Dahua DH-PFS4218-16GT2GF-240 Скачать руководство пользователя страница 2

Foreword

   

I

 

Foreword 

General 

This  Web  Configuration  Manual  (hereinafter  referred  to  as  "the  manual")  introduces 

operations on web interface of Managed Gigabit PoE Switch (hereinafter referred to as "the 

Switch"). You can visit the switch on web browser, configure and manage the switch. 

Safety Instructions 

The following categorized signal words with defined meaning might appear in the manual. 

Signal Words 

Meaning 

DANGER

 

Indicates a high potential hazard which, if not avoided, will result in 

death or serious injury. 

WARNING

 

Indicates  a  medium  or  low  potential  hazard  which,  if  not  avoided, 

could result in slight or moderate injury. 

CAUTION

 

Indicates  a  potential  risk  which,  if  not  avoided,  could  result  in 

property  damage,  data  loss,  lower  performance,  or  unpredictable 

result. 

TIPS

 

Provides methods to help you solve a problem or save you time. 

NOTE

 

Provides additional information as the emphasis and supplement to 

the text. 

Revision History 

Version 

Revision Content 

Release Time 

V1.0.0 

First release. 

July 2019 

V1.0.1 

 

Added  PoE  watchdog  and  function 

of network management system. 

 

Updated figures. 

November 2020 

Privacy Protection Notice 

As the device user or data controller, you might collect personal data of others such as face, 

fingerprints, car plate number, Email address, phone number, GPS and so on. You need to be 

in compliance with the local privacy protection laws and regulations to protect the legitimate 

rights  and  interests  of  other  people  by  implementing  measures  include  but  not  limited  to: 

providing clear and visible identification to inform data subject the existence of surveillance 

area and providing related contact. 

Содержание DH-PFS4218-16GT2GF-240

Страница 1: ...Managed Gigabit PoE Switch Web Config Manual V1 0 1...

Страница 2: ...e data loss lower performance or unpredictable result TIPS Provides methods to help you solve a problem or save you time NOTE Provides additional information as the emphasis and supplement to the text...

Страница 3: ...written notice The product updates might cause some differences between the actual product and the manual Please contact the customer service for the latest program and supplementary documentation The...

Страница 4: ...ce Install the device in the well ventilated environment Do not block the air vent of the device Use the device at rated input and output voltage Do not dissemble the device without professional instr...

Страница 5: ...3 1 5 MAC Table 20 3 1 6 Spanning Tree 25 3 1 7 Long Distance PoE 28 Seldom used Configurations 28 3 2 3 2 1 ERPS 28 3 2 2 ACL 36 3 2 3 Loop Protection 39 3 2 4 Security 39 3 2 5 IGMP Snooping 44 3 2...

Страница 6: ...Table of Contents V 4 7 3 Uploading Network Management Configuration File 73 Cybersecurity Recommendations 74 Appendix 1...

Страница 7: ...tch in the address bar of the Step 1 web browser and then press Enter The Login interface is displayed See Figure 1 1 Web login Figure 1 1 Enter user name and password The user name and the password a...

Страница 8: ...tting interface is displayed See Figure 2 1 On the switch if the port shows green it means the port is connected successfully And If the port shows gray it means the port is not connected or the conne...

Страница 9: ...ng speed is divided by the average speed in a certain period 5 minutes usually Media Type Two media types Copper and Fiber Copper indicates RJ 45 port and Fiber indicates fiber port Local 2 2 You can...

Страница 10: ...ices such as PC and IPC select Access Trunk When the port connects to switch select Trunk Hybrid Not often used Port VLAN Add the port to a VLAN By default the port belongs to VLAN1 and the range is 1...

Страница 11: ...l as Static in group 1 which indicates that the group is static aggregation Step 1 Select port 1 and port 2 in group 1 to add the two ports to static aggregation See Step 2 Figure 2 5 For 4 port PoE s...

Страница 12: ...nd add the ports to the aggregation group For example add port 3 and port 4 to aggregation group 2 See Figure 2 6 2 Select LACP Passive in the Mode area and add the ports to the aggregation group For...

Страница 13: ...added See Figure 2 8 VLAN interface Figure 2 8 2 For the parameters see Table 2 3 Table 2 3 VLAN interface Parameter Description VLAN Enter VLAN number IP address Set the IP address of the VLAN inter...

Страница 14: ...n Network It is the destination of the IP packet Mask Length Mask length with the destination address is to identify the IP address of the destination host or the route After Logical AND between desti...

Страница 15: ...Configuration 3 1 1 1 System Information You can set the device name IP address mask length and DHCP enable and view the software information hardware information and time Be careful when you enable D...

Страница 16: ...lick Save Step 3 3 1 1 2 IP and Route The hosts of different VLANs cannot communicate Route or the layer 3 switch is needed for forwarding The switch supports layer 3 forwarding through VLAN interface...

Страница 17: ...ry VLAN corresponds to a network segment VLAN interface is the gateway of the network segment and it supports layer 3 forwarding for the message based on IP address Select Advanced Common System Confi...

Страница 18: ...Setting region The Add Route interface is displayed See Figure 3 4 Add route Figure 3 4 2 For the parameters see Table 3 2 Table 3 2 IP routes Parameter Description Network It is the destination of t...

Страница 19: ...gh the following three methods Set the time manually Set the date and time on Current Time interface and then click Save Sync time Click Sync PC and the switch time synchronizes with the local PC time...

Страница 20: ...ure 3 6 Click Save Step 3 The switch time automatically synchronizes with the time of server 1 3 1 1 4 Log You can view logs export logs and clear logs Select Advanced Common System Config Log The Log...

Страница 21: ...the logs Log Level includes Error Warning Notice and Information Click Export to export all logs Click Clear to clear all logs 3 1 2 Port Configuration You can set the port parameters including speed...

Страница 22: ...tion and the specific speed means successful connection Full means full duplex Half means half duplex Speed Duplex Setting Set the speed and the duplex mode The speed and duplex mode of combo port is...

Страница 23: ...ck Save Step 3 3 1 3 VLAN Configuration Add the port to the VLAN and configure the VLAN By default the port belongs to VLAN1 Select Advanced Common VLAN Settings Step 1 The VLAN Settings interface is...

Страница 24: ...tuations Untag Port VLAN If the data flow tag is the same with PVID the tag will be peeled Tag All All data will be tagged Untag All All data will not be tagged Allowed VLANs Set the allowed VLAN Clic...

Страница 25: ...arding 4 port PoE switch at most 3 static aggregation groups can be set at the same time The static aggregation group is different depending on the models of switch The actual interface shall prevail...

Страница 26: ...6 to aggregation Group 3 See Figure 3 13 LACP 2 Figure 3 13 Click Save Step 4 3 1 5 MAC Table MAC Media Access Control Table records the relationship between the MAC address and the port and the infor...

Страница 27: ...c MAC Table Select Advanced Common MAC Table MAC Address Table Step 1 The MAC Address Table interface is displayed See Figure 3 14 MAC address table Figure 3 14 Bind the MAC address to the port in the...

Страница 28: ...er enabling port MAC filtering the following two MAC devices can communicate with the port Devices in MAC whitelist The static MAC devices changing from the dynamic MAC devices Select Advanced Common...

Страница 29: ...Advanced Settings 23 Port MAC filtering Figure 3 16 Select the port such as port 5 Step 2 Click behind Port 5 Enable to enable the port See Figure 3 17 Step 3...

Страница 30: ...e to static 1 Select one record and click Reserved 2 Click Save The type changes from Dynamic to Static Static MAC devices can communicate with the port normally Add MAC whitelist 1 Click Add The Add...

Страница 31: ...test MSTP Multiple Spanning Tree Protocol Select Advanced Common Spanning Tree STP Ports Settings Step 1 The STP Ports Settings interface is displayed See Figure 3 19 STP ports settings Figure 3 19 Se...

Страница 32: ...Advanced Settings 26 STP Figure 3 20 RSTP Figure 3 21...

Страница 33: ...22 Select 3 ports at least to combine an STP RSTP MSTP snoop For example Port 1 Step 4 port 2 and port 3 combine an STP snoop See Figure 3 23 STP snoop Figure 3 23 Click Save Step 5 The states of por...

Страница 34: ...loop prevention protocol standard of layer 2 defined by ITU T and the standard number is ITU T G 8032 Y1344 So it is also called G 8032 It defines RAPS Ring Auto Protection Switching protocol packet a...

Страница 35: ...played See Figure 3 26 Add Figure 3 26 For the parameters see Table 3 5 Step 3 Table 3 5 MEP parameters Parameter Description Instance Enter MEP instance number such as 1 Residence Port Enter the port...

Страница 36: ...he ERPS Port 1 Port 0 APS MEP The corresponding protocol packet ERPS to ERPS port Keep Port 0 APS MEP consistent with Port 0 SF MEP Keep Port 1 APS MEP consistent with Port 1 SF MEP For example Port 0...

Страница 37: ...le the mutex function of the ports 4 VLAN Configuration 5 Create MEP 6 Create ERPS and configure control VLAN and protection instance 7 View the status Example Plan protection VLAN and protocol VLAN t...

Страница 38: ...and MEP 2 Step 2 1 Select Advanced Seldom used ERPS MEP Setting The MEP Setting interface is displayed 2 Click Add The Add interface is displayed 3 Set Instance to be 1 See Figure 3 31 4 Set Residence...

Страница 39: ...t Instance to be 2 Residence port to be 2 Level to be 0 and Tagged VID to be 3 Click 1 and 2 separately under Instance to enter the configuration interface Modify Step 3 MEP ID and add peer ID See Fig...

Страница 40: ...Seldom used ERPS ERPS Setting The ERPS Setting interface is displayed 2 Click Add The Add New ERPS interface is displayed 3 Set ERPS ID to be 1 See Figure 3 34 4 Set Port 0 to be1 and Port 1 to be 2...

Страница 41: ...Advanced Settings 35 Add ERPS Figure 3 34 Click 1 under ERPSID to enter the configuration interface For ERPS configuration see Step 6 Figure 3 35 ERPS configuration Figure 3 35 1 Click VLANconfig...

Страница 42: ...ration Figure 3 37 Click OK Step 7 Configure switch 2 and switch 3 in the same way Step 8 View the state in Instance State on the ERPS Configuration interface Step 9 Instance state Figure 3 38 3 2 2 A...

Страница 43: ...And after the specific packet is identified the packet is allowed or forbidden to pass according the preset rule 3 2 2 1 ACL Configuration Select Advanced Seldom used ACL ACL Setting Step 1 The ACL S...

Страница 44: ...Step 4 3 2 2 2 ACL Group Configuration Select Advanced Seldom used ACL ACL Group Setting Step 1 The ACL Group Setting interface is displayed See Figure 3 41 ACL group configuration Figure 3 41 Enter...

Страница 45: ...n interface is displayed See Figure 3 42 Loop protection Figure 3 42 Click to enable Loop Protection Step 2 3 2 4 Security 3 2 4 1 User Management You can add edit and delete the user Select Advanced...

Страница 46: ...ank characters and contain at least two types of characters among upper case lower case number and special character excluding For example add the new user test 01 Click Save Step 3 The new user test...

Страница 47: ...PS is the URI scheme and the syntax is similar to HTTP and it is used for security HTTP data transmission Built in the web Netscape Navigator it provides authentication and encryption communication It...

Страница 48: ...authentication Enabled box to enable reauthentication Step 3 Set Admin State Force Authorized Force Unauthorized Port based 802 1X or Step 4 MAC based Auth Click Save Step 5 3 2 4 3 Radius Configurati...

Страница 49: ...o encapsulate the RADIUS packet At the beginning RADIUS is the AAA protocol for the dial up users only With the development of the user accesses RADIUS adapts to various access including Ethernet acce...

Страница 50: ...icast constraint mechanism running on the device of layer 2 for managing and controlling the multicast Through analyzing the received IGMP packet the device of layer 2 which runs IGMP Snooping creates...

Страница 51: ...he function Step 2 Select Disable or Enable in the Discarding Unknown IGMP Packets area Step 3 Click Add Step 4 The Add VLAN interface is displayed See Figure 3 51 Add VLAN Figure 3 51 Set VLAN ID and...

Страница 52: ...rate of multiple ports larger than that of the exit port If the flow arrives at linear speed it will encounter the resource chock point and then the congestion will generate Besides the aggression ba...

Страница 53: ...3 53 Set CoS For example Set port 1 to be 1 and port 2 to be 2 See Figure 3 54 Step 2 Port 1 and port 2 are ingress ports and port 3 is egress port The CoS value of port 2 is large than that of port...

Страница 54: ...the priority for packet passing egress port of switch depends on the CoS value in Port Classification 2 8 Queues Weighted When congestion occurs the priority for packet passing egress port of switch...

Страница 55: ...vanced Settings 49 Port schedulers Figure 3 55 Click the port such as port 1 Step 2 The QoS Egress Port Schedulers and Shapers Port 1 interface is displayed See Figure 3 56 The CoS of Q0 is 0 and so o...

Страница 56: ...Scheduler Mode as 2 Queues Weighted The max speed limit of port 1 and port 2 is 500 kbps When congestion occurs 50 ingress port packet will pass the egress port See the following for the configuratio...

Страница 57: ...figuration is the same for port schedulers and port shapers The only difference is that the port schedulers interface shows the weight value and the port shapers interface shows the speed rate Select...

Страница 58: ...sed Make sure that you have enabled DSCP before configuring DSCP function Select Advanced Seldom used QoS Port Classification Step 1 The Port Classification interface is displayed Enable DSCP at DSCP...

Страница 59: ...hen setting DSCP to be 4 and 8 the CoS is 2 and DPL are 2 and 1 Step 5 1 When DSCP are 4 and 8 select Trust to enable the function See Figure 3 60 2 When setting DSCP to be 4 CoS is 2 and DPL is 2 3 W...

Страница 60: ...Figure 3 60 Click Save Step 6 3 2 6 5 Storm Policer Inhibit the three packets including unicast multicast and broadcast Select Advanced Seldom used QoS Storm Policer Step 1 The Storm Policer interfac...

Страница 61: ...ort can receive the rate up to 1024 fps of unicast packet In Multicast select the Enable box and enter 1024 in Rate It means that the port can receive the rate up to 1024 fps of multicast packet In Br...

Страница 62: ...ferent physical features SNMP provides only the most basic function library It makes the management task and the physical feature and the networking technology of the managed device independent to man...

Страница 63: ...2 7 2 Configuring SNMP v1 v2 Example Configure SNMP v1 The configuration of SNMP v2 is the same as that of SNMP v1 Select SNMP v1 in SNMP Version Step 1 Set the read only community read write communi...

Страница 64: ...ced Settings 58 SNMP v3 Figure 3 64 Set the trap address trap port and trap name Step 2 Set the read only username authentication type authentication password encryption Step 3 type and encryption pas...

Страница 65: ...ess The network scale is large The workload is too heavy if manually configured and centralized management for network will be difficult The quantity of PC is larger than the quantity of IP address in...

Страница 66: ...er the VLAN range such as 2 4 3 Click OK Configure network segment of excluded IP Step 4 Excluded IP refers to the IP reserved for the server which will not assign to the client 1 Click Add in Exclude...

Страница 67: ...Configure the default gateway of the address pool 3 Click OK 3 2 9 LLDP LLDP Link Layer Discovery Protocol is a standard link layer discovery way It can form its main capabilities management address d...

Страница 68: ...LDP packet Select Disable Neither send nor receive LLDP packet Select Rx only Only receive LLDP packet Select Tx only Only send LLDP packet Click Save Step 3 View the LLDP Neighbor Information Select...

Страница 69: ...DP neighbor Figure 3 70 3 2 10 485 Config Transmit the data of asynchronous serial port RS 232 485 transparently through Ethernet Select Advanced Seldom used 485 Config The 485 Config interface is dis...

Страница 70: ...p The network terminal does not need the external power source anymore and one network cable is enough It conforms to the standards of IEEE 802 3af IEEE 802 3at and IEEE 802 3bt adopting the power por...

Страница 71: ...can view the total power of the 4 ports and configure available Step 2 power and overload power In Power Status you can view consumed power remaining power and reserved Step 3 power In Port Status an...

Страница 72: ...Save Step 3 3 2 11 3 Legacy Support Enable Legacy Support in case of non standard powered device Non standard powered device means that the device supports 48V PoE power supply but does not conform t...

Страница 73: ...evices and keep it online and check the status of PD devices every 60 s If there is no data transmission the PoE port will be automatically powered off and restarted Mandatory PoE power supply and PoE...

Страница 74: ...Advanced Settings 68 PoE watchdog Figure 3 75 3 2 11 5 Viewing PoE Event Statistics Select Advanced Seldom used PoE PoE Event Statistic to view PoE event statistics PoE event statistic Figure 3 76...

Страница 75: ...p 2 Click Confirm and the device reboots Step 3 Restoring Default Settings 4 2 You can restore all the switch configurations to the factory defaults except the VLAN1 IP address of the switch Select Ma...

Страница 76: ...we and select the config file to upload Step 2 Click UpLoad Step 3 Restart the device and the configuration will take effect Step 4 Software Update 4 4 Select Maintain Common Software Update Step 1 Th...

Страница 77: ...ts can be copied to a specific port mirroring destination port The mirroring destination port connects to a PC where data package analyzing software is installed and it can analyze the received data p...

Страница 78: ...tep 4 Ping 4 6 With Ping protocol you can check whether the device with a specified IP address can be accessed and check whether the network connection fails Select Maintain Common Ping Step 1 The Pin...

Страница 79: ...nagement configuration file Select Maintain Common iLinksView Export Step 1 Export configuration file Figure 4 9 Click Export Step 2 4 7 3 Uploading Network Management Config File You can upload netwo...

Страница 80: ...heck for updates function to obtain timely information of firmware updates released by the manufacturer We suggest that you download and use the latest version of client software Nice to have recommen...

Страница 81: ...ds SMTP Choose TLS to access mailbox server FTP Choose SFTP and set up strong passwords AP hotspot Choose WPA2 PSK encryption mode and set up strong passwords 11 Audio and Video Encrypted Transmission...

Страница 82: ...gested to use VLAN network GAP and other technologies to partition the network so as to achieve the network isolation effect Establish the 802 1x access authentication system to reduce the risk of una...

Отзывы: