background image

DES-3226S Layer 2 Fast Ethernet Switch User’s Guide 

 

 

 

26

SNMP Network Management 

The Simple Network Management Protocol (SNMP) is an OSI layer 7 (the application layer) protocol for remotely monitoring 
and configuring network devices.  SNMP enables network management stations to read and modify the settings of gateways, 
routers, Switches, and other network devices.  SNMP can be used to perform many of the same functions as a directly 
connected console, or can be used within an integrated network management software package such as DView.  

SNMP performs the following functions: 

• 

Sending and receiving SNMP packets through the IP protocol. 

• 

Collecting information about the status and current configuration of network devices. 

• 

Modifying the configuration of network devices.

 

The DES-3226S has a software program called an ‘agent’ that processes SNMP requests, but the user program that makes the 
requests and collects the responses runs on a management station (a designated computer on the network).  The SNMP agent 
and the user program both use the UDP/IP protocol to exchange packets. 
 

SNMP Versions 1, 2 and 3 

The DES-3226S supports SNMP version 3 as well as versions 1 and 2. The chief difference between Version 3 (SNMP v.3) 
and Versions 1 and 2 (SNMP v.1 and SNMP v.2) is that it provides a substantially higher level of security than the previous 
versions.   
In SNMP v. and v.2, user authentication is accomplished using ‘community strings’, which function like passwords.  The 
remote user SNMP application and the router SNMP must use the same community string. SNMP packets from any station 
that has not been authenticated are ignored (dropped). 
SNMP v.3 uses a more sophisticated authentication process that is separated into two parts. One part is to maintain a list of 
users and their attributes that are allowed to act as SNMP managers. The second part describes what each user on that list can 
do as an SNMP manager.  
The Switch allows groups of users to be listed and configured with a shared set of privileges. The SNMP version may also be 
set for a listed group of SNMP managers. Thus, you may create a group of SNMP managers that are allowed to view read-only 
information or receive traps using SNMP v.1 while assigning a higher level of security to another group, granting read/write 
privileges using SNMP v.3.  
Using SNMP v.3 individual users or groups of SNMP managers can be allowed to perform or be restricted from performing 
specific SNMP management functions. The functions allowed or restricted are defined using the Object Identifier (OID) 
associated with a specific MIB. 
An additional layer of security is available for SNMP v.3 in that SNMP messages may be encrypted (using HMAC-SHA-96 or 
HMAC-MDA-96 authentication levels).  

Traps 

Traps are messages that alert network personnel of events that occur on the Switch. The events can be as serious as a reboot 
(someone accidentally turned OFF the Switch), or less serious like a port status change. The Switch generates traps and sends 
them to the trap recipient (or network manager).  
Trap recipients are special users of the network who are given certain rights and access in overseeing the maintenance of the 
network. Trap recipients will receive traps sent from the Switch; they must immediately take certain actions to avoid future 
failure or breakdown of the network. 
You can also specify which network managers may receive traps from the Switch. This can be done by entering a list of the IP 
addresses of authorized network managers.  You may further specify the SNMP version to use for authentication. Up to four 
trap recipient IP addresses, and four corresponding SNMP community strings can be entered. 
The following are trap types the Switch can send to a trap recipient: 

• 

Cold Start  This trap signifies that the Switch has been powered up and initialized such that software settings are 
reconfigured and  hardware systems are rebooted. A cold start is different from a factory reset in that configuration 
settings saved to non-volatile RAM used to reconfigure the Switch.  

• 

Warm Start  This trap signifies that the Switch has been rebooted, however the POST (Power On Self-Test) is 
skipped. 

• 

Authentication Failure  This trap signifies that someone has tried to logon to the Switch using an invalid SNMP 
community string. The Switch automatically stores the source IP address of the unauthorized user. 

Содержание DES-3226S

Страница 1: ...DES 3226S Layer 2 Switch Release 4 01 User s Guide December 2003 651E3226S055 Printed In Taiwan RECYCLABLE ...

Страница 2: ...ollten Sie es vom Stromnetz trennen Somit wird im Falle einer Überspannung eine Beschädigung vermieden 13 Durch die Lüftungsöffnungen dürfen niemals Gegenstände oder Flüssigkeiten in das Gerät gelangen Dies könnte einen Brand bzw Elektrischen Schlag auslösen 14 Öffnen Sie niemals das Gerät Das Gerät darf aus Gründen der elektrischen Sicherheit nur von authorisiertem Servicepersonal geöffnet werden...

Страница 3: ...urchase invoice must be provided If Purchaser s circumstances require special handling of warranty correction then at the time of requesting RMA number Purchaser may also propose special procedure as may be suitable to the case After an RMA number is issued the defective product must be packaged securely in the original or other suitable shipping package to ensure that it will not be damaged in tr...

Страница 4: ...especting any Software for which a refund is given automatically terminates Non Applicability of Warranty The Limited Warranty provided hereunder for hardware and software of D Link s products will not be applied to and does not cover any refurbished product and any product purchased through the inventory clearance or liquidation sale or other sales in which D Link the sellers or the liquidators e...

Страница 5: ...implied warranty lasts so the foregoing limitations and exclusions may not apply This limited warranty provides specific legal rights and the product owner may also have other rights which vary from state to state For detailed warranty outside the United States please contact corresponding local D Link office Trademarks D Link is a registered trademark of D Link Systems Inc Other trademarks or reg...

Страница 6: ...itch to Hub or Switch 17 Switch Stack Connections 18 Management Concepts 19 Local Console Management 19 Stacking vs Standalone Operation Release 4 01 20 Managing Switch Stacks 21 Stacking with DGS 3212SR or DGS 3312SR 24 Switch IP Address 25 SNMP Network Management 26 SNMP Versions 1 2 and 3 26 Forwarding and Filtering 27 Filtering and Access Profile Masking 27 802 1w Rapid Spanning Tree 28 Link A...

Страница 7: ...itch Utilities 66 TFTP Utilities 66 Advanced Setup 69 Configuring VLANs 69 Asymmetric VLANs 72 Configure QoS Quality of Service 73 Bandwidth Control 76 Port Mirroring 77 Forwarding and Filtering 78 Spanning Tree 85 MAC Notification 88 Link Aggregation 89 802 1X Configuration 92 Access Profile Mask 98 System Log Server 101 IGMP Snooping Settings 103 Network Monitoring 105 Technical Specifications 1...

Страница 8: ...LX 1000BASE T 100BASE FX GBIC or 1 port GBIC stacking module RS 232 DCE Diagnostic port console port for setting up and managing the Switch via a connection to a console terminal or PC using a terminal emulation program Performance 24 built in 10 100 Mbps ports Switch stacking configuration 8 units per stack 8 GBIC ports Support for stacking with DGS 3212SR or DGS 3312SR in star topology arrangeme...

Страница 9: ... stacked and managed as a unit with a single IP address Management for the entire stack is done through the Master Switch You may add Switches later as needed The Switch can also be grouped in a stack as a slave with the D Link DGS 3212SR or DGS 3312SR Switch acting as the Master Fast Ethernet Technology 100Mbps Fast Ethernet or 100BASE T is a standard specified by the IEEE 802 3 LAN committee It ...

Страница 10: ...nt Installation Use the following guidelines when choosing a place to install the Switch The surface must support at least 3 kg The power outlet should be within 1 82 meters 6 feet of the device Visually inspect the power cord and see that it is secured to the AC power connector Make sure that there is proper heat dissipation from and adequate ventilation around the Switch Do not place heavy objec...

Страница 11: ...in a wiring closet with other equipment To install attach the mounting brackets on the Switch s side panels one on each side and secure them with the screws provided Figure 2 2 Attaching the mounting brackets to the Switch Then use the screws provided with the equipment rack to mount the Switch on the rack Figure 2 3 Installing the Switch on an equipment rack ...

Страница 12: ...the LED indicators should respond as follows All LED indicators will momentarily blink This blinking of the LED indicators represents a reset of the system The power LED indicator is always on after the power is turned ON The console LED indicator will blink while the Switch loads onboard software and performs a self test will remain ON if there is a connection at the RS 232 port otherwise this LE...

Страница 13: ...nel slide in module slot for Gigabit Ethernet ports can accommodate a 2 port 1000BASE T Gigabit Ethernet module a 2 port 1000BASE SX Gigabit Ethernet module a 2 port 1000BASE LX Gigabit Ethernet module or a 2 port GBIC based Gigabit Ethernet module Twenty four high performance NWay Ethernet ports all of which operate at 10 100 Mbps with Auto MDIX function for connections to end stations servers an...

Страница 14: ...3 3 Side panel views of the Switch The system fans are used to dissipate heat The sides of the system also provide heat vents to serve the same purpose Do not block these openings and leave at least 6 inches of space at the rear and sides of the Switch for proper ventilation Be reminded that without proper heat dissipation and air circulation system components might overheat which could lead to sy...

Страница 15: ...rt 100BASE TX Module Figure 3 4 100BASE TX two port module Port Functions Fully compliant with IEEE802 3 10BASE T IEEE802 3u 100BASE TX Supports auto negotiation in the following operation 10 100M operation Full Half Duplex operation Flow control IEEE 802 3x compliant Flow Control support for full duplex Back pressure Flow Control support for half duplex mode LED Indicators Speed Off 10M Solid Gre...

Страница 16: ...ule Port Functions Fully compliant with IEEE802 3u 100BASE FX Supports auto negotiation in the following operation 100M Full duplex Flow control IEEE 802 3x compliant Flow Control support for full duplex Connector SC Type Distance 2km LED Indicators Link Off No Link Solid Green Link Active Off No Activity Blinking Green Activity ...

Страница 17: ... Port Functions Fully compliant with IEEE802 3u 100BASE FX Supports auto negotiation in the following operation 100M Full duplex Flow control IEEE 802 3x compliant Flow Control support for full duplex Connector SC type Distance 15km LED Indicators Link Off No Link Solid Green Link Active Off No Activity Blinking Green Activity ...

Страница 18: ...s Fully compliant with IEEE802 3 10BASE T IEEE802 3u 100BASE TX and IEEE802 3ab 1000BASE T Supports auto negotiation in the following operation 10 100 1000M Full duplex Flow control IEEE 802 3x compliant Flow Control support for full duplex LED Indicators Speed 1000M Off 10 100M Solid Green 1000M Link Off No Link Solid Green Link Active Off No Activity Blinking Green Activity ...

Страница 19: ...erations IEEE 802 3x compliant Flow Control support for full duplex Connector SC Type Distance 550m DEM 320S 2 port 1000BASE SX Gigabit Ethernet Module Port Functions 2 1000BASE SX Gigabit Ethernet ports IEEE 802 3z 1000BASE SX compliance Supports Full duplex operations IEEE 802 3x compliant Flow Control support for full duplex Connector SC Type Distance 550m LED Indicators Link Off No Link Solid ...

Страница 20: ...t Ethernet Module Port Functions 2 1000BASE LX Gigabit Ethernet ports IEEE 802 3z 1000BASE LX compliance Supports Full duplex operations IEEE 802 3x compliant Flow Control support for full duplex Supports single mode fiber optic cable connections of up to 550 meters or 5 km single mode fiber optic cable connections Connector SC Type Distance 10km 9 125um LED Indicators Link Off No Link Solid Green...

Страница 21: ...iance Supports full duplex operations IEEE 802 3x compliant Flow Control support for full duplex DEM 320GH 2 port GBIC based Gigabit Ethernet Module Port Functions 2 GBIC based Gigabit Ethernet ports Allows multi mode fiber optic connections of up to 550 m SX and LX and single mode fiber optic connections of up to 5 km LX only GBIC modules are available in SX and LX fiber optic media IEEE 802 3z c...

Страница 22: ...EE 802 3x compliant Flow Control support for full duplex Stacking Port Function 1 transmitting port and 1 receiving port IEEE1394 b compliance Forwarding rate up to 965Mbps LED Indicators Link Off No Link Solid Green Link Active Off No Activity Blinking Green Activity The optional Stacking Module allows up to eight DES 3226S Switches to be interconnected via their individual stacking modules This ...

Страница 23: ...n or transmission i e Activity Act of data occurring at a port Stacking Module LED Indicators The Switch s current order in the Switch stack is also displayed on the Stacking Module s front panel under the STACK NO heading Figure 3 13 Stacking Module LED Indicators The Link and Act LEDs have the same function as the corresponding LEDs for the Switch s Ethernet ports The Link LED lights to confirm ...

Страница 24: ... end node is connected to are lit according to the capabilities of the NIC If LED indicators are not illuminated after making a proper connection check the PC s LAN card the cable Switch conditions and connections The following LED indicator states are possible for an end node to Switch connection The 100 LED indicator comes ON for a 100 Mbps and stays OFF for 10 Mbps The Link Act LED indicator li...

Страница 25: ...from the IN port on one Switch to the OUT port on the other Switch In this way a loop is made such that all of the Switches in the Switch stack have the IN stacking port connected to another Switch s OUT stacking port An example stacking port interconnection is shown below Figure 4 2 Switch Stack connections between optional stacking modules NOTICE If a link between stacked Switches fails the stac...

Страница 26: ...memory for configuration data operational programs and SNMP agent firmware These components allow the Switch to be actively managed and monitored from either the console port or the network itself out of band or in band Diagnostic console port RS 232 DCE Out of band management requires connecting a terminal such as a VT 100 or a PC running a terminal emulation program such as HyperTerminal which i...

Страница 27: ... a DES 3226S Switch stack is connected and all units are configured to operate in auto stacking mode the master slave relationships is determined automatically For DES 3226S Switch stacks the unit with the lowest MAC address becomes the master stack number 1 The order in which slave devices appear logically in the stack stack number 2 is determined by how they are connected relative to the master ...

Страница 28: ...acked Switch groups All management of the Switches in the stack is done through the master Switch The master Switch should be used to uplink to the Ethernet backbone For DES 3226S stacks the master Switch can be chosen automatically as each Switch in a connected stack competes for status However you can choose a specific device and force it to operate as the master Use the CLI command config stack...

Страница 29: ...d override the auto function Use the CLI to enter the command config stacking mode enable master The stacking mode for Switch B is set to the default auto stacking mode and therefore no changes are required Switch B will lose configuration settings including its IP settings so if you want to save these be sure to upload the configuration files before making the stacking connection Power off both d...

Страница 30: ...he same configuration settings by downloading the previously saved configuration files to the replacement Switch Before disconnecting the network connections of the original master unit label each Ethernet cable so they can be placed in the same port number in the replacement Switch Then remove the device from the rack Place the replacement Switch in the same slot Power on the new Switch and attac...

Страница 31: ... with stacking mode enabled When stacked in a star topology arrangement with the DGS 3x12SR the Switch will automatically assume slave status The unit number is determined by the port number to which it is connected on the DGS 3x12SR master The DGS 3x12SR must have a stacking module installed and have stacking mode enabled as well Stacking for the DGS 3x12SR uses the identical CLI command config s...

Страница 32: ...th the web based manager The Switch IP address may be automatically set using BOOTP or DHCP protocols in which case the actual address assigned to the Switch must be known The IP address may alternatively be set using the Command Line Interface CLI over the console serial port as follows 1 Starting at the command line prompt DES3226S4 enter the commands config ipif System ipaddress xxx xxx xxx xxx...

Страница 33: ... Thus you may create a group of SNMP managers that are allowed to view read only information or receive traps using SNMP v 1 while assigning a higher level of security to another group granting read write privileges using SNMP v 3 Using SNMP v 3 individual users or groups of SNMP managers can be allowed to perform or be restricted from performing specific SNMP management functions The functions al...

Страница 34: ...e to manage the Switch a diskette listing the Switch s propriety enterprise MIBs can be obtained by request If your software provides functions to browse or modify MIBs you can also get the MIB values and change them if the MIBs attributes permit the write operation This process however can be quite involved since you must know the MIB OIDs and retrieve them one by one Forwarding and Filtering The...

Страница 35: ... section introduces some new Spanning Tree concepts and illustrates the main differences between the two protocols Port Transition States An essential difference between the two protocols is in the way ports transition to a forwarding state and the in the way this transition relates to the role of the port forwarding or not forwarding in the topology RSTP combines the transition states disabled bl...

Страница 36: ...d members of a link aggregation group with one port designated as the master port of the group Since all members of the link aggregation group must be configured to operate in the same manner the configuration of the master port is applied to all members of the link aggregation group Thus when configuring the ports in a link aggregation group you only need to configure the master port The DES 3226...

Страница 37: ...th devices that are tag unaware 3 The Switch s default is to assign all ports to a single 802 1Q VLAN named DEFAULT_VLAN 4 The DEFAULT_VLAN has a VID 1 5 The DES 3226 supports Asymmetric VLANs The member ports of VLANs can be overlapped See the section on Asymmetric VLANs below IEEE 802 1Q VLANs Some relevant terms Tagging The act of putting 802 1Q VLAN information into the header of a packet Unta...

Страница 38: ...sed for encapsulating Token Ring packets so they can be carried across Ethernet backbones and 12 bits of VLAN ID VID The 3 bits of user priority are used by 802 1p The VID is the VLAN identifier and is used by the 802 1Q standard Because the VID is 12 bits long 4094 unique VLANs can be identified The tag is inserted into the packet header making the entire packet longer by 4 octets All of the info...

Страница 39: ...ut the PVID is not used to make packet forwarding decisions the VID is Tag aware Switches must keep a table to relate PVIDs within the Switch to VIDs on the network The Switch will compare the VID of a packet to be transmitted to the VID of the port that is to transmit the packet If the two VIDs are different the Switch will drop the packet Because of the existence of the PVID for untagged packets...

Страница 40: ... is used to conserve bandwidth within the Switch by dropping packets that are not on the same VLAN as the ingress port at the point of reception This eliminates the subsequent processing of packets that will just be dropped by the destination port Asymmetric VLANs The DES 3226S supports Asymmetric VLANs implementation for more efficient use of shared resources such as server or gateway devices An ...

Страница 41: ...ss D IP addresses are assigned to a group of network devices that comprise a multicast group The four most significant four bits of a Class D address are set to 1110 The following 28 bits is referred to as the multicast group ID Some of the range of Class D addresses are registered with the Internet Assigned Numbers Authority IANA for special purposes For example the block of multicast addresses r...

Страница 42: ...rby routers that they want to become a multicast group member of the group these packets are being sent to The Internet Group Management Protocol IGMP is used by multicast routers to maintain multicast group membership IGMP is also used to coordinate between multiple multicast routers that may be present on a network by electing one of the multicast routers as the querier This router then keep tra...

Страница 43: ... IGMP version 2 Multicast routers send IGMP queries to the all hosts group address 224 0 0 1 periodically to see whether any group members exist on their subnetworks If there is no response from a particular group the router assumes that there are no group members on the network and multicast packets are not forwarded The TTL field of query messages is set to 1 so that the queries do not get forwa...

Страница 44: ...s the same internal Switching software and configure it Thus all settings encountered in web based management are the same as those found in the console program NOTE This Web based Management Module does not accept Chinese language input or other languages requiring 2 bytes per character Getting Started The first step in getting started in using web based management for your Switch is to secure a ...

Страница 45: ...he URL in the address bar should read something like http 123 123 123 123 where the numbers 123 represent the IP address of the Switch NOTE The Factory default IP address for the Switch is 10 90 90 90 with a Netmask 255 0 0 0 In the page that opens click on the Login hyperlink This opens the management module s main page Figure 6 1 Welcome Page The Switch management features available in the web b...

Страница 46: ...ch configuration and management screens allows you to view performance statistics and permits you to graphically monitor the system status Areas of the User Interface The figure below shows the user interface The user interface is divided into 3 distinct areas as described in the table Figure 6 1 Main Web Manager Screen Area 1 Area 2 Area 3 ...

Страница 47: ...phic can be selected for performing management functions including the ports expansion modules management module or the case 2 Folders subfolders and hyperlinks for the selection of command sets and menus 3 Presents Switch information based on your selection and the entry of configuration data This section arranged by topic describes how to perform common monitoring and configuration tasks on the ...

Страница 48: ...confirm the new password Determine whether the new user should have Admin or User privileges 2 Click on APPLY to make the user addition effective 3 A listing of all user accounts and access levels is shown on the user accounts control table This list is updated when Apply is executed 4 Please remember that Apply makes changes to the Switch configuration for the current session only All changes inc...

Страница 49: ...t with Admin level privileges highlight Save Changes and press Enter see below The Switch will save any changes to its non volatile ram and reboot You can logon again and are now ready to continue configuring the Switch Saving Changes The DES 3226S has two levels of memory normal RAM and non volatile or NV RAM Configuration changes are made effective by highlighting Apply and pressing the Apply bu...

Страница 50: ...ion but do not save this configuration Reset System will return the Switch s configuration to the state it was when it left the factory Reset gives the option of retaining the Switch s User Accounts and History Log while resetting all other configuration parameters to their factory defaults If the Switch is reset with this option enabled and Save Changes is not executed the Switch will return to t...

Страница 51: ... executing Save Changes and then restarting the Switch Click the Restart button to restart the Switch Figure 6 7 Restart System Screen Basic Setup The hyperlinked menus contained in the Basic Setup folder include Switch Information Basic Switch Setup Stacking Information Port Configuration Port Security Settings Multicast Port Filtering Mode Traffic Segmentation Table User Accounts Management Stat...

Страница 52: ... The Basic Switch Setup window allows you to change the settings for the Ethernet interface used for in band communication The fields listed under the Current IP Settings heading are those that are currently being used by the Switch Those fields listed under the New Switch IP Setting heading are those that will be used after clicking on the Apply button To set the Switch s IP address Click the Bas...

Страница 53: ... default gateway address Use the Get IP From Manual pull down menu to choose from Manual BOOTP or DHCP This selects how the Switch will be assigned an IP address on the next reboot Figure 6 9 Basic Switch Setup NOTE The factory default IP address for the Switch is 10 90 90 90 with a subnet mask of 255 0 0 0 and a default gateway of 0 0 0 0 ...

Страница 54: ...xx xxx xxx xxx where each xxx is a number represented in decimal between 0 and 255 The value should be 255 0 0 0 for a Class A network 255 255 0 0 for a Class B network and 255 255 255 0 for a Class C network but custom subnet masks are allowed Default Gateway IP address that determines where packets with a destination address outside the current subnet should be sent This is usually the address o...

Страница 55: ...ng Information The Unit ID field displays the Switch s order in the stack The Switch with a Unit ID of 1 is the Master Switch The MAC Address field displays the unique address of the Switch assigned by the factory The Start Port field displays the first port assigned to the corresponding Switch in the Switch stack The Port Range field displays the total number of ports on the Switch Note that the ...

Страница 56: ...her or not it has a stacking module installed enable When the stacking mode is enabled the Switch may function in a properly connected and configured Switch stack By default the Switch has the stacking mode enabled When enabled the stacking mode can operate in master slave or auto modes auto Switches in the stack will be assigned a unit ID using a comparison of the numerical value of the Switch s ...

Страница 57: ...h with MAC address 00 11 33 44 55 60 and enter the following command config stacking mode master This will configure the Switch with MAC address 00 11 33 44 55 60 to always have a Unit number of 1 as the master You can then use the show stacking command to verify the stacking configuration as shown below Figure 6 13 config stacking Command ...

Страница 58: ...p folder Figure 6 14 Choose Switch from stack Figure 6 15 Port Configurations For stacked switch installations it will be necessary to select the Unit switch according to its logical position in the stack Click the selection button on the far left that corresponds to the port you want to configure and click the Edit button ...

Страница 59: ...d Unit to be selected for configuration Use the State Enabled pull down menu to either enable or disable the selected port Use the Flow Control Off pull down menu to either turn flow control on or off for the selected port Use the Speed Duplex Auto pull down menu to either select the speed and duplex half duplex state of the port Auto auto negotiation between 10 and 100 Mbps devices full or half d...

Страница 60: ...to either select the speed and duplex half duplex state of the port Auto auto negotiation between 10 and 100 Mbps devices full or half duplex The Auto setting allows the port to automatically determine the fastest settings the device the port is connected to can handle and then to use those settings The other options are 100M Full 100M Half 10M Full and 10M Half There is no automatic adjustment of...

Страница 61: ...le or disable port security for the port Max Learning Address 1 Select the maximum number of addresses that may be learned for the port The port can be restricted to 10 or less MAC addresses that are allowed for dynamically learned MAC addresses in the forwarding table Lock Address Mode Delete On Reset Select Delete On Timeout to clear dynamic entries for the ports on timeout of the Forwarding Dat...

Страница 62: ...o segment traffic between Switch units in a stack For this it would be appropriate to use VLANs or a filtering method This provides an additional tool to direct traffic flow without relying on the Master CPU Figure 6 19 Traffic Segmentation Table Click the selection button on the far left that corresponds to the port you want to configure and click the Edit button This will open the following dial...

Страница 63: ...older Figure 6 21 Serial Port Settings The following fields can then be set for the serial port Parameter Description Baud Rate Set the serial bit rate used to communicate with a management station The console baud rate is 9600 bits per second Data Bits Displays the number of bits that make up a word when communicating with the management station The console interface uses 8 data bits Stop Bits Di...

Страница 64: ...NTP service Current Time The Current Time Settings menu is used to set system time SNTP service can be enabled and configured here or use manual settings The read only information here includes System Boot Time Time elapsed since last boot up sequence Current Time Current System Time expressed HH MM SS Time Source Source of time settings SNTP or interneal system clock Figure 6 22 Time Settings ...

Страница 65: ...e secondary server the SNTP information will be taken from in the event the primary server is unavailable SNTP Polling Interval This is the interval between requests for updated SNTP information The polling interval ranges from 30 to 99 999 seconds Set Current Time Year Select the year for manual date setting Month Select the month for manual date setting Day Select the day of the month for manual...

Страница 66: ...What Time HH MM Select the time of day to begin DST Time is expressed using a 24 hour clock using the hour and minute only To Which Week Select the week of the month in which DST ends To Which Day Select the day of the week in which DST ends To Which Month Select the month in which DST ends To What Time HH MM Select the time of day to end DST Time is expressed using a 24 hour clock DST Annual Sett...

Страница 67: ...ary in the level of security provided between the management station and the network device SNMP settings are configured using the menus located on the SNMP V3 folder of the web manager Workstations on the network that are allowed SNMP privileged access to the Switch can be restricted with the Management Station IP Address menu SNMP View Table The SNMP View Table is used to assign views to communi...

Страница 68: ...lude this object in the list of objects that an SNMP manager can access Select Excluded to exclude this object from the list of objects that an SNMP manager can access SNMP Group Table The SNMP Group created with this table maps SNMP users identified in the SNMP User Table to the views created in the previous menu Figure 6 26 SNMP Group Table To delete an existing entry click the selection button ...

Страница 69: ...t there will be no authorization and no encryption of packets sent between the Switch and a remote SNMP manager AuthNoPriv Specifies that authorization will be required but there will be no encryption of packets sent between the Switch and a remote SNMP manager AuthPriv Specifies that authorization will be required and that packets sent between the Switch and a remote SNMP manger will be encrypted...

Страница 70: ...is allowed to access on the Switch The view name must exist in the SNMP View Table Access Right Use the pull down menu to select the access right read_only Specifies that SNMP community members using the community string created with this command can only read the contents of the MIBs on the Switch read_write Specifies that SNMP community members using the community string created with this comman...

Страница 71: ...ntry click the New button a separate menu will appear Figure 6 32 SNMP Host Table Add New Parameter Description IP Address Type the IP address of the remote management station that will serve as the SNMP host for the Switch SNMP Version From the pull down menu select V1 To specifies that SNMP version 1 will be used V2 To specify that SNMP version 2 will be used V3 To specify that the SNMP version ...

Страница 72: ...can be any alphanumeric name of up to 32 characters that will identify the SNMP group the new SNMP user will be associated with SNMP Version From the pull down menu select V1 To specifies that SNMP version 1 will be used V2 To specify that SNMP version 2 will be used V3 To specify that the SNMP version 3 will be used If Encryption V3 only is checked configure also Auth Protocol In the Space provid...

Страница 73: ...ownload Firmware from Server Select which Switch of a Switch stack you want to update the firmware on This allows the selection of a particular Switch from a Switch stack if you have installed the optional stacking module and have properly interconnected the Switches 1 Enter the IP address of the TFTP server in the Server IP Address field 2 The TFTP server must be on the same IP subnet as the Swit...

Страница 74: ...on the TFTP server 2 Click Save Settings to record the IP address of the TFTP server 3 Use Save Changes from the Maintenance menu to enter the address into NV RAM 4 Click Start to initiate the file transfer Save Settings To Server To download a configuration file for the Switch s click on the Basic Setup folder and then the Switch Utilities folder and then the TFTP Services folder and finally clic...

Страница 75: ... and the path and filename for the history log on the TFTP server Click Save Settings to make the changes current Click Upload to initiate the file transfer Ping Test Ping is a small program that sends data packets to the IP address you specify The destination node then returns the packets to the Switch This is very useful to verify connectivity between the Switch and other nodes on the network Fi...

Страница 76: ...ate a new 802 1Q VLAN The VLAN menu adds an entry to edit the VLAN definitions and to configure the port settings for IEEE 802 1Q VLAN support Go to the Advanced Setup folder select VLAN Configurations and click the 802 1Q VLANs link to open the following dialog box Figure 6 40 802 1Q VLANs To delete an existing 802 1Q VLAN click the corresponding click box to the left of the VLAN you want to dele...

Страница 77: ...s Tagging A Check in the Tagged field specifies the port as a Tagging member of the VLAN When an untagged packet is transmitted by the port the packet header is changed to include the 32 bit tag associated with the VID VLAN Identifier see below When a tagged packet exits the port the packet header is unchanged Untagged Allows an individual port to be specified as Untagged When an untagged packet i...

Страница 78: ...ed packets received on port 2 will be assigned to VLAN 3 This number is generally the same as the VID number assigned to the port in the Edit 802 1Q VLANs menu above GVRP Disabled The Group VLAN Registration Protocol GVRP enables the port to dynamically become a member of a VLAN Ingress Checking Disabled This field can be toggled using the space bar between Enabled and Disabled Enabled enables the...

Страница 79: ...e remaining ports The email server can freely associate with all ports that is all clients connected to the Switch The key difference between conventional 802 1q VLAN implementation or symmetric VLANs and asymmetric VLANs is in how address mapping is handled Symmetric VLANs use separate address tables so there is no address sharing between VLANs Asymmetric VLANs can use a single shared address tab...

Страница 80: ... Switch s four priority queues can be configured to reduce the buffer in a round robin fashion beginning with the highest priority queue and proceeding to the lowest priority queue before returning to the highest priority queue The weighted priority based scheduling alleviates the main disadvantage of strict priority based scheduling in that lower priority queues get starved of bandwidth by provid...

Страница 81: ... amount of additional latency introduced because the priority queue that is transmitting at the time the MAX Latency time expires will finish transmitting its current packet before giving up the transmit buffer Configuring 802 1p User Priority The DES 3226S allows the assignment of a User Priority to each of the 802 1p priorities Figure 6 47 QoS Class of Traffic Once you have assigned a maximum nu...

Страница 82: ...ignment of a default 802 1p priority to each port on the Switch Click on the Default Priority link Figure 6 48 Priority Based on Port This window allows you to assign a default 802 1p priority to any given port on the Switch The priority queues are numbered from 0 the lowest priority to 7 the highest priority ...

Страница 83: ...wed bandwidth for a given port In the Bandwidth Control Table click the selection button in the far left column that corresponds to the port you want to configure and click the Edit button A new dialog box used to edit bandwidth settings opens Figure 6 49 Edit Port Bandwidth To limit either the Rx or Tx rates deselect the No Limit check box and type the desired rate Rates can be expressed using wh...

Страница 84: ... entries can be made to the port mirroring table but it should be noted that a faster port a 1000 Mbps Gigabit Ethernet port for example should not be mirrored to a slower port one of the 24 100 Mbps Fast Ethernet port because many packets will be dropped The following fields can be set Parameter Description Source Port Allows the entry of the port number of the port to be mirrored This port is th...

Страница 85: ...0 000 seconds To configure the MAC Address Aging Time click on the Forwarding folder and then the MAC Forwarding folder then click on the MAC Address Aging Time link Figure 6 52 MAC Address Aging Time Unicast MAC Address Forwarding MAC addresses can be statically entered into the Switch s MAC Address Forwarding Table These addresses will never age out To enter a MAC address into the Switch s forwa...

Страница 86: ... of an end station that will be entered into the Switch s static forwarding table when adding a new entry Displays the currently selected MAC address when editing VLAN Name Allows the entry of the VLAN Name of the VLAN the MAC address below is a member of when editing Displays the VLAN the currently selected MAC address is a member of when editing an existing entry Unit Allows the selection of a g...

Страница 87: ...ble click on the Forwarding folder and then the MAC Forwarding folder and then click on the Multicast MAC Address Settings link Figure 6 56 Multicast MAC Address Settings To add a new multicast MAC address to the Switch s forwarding table click the New button Figure 6 57 Multicast MAC Address Settings Add To edit an existing entry to the Switch s forwarding table click the entry s corresponding cl...

Страница 88: ...hen adding a new entry to the table Displays the VLAN name of the VLAN the MAC address is a member of when editing an existing entry Port Allows the entry of the port number on which the MAC address entered above resides None Specifies the port as being none Egress Specifies the port as being a source of multicast packets originating from the MAC address specified above Forbidden Forbidden Non Mem...

Страница 89: ... This command configures the multicast filtering and forwarding for specified ports Figure 6 59 Multicast Port Filtering Click the selection button on the far left that corresponds to the port you want to configure and click the Edit button This will open the following dialog box ...

Страница 90: ...iltering takes places since multicast packets from unregistered and registered multicast groups are forwarded in the specified port group forward_unregistered_groups Forward only multicast packets from unregistered multicast groups Multicast packets from registered groups are dropped filter_unregistered_groups Filter all multicast packets from unregistered multicast groups Multicast packets from r...

Страница 91: ...s more broadcast or multicast packets per second than is specified in the Upper Threshold Kpps field the Switch will take the actions specified in the Broadcast Storm Mode Multicast Storm Mode and the Destination Lookup Fail pull down menus The Broadcast Storm Mode is Enabled or Disabled using the pull down menu for the corresponding port group When the Broadcast Storm Mode is enabled and a port c...

Страница 92: ...itch has the lowest Bridge Identifier it will become the Root Bridge Hello Time 1 10 sec 2 The Hello Time can be set from 1 to 10 seconds This is the interval between two transmissions of BPDU packets sent by the Root Bridge to tell all other Switches that it is indeed the Root Bridge Forward Delay 4 30 sec 15 The Forward Delay can be from 4 to 30 seconds This is the time any port on the Switch sp...

Страница 93: ...Settings Figure 6 64 STP Port Settings In addition to setting Spanning Tree parameters for use on the Switch level the Switch allows for the configuration of groups of ports each port group of which will have its own spanning tree and will require some of its own configuration settings An STP Group will use the Switch level parameters entered above with the addition of Port Priority and Port Cost ...

Страница 94: ... the benefits of RSTP are not realized on a port where an 802 1d network connects to an 802 1w enabled network Migration should be enabled yes on ports connected to network stations or segments that will be upgraded to 802 1w RSTP on all or some portion of the segment Edge No Select True or False Choosing true designates the port as an edge port Edge ports cannot create loops however an edge port ...

Страница 95: ...ng MAC notification global settings Parameter Description State Enable or Disable MAC notification Switch wide from the pull down menu Interval This is the time in seconds between notifications History Size This is maximum number of entries listed in the history log used for notification Up to 500 entries can be specified MAC Notification Port Settings Enable or disable MAC notification for ports ...

Страница 96: ...s except the two optional Gigabit ports which can only belong to a single link aggregation group A link aggregation group may not cross an 8 port boundary starting with port 1 a group may not contain ports 8 and 9 for example and all of the ports in the group must be members of the same VLAN Further the aggregated links must all be of the same speed and should be configured as full duplex The conf...

Страница 97: ...ine the MAC source and destination addresses IP_source Indicates that the Switch should examine the IP source address IP_destination Indicates that the Switch should examine the IP destination address IP_source_dest Indicates that the Switch should examine the IP source and destination addresses To configure a link aggregation group click on the Link Aggregation link from the Advanced Setup folder...

Страница 98: ...rt group as LACP compliant so they can be connected to a n LACP compliant device Static trunk groups are not able to adjust dynamically and both devices connected to the static trunk group must be manually configured if the composition of the group is changed Master Port 1 The Master port of link aggregation group Unit Allows the selection of a particular Switch in a Switch stack if you have the o...

Страница 99: ...802 1x on the Switch choose the type of authorization to use and click the Apply button Figure 6 72 802 1X State Port based Authorization means that ports configured for 802 1x function see 802 1X Port Settings are initialized based on the port number only and subject to any authorization parameters as configured MAC based Authorization means that ports configured for 802 1x function see 802 1X Po...

Страница 100: ...ate Displays the administrative control over the port s authorization status Force Authorized forces the Authenticator of the port to become Authorized Force Unauthorized forces the port to become Unauthorized Backend State Shows the current state of the Backend Authenticator OperCtlState This displays whether a controlled Port that is unauthorized will exert control over communication in both rec...

Страница 101: ... Authorized Force Unauthorized forces the port to become Unauthorized Quiet Period Select the time interval between authentication failure and the start of a new authentication attempt Tx Period Select the time to wait for a response from a supplicant user to send EAP Request Identity packets Support Timeout Select the time to wait for a response from a supplicant user for all EAP packets except f...

Страница 102: ...gure 802 1x Port Capability for a port select the port to be configured and determine the 802 1x port capability Click the Apply button to configure the capability Parameter Description Port Select the port or lowest number of the group of ports being configured Capability Select the following Authenticator A user must pass the authentication process to gain access to the network None The port is ...

Страница 103: ...MAC address This option can only be used if the authorization is MAC based see 802 1 State Re Authenticate Ports 802 1x ports must be periodically re authenticated when the re authentication period lapses Use this menu to determine if previously authenticated devices are re authenticated based on either MAC address or port number Figure 6 78 Reauthenticate Ports Parameter Description Port Select t...

Страница 104: ...editing Radius settings are the same See the table below for a description Figure 6 80 Radius Server Add New Figure 6 81 Edit Radius Server Settings Configure the following Radius server settings Parameter Description Index Radius server settings index IP Address Type in the IP address of the Radius server Key Type the shared secret key used by the Radius server and the Switch Up to 32 characters ...

Страница 105: ...ress or the IP destination address The second part is entering the criteria the Switch will use to determine what to do with the frame The entire process is described below in two parts Figure 6 82 Access Profile Mask Setting Table Figure 6 83 MAC Address Access Profile Mask Setting Add To create an Access Profile Mask Click the New button in the Access Profile Mask Setting summary table page A ne...

Страница 106: ...frame s header Protocol for IP address Access Profiles only Selecting this option instructs the Switch to examine the protocol type value in each frame s header You must then specify what protocol s to include according to the following guidelines Select ICMP to instruct the Switch to examine the Internet Control Message Protocol ICMP field in each frame s header Select Type to further specify tha...

Страница 107: ...ess Rule ID Type in a unique identifier number for this access This value can be set from 1 255 priority Select this option to instruct the Switch to use the 802 1p priority value entered in the adjacent field for packets that meet the criteria A number between 0 lowest priority and 7 highest priority can be entered replace_priority Select this option to instruct the Switch to replace the 802 1p v...

Страница 108: ...er The Switch can send Syslog messages to up to four designated servers Figure 6 87 System Log Server list The parameters configured for adding and editing System Log Server settings are the same See the table below for a description Figure 6 88 System Log Server Add menu ...

Страница 109: ...ch supports now Numerical Facility Code 0 kernel messages 1 user level messages 2 mail system 3 system daemons 4 security authorization messages 5 messages generated internally by syslog line printer subsystem 7 network news subsystem 8 UUCP subsystem 9 clock daemon 10 security authorization messages 11 FTP daemon 12 NTP subsystem 13 log audit 14 log alert 15 clock daemon 16 local use 0 local0 17 ...

Страница 110: ...MP Snooping Click IGMP Snooping Configurations to open the following dialog box Figure 6 90 IGMP Snooping Configuration To edit an IGMP Snooping entry on the Switch select the entry on the IGMP Snooping Configurations screen and then click the edit button Figure 6 91 IGMP Snooping Configuration ...

Страница 111: ...up specific query messages including those sent in response to leave group messages The default is 1 second Querier State This field can be Switched using the pull down menu between Disabled and Enabled Host Timeout Specifies the maximum amount of time a host can be a member of a multicast group without the Switch receiving a host membership report The default is 260 seconds Host Leave Timer Speci...

Страница 112: ...line graph or table format To view the port utilization click on the Network Monitoring folder and then the Statistics folder and then the Port Utilization link Figure 6 92 Port Utilization Line Chart Figure 6 93 Port Utilization Table Select the desired port by clicking on the front panel display The Update Interval field sets the interval at which the error statistics are updated The following f...

Страница 113: ... that the Switch can detect and displays the results on a per port basis To view the error statistics for a port click on the Port Error Packets link Figure 6 94 Port Error Packet Statistics window Select the desired port by clicking on the front panel display The Update Interval field sets the interval at which the error statistics are updated ...

Страница 114: ...were less that 64 octets in length excluding framing bits but including FCS octets and had either an FCS or an alignment error Jabber The total number of frames received that were longer than 1518 octets excluding framing bits but including FCS octets and had either an FCS or an alignment error Drop Packets The total number of events in which packets were dropped due to a lack of resources TX Fram...

Страница 115: ...given by the column on the right Frames sec The number of packets or frames transmitted or received per second by the Switch Unicast RX Displays the number of unicast packets received by the Switch in total number Frames and the rate Frames sec Multicast RX Displays the number of multicast packets received by the Switch in total number Frames and the rate Frames sec Broadcast RX Displays the numbe...

Страница 116: ...s are then used to forward packets through the Switch To view the MAC address forwarding table from the Address Tables folder click the MAC Address Table link Figure 6 96 Browse Address Table sequential window GVRP Status This allows the GVRP status for each of the Switch s ports to be viewed by VLAN The GVRP status screen displays the ports on the Switch that are currently Egress or Untagged port...

Страница 117: ...ort configured by the Switch IGMP Snooping Status This allows the Switch s IGMP Snooping table to be viewed IGMP Snooping allows the Switch to read the Multicast Group IP address and the corresponding MAC address from IGMP packets that pass through the Switch The ports where the IGMP packets were snooped are displayed signified with an M The number of IGMP reports that were snooped is also display...

Страница 118: ... Switch History Log to be viewed The Switch records all traps in sequence that identify events on the Switch The time since the last cold start of the Switch is also recorded To view the Switch history log Click the Switch History link on the Applications menu Figure 6 100 Switch History ...

Страница 119: ...dth Weight 2 5 kg EMI FCC Class A CE Class A BSMI Class A C Tick Class A Safety CSA International General Standards IEEE 802 3 10BASE T Ethernet IEEE 802 3u 100BASE TX Fast Ethernet IEEE 802 3z 1000BASE SX Gigabit Ethernet IEEE 802 3ab 1000BASE T Gigabit Ethernet IEEE 802 1 P Q VLAN IEEE 802 3x Full duplex Flow Control IEEE 802 3 Nway auto negotiation Protocols CSMA CD Data Transfer Rates Ethernet...

Страница 120: ...ethod Store and forward RAM Buffer 8 Megabytes per device Filtering Address Table 8K MAC address per device Packet Filtering Forwarding Rate Full wire speed for all connections 148 800 pps per port for 100Mbps 1 488 000 pps per port for 1000Mbps MAC Address Learning Automatic update ...

Страница 121: ...echsup dlink ca Chile D Link South America Sudamérica Isidora Goyenechea 2934 Oficina 702 Las Condes Santiago Chile TEL 56 2 232 3185 FAX 56 2 232 0923 URL www dlink com cl China D Link Beijing Level 5 Tower W1 The Tower Oriental Plaza No 1 East Chang An Ave Dong Cheng District Beijing 100738 China TEL 8610 85182529 30 31 32 33 FAX 8610 85182250 URL www dlink com cn E MAIL webmaster dlink com cn D...

Страница 122: ...1 022 2652 8914 8476 URL www dlink co in E MAIL service dlink co in tushars dlink co in Italy D Link Mediterraneo Srl D Link Italia Via Nino Bonnet n 6 B 20154 Milano Italy TEL 39 02 2900 0676 FAX 39 02 2900 1723 URL www dlink it E MAIL info dlink it Japan D Link Japan 10F 8 8 15 Nishi Gotanda Shinagawa ku Tokyo 141 Japan TEL 81 3 5434 9678 FAX 81 3 5434 9868 URL www d link co jp E MAIL kida d lin...

Страница 123: ...k se Taiwan D Link Taiwan 2F No 119 Pao chung Road Hsin tien Taipei Taiwan TEL 886 2 2910 2626 FAX 886 2 2910 1515 URL www dlinktw com tw E MAIL dssqa dlinktw com tw Turkey D Link Turkiye Beybi Giz Plaza Ayazaga Mah Meydan Sok No 28 Maslak 34396 Istanbul Turkiye TEL 90 212 335 2553 direct 90 212 335 2525 pbx FAX 90 212 335 2500 E MAIL dlinkturkey dlink me com E MAIL support dlink me com U A E D Li...

Страница 124: ...117 U S A D Link U S A 17575 Mt Herrmann Fountain Valley CA 92708 USA TEL 1 714 885 6000 FAX 1 866 743 4905 INFO 1 800 326 1688 URL www dlink com E MAIL tech dlink com support dlink com ...

Страница 125: ..._________________________________________________ 5 What network management program does your organization use D View HP OpenView Windows HP OpenView Unix SunNet Manager Novell NMS NetView 6000 Others_________________________________________________________________ 6 What network medium media does your organization use Fiber optics Thick coax Ethernet Thin coax Ethernet 10BASE T UTP STP 100BASE TX...

Страница 126: ......

Отзывы: