1 2 both set...

Page 231: ...an 1 02 50 50 snmpd 101 Event Link 5 Up 3 Jan 1 02 50 51 snmpd 101 Event Link 5 Down 4 Jan 1 02 50 53 snmpd 101 Event Link 4 Up Topology Discovery LLDP Enable LLDP Switch config lldp holdtime Specify the holdtime of LLDP in seconds run Enable LLDP timer Set the transmission frequency of LLDP in seconds Switch config lldp run LLDP is enabled Change LLDP timer Switch config lldp holdtime 10 255 Vali...

Page 232: ...2 33 icmp_seq 1 ttl 128 time 0 0 ms 64 bytes from 192 168 2 33 icmp_seq 2 ttl 128 time 0 0 ms 64 bytes from 192 168 2 33 icmp_seq 3 ttl 128 time 0 0 ms 64 bytes from 192 168 2 33 icmp_seq 4 ttl 128 time 0 0 ms 192 168 2 33 ping statistics 5 packets transmitted 5 packets received 0 packet loss round trip min avg max 0 0 0 0 0 0 ms ...

Page 233: ...progress firmware upgrade or not ready System not ready R S Green on switch is working as ring master Red blinking Ring failed Switch is working at slave mode Alarm Green on alarm relay active and contacts is short Not avaliable Green off relay output contact is open LNK ACT Port is linked Port is on transmitting Port is link down 1000M The port is linked at 1000Mbps speed Not avaliable Not avalia...

Page 234: ...230 Note No CLI command for this feature ...

Page 235: ...f the switch without clicking on Save Configuration will cause loss of new settings After selecting Save Configuration click on Save to Flash to save your new configuration Command Lines Feature Command Line Save SWITCH write Building Configuration OK Switch copy running config startup config Building Configuration OK ...

Page 236: ... logged out if you don t input any command after 30 seconds The Logout command allows you to manually logout the web connection Click on Yes to logout No to go back the configuration page refer to following diagram Command Lines Feature Command Line Logout SWITCH exit SWITCH exit ...

Page 237: ...nsole cabl include in the unitbox and the connectors are RJ 45 and DB 9 female The following diagram showns the pins assignment of RJ 5 and DB 9 female connectors RJ 45 Pin DB 9 Pin Description 1 8 N A 2 9 N A 3 2 TxD 4 1 N A 5 5 GND 6 3 RxD 7 4 N A 8 7 N A DB 9 Female Connector ...

Page 238: ...te MIB to meet up the need Compile the private MIB file by your SNMP tool You can then use it Private MIB can be found in product CD or downloaded from Westermo Web site Private MIB tree is the same as the web tree This is easier to understand and use If you are not familiar with standard MIB you can directly use private MIB to manage monitor the switch no need to learn or find where the OIDs of t...

Page 239: ...tory Edition Date Modifications V1 0 2014 03 28 The first release V2 0 2016 02 17 Label on page 14 15 and 19 updated Value in page 16 updated from 2 5A to 3 5A V3 0 2019 05 27 Updates associated with new webbased firmware ...

Page 240: ...236 ...

Reviews: