background image

 

 

Lantech 

 
 
 
 
 
 

LGS-2816C-RPS 

 

16 100/1000M SFP+ 8 10/100/1000T/Dual  

Speed SFP Combo L2 Plus Managed  

Switch w/ Redundant Power Supply 

 
 
 

User  Manual 

 

Содержание LGS-2816C-RPS

Страница 1: ...Lantech LGS 2816C RPS 16 100 1000M SFP 8 10 100 1000T Dual Speed SFP Combo L2 Plus Managed Switch w Redundant Power Supply User Manual...

Страница 2: ...MANAGEMENT GUIDE LGS 2816C RPS 16 100 1000M SFP 8 10 100 1000T Dual Speed SFP Combo L2 Plus Managed Switch w Redundant Power Supply LGS 2816C RPS Publication date March 2011 Revision v5 17...

Страница 3: ...used throughout this guide to show information NOTE Emphasizes important information or calls your attention to related features or instructions CAUTION Alerts you to a potential hazard that could cau...

Страница 4: ...Revision History Release Date Revision 5 17 01 10 2010 B1...

Страница 5: ...CONTENTS...

Страница 6: ...des an overview of the switch and introduces some basic concepts about network switches It also describes the basic settings required to access the management interface This section includes these cha...

Страница 7: ...ontrol Lists Supports up to 128 Access Control Entries ACEs using the shared 128 ACEs for ingress classification DHCP Client Supported DNS Proxy service Port Configuration Speed duplex mode flow contr...

Страница 8: ...upports TACACS and RADIUS authentication for management security requirement and SSL and SSH for encryption for all HTTP traffic and all transmitted data for secure remote command line interface CLI a...

Страница 9: ...hen uses the EAP between the switch and the authentication server to verify the client s right to access the network via an authentication server i e RADIUS server Other authentication options include...

Страница 10: ...s restricted If broadcast traffic rises above a pre defined threshold it will be throttled until the level falls back beneath the threshold REDUDANT POWER SUPPLY Provide a D Sub connector on rear pane...

Страница 11: ...lision domain regardless of their physical location or connection point in the network The switch supports the IEEE 802 1Q tagged VLANs standard Members of VLAN groups can be dynamically learned via G...

Страница 12: ...or different kinds of forwarding DHCP SNOOPING This feature enables the DHCP Snooping to include information about client when forwarding DHCP requests from a DHCP client to a DHCP server via Trust Po...

Страница 13: ...209 81 9 7 Time Zone GMT 8 00 Daylight Saving 0 hour IP Configuration DHCP Setting Disabled IP Address 192 168 1 1 Subnet Mask 255 255 255 0 Default Gateway 192 168 1 254 DNS Manual DNS Server 0 0 0...

Страница 14: ...ring Disable Frame Type All PVID 1 Role Access Untag VID 0 Double Tag Disable Port Isolation Port Member None Management VLAN VLAN ID 1 MAC Address Table Age Time 300 secs Disable automatic aging Disa...

Страница 15: ...abled Ingress Rate 500 Ingress Unit Kbps Egress Enable Disabled Egress Rate 500 Egress Unit Kbps Storm Control Flooded unicast status Disabled Flooded unicast Rate 1 pps Multicast status Disabled Mult...

Страница 16: ...e switch s HTTP web agent allows you to configure switch parameters monitor port connections and display statistics using a standard web browser such as Microsoft IE 6 0 above Netscape V7 1 above or F...

Страница 17: ...information and statistics Configure the LLDP Parameters REQUIRED CONNECTIONS The switch provides an RS 232 serial port that enables a connection to a PC or terminal for monitoring and configuring the...

Страница 18: ...ss or enable dynamic address assignment via DHCP see Setting an IP Address on page 34 If the switch does not receive a IP Address from a DHCP server it will default to the IP address 192 168 1 1 defau...

Страница 19: ...ew password Confirm password Username changed successfully Password changed successfully Manual You have to input the information including IP address and subnet mask If your management station is not...

Страница 20: ...ip set ip Usage set ip mask gateway LGS 2816C RPS ip LGS 2816C RPS ip set ip 192 168 20 15 255 255 255 0 192 168 20 250 DYNAMIC CONFIGURATION OBTAINING AN IPV4 ADDRESS If you enable the dhcp option I...

Страница 21: ...ocol SNMP applications such as Lantech View You can configure the switch to 1 respond to SNMP requests or 2 generate SNMP traps When SNMP management stations send requests to the switch either to retu...

Страница 22: ...the switch from SNMP version 1 or 2c clients it is recommended that you change the default community strings To change the read only or read write community string type either of the following command...

Страница 23: ...mp LGS 2816C RPS snmp show trap SNMPv3 Trap Host Configuration No Ver IP Port Community Security Security Auth Priv Name Level Protocol Protocol 1 v2c 192 168 1 10 162 public 2 3 4 5 6 LGS 2816C RPS s...

Страница 24: ...er config load tftp server file name Managed Switch LGS 2816C PRS Login admin Passward LGS 2816C PRS config file LGS 2816C PRS config file LGS 2816C PRS config file import Usage import current user ip...

Страница 25: ...ibes the basic switch features along with a detailed description of how to configure each feature via a web browser This section includes these chapters Using the Web Interface Configuring the Switch...

Страница 26: ...ddress subnet mask and default gateway using an out of band serial connection or DHCP protocol See Setting an IP Address on page 34 2 Set the system password using an out of band serial connection See...

Страница 27: ...a configuration change has been made on a page be sure to click on the Apply button to confirm the new setting The following table summarizes the web page configuration buttons Table 3 Web Home Page C...

Страница 28: ...ount Configures User Account and Password Time Configures SNTP and System Time settings IP Configuration Configures IPv4 settings Loop Detection Configures Loop Detection Management Policy Configures...

Страница 29: ...rts Configures Port QoS parameters setting QoS Control List Configures QoS Control List setting Rate Limiters Configures Port Rate Limit parameters setting Storm Control Configures Storm Control param...

Страница 30: ...icaiton parameters setting Accounting Configures TACACS Accounting parameters setting Trunk Port Configures Trunk port settings and Display Trunk Port Status Aggregator View Display Trunk Aggregation...

Страница 31: ...Configures DHCP Snooping enable or disable setting DHCP Snooping Entry Display DHCP Snooping Entry detail information and configures DHCP Snooping parameters setting DHCP Snooping Client Display DHCP...

Страница 32: ...em diagnosis The basic system check includes EEPROM test UART test DRAM test and Flash test Ping Tests specified path using IPv4 ping Maintenance Warm Restart Provides a way to reset the switch includ...

Страница 33: ...the switch WEB INTERFACE To configure System Information in the web interface 1 Click SYSTEM System Information 2 Specify the contact information for the system administrator as well as the name and...

Страница 34: ...ls what this device is Here it is 16 Port SFP 8 Port Combo Port GbE L2 Plus Managed Switch Location User defined the specifies the system location Maximum length 255 characters Contact For easily mana...

Страница 35: ...rdware the one after the hyphen is the version of mechanical Serial number The serial number is assigned by Lantech Host IP address The IP address of the switch Host MAC address It is the Ethernet MAC...

Страница 36: ...g the Switch Setting Account CHAPTER 4 Configuring the Switch Setting Account Fan To display the Redundant Power Supply system fan status with rotation speed Voltage To display the Redundant Power Sup...

Страница 37: ...d 4 Click Apply NOTE The switch only allow one user connect from RS 232 Console UI and three user from Telnet Others allow maximum 4 users connect via WebUI and maximum 1 user connect via Telnet then...

Страница 38: ...ich uses the expression form of GMT xx hours WEB INTERFACE To configure Time in the web interface 1 Click SYSTEM Time 2 Specify the Time parameter in manual or NTP parameters 3 Click Apply NOTE Time Z...

Страница 39: ...and is used to sync the network time based Greenwich Mean Time GMT If use the NTP mode and select a built in NTP time server or manually specify an user defined NTP server as well as Time Zone Daylig...

Страница 40: ...58 CHAPTER 4 Configuring the Switch Setting Virtual Stack Default 1 Hour Range is 0 23 Default 0 Apply To save the configuration to switch flash memory...

Страница 41: ...so need to a establish a default gateway between the switch and management stations that exist on another network segment WEB INTERFACE To configure an IP address and SNTP in the web interface 1 Click...

Страница 42: ...by periods Default 192 168 1 1 Subnet mask This subnet mask identifies the host address bits used for routing to specific subnet Default 255 255 255 0 Default gateway IP address of the gateway router...

Страница 43: ...face 1 Click SYSTEM Loop Detection 2 Evoke which port to enable the Loop detection 3 Click Apply 4 When the port occur Loop and it was locked by switch then you could resume it Figure 4 5 Loop Detecti...

Страница 44: ...the switch Rule 1 When no lists exists then it will accept all connections Accept Rule 2 When only accept lists exist then it will deny all connections excluding the connection inside of the acceptin...

Страница 45: ...can be created after the parameters as mentioned above had been setup Delete To delete a exist Management policy from the management policy List Name A name is composed of any letter A Z a z and digit...

Страница 46: ...ted in the management security configuration if Custom had been chosen Access Type The switch supports two kinds of options for managed valid Access Type including Any and Custom Default is Any Http T...

Страница 47: ...vers across multiple platforms WEB INTERFACE To configure Syslog in the web interface 1 Click SYSTEM Syslog 2 Specify the syslog parameters includes IP Address of Syslog server and Port number 3 Evoke...

Страница 48: ...configure System Log in the web interface 1 Click SYSTEM System Log 2 Display the system log on the screen 3 Click Clear It will clear all record of switch system log Figure 4 8 System Log screen PARA...

Страница 49: ...lowed to connect the Web UI of the devices of the group in the same window without the login of these device The most top left button is only for Master device The background color of the button you p...

Страница 50: ...of VSM Default is Enable Role The role that the switch would like to play in virtual stack Two types of roles including master and slave are offered for option Default is Master Group ID It is the gro...

Страница 51: ...ort monitor and management WEB INTERFACE To configure Port Configuration in the web interface 1 Click Port Configuration 2 Specify the Port Configuration parameters Make any required changes to the co...

Страница 52: ...nate frame loss by blocking traffic from end stations or segments connected directly to the switch when its buffers fill When enabled back pressure is used for half duplex operation and IEEE 802 3 200...

Страница 53: ...r is 1 24 Both port 1 8 are optional modules Link Show that if the link on the port is active or not If the link is connected to a working well device the Link will show the link Up otherwise it will...

Страница 54: ...72 CHAPTER 4 Configuring the Switch Configuring Power Saving Description network managers provide a description of device ports...

Страница 55: ...ber mode for instance Multi Mode Single Mode Tx Central Wavelength Display the fiber optical transmitting central wavelength for instance 850nm 1310nm 1550nm and so on Baud Rate Display the maximum ba...

Страница 56: ...74 CHAPTER 4 Configuring the Switch Configuring Power Saving the manufacturer...

Страница 57: ...Temperature Show the current temperature of SFP module Vcc Show the working DC voltage of SFP module Mon1 Bias mA Show the Bias current of SFP module Mon2 TX PWR Show the transmit power of SFP module...

Страница 58: ...equency WEB INTERFACE To display the Port simple counter information in the web interface 1 Click Port Simple Counter 2 Display the Port Simple Counter information 3 Click Refresh to refresh data or C...

Страница 59: ...mber of packets received drop Auto refresh The simple counts will be refreshed automatically on the UI screen Refresh The simple counts will be refreshed manually when user use mouse to click on Refre...

Страница 60: ...seconds WEB INTERFACE To display the Port Detail Counter information in the web interface 1 Click Port Simple Counter 2 Display the Port Simple Counter information 3 Click Refresh to refresh data or...

Страница 61: ...6 511 byte frames in good and bad packets received Rx 512 1023 Bytes Number of 512 1023 byte frames in good and bad packets received Rx 1024 Bytes Number of 1024 max_length byte frames in good and bad...

Страница 62: ...lisions transmitting frames experienced Tx Drops Number of frames dropped due to excessive collision late collision or frame aging Tx FIFO Drops Number of frames dropped due to the lack of transmittin...

Страница 63: ...the web interface 1 Click Port Power Saving 2 Evoke which port or Selec Unselect to enable disable Power Saving 3 Click Apply Figure 4 15 Port Power Saving Configuration PARAMETERS These parameters ar...

Страница 64: ...gement by allowing you to move devices to a new VLAN without having to change any physical connections VLANs can be easily organized to reflect departmental groups such as Marketing or R D usage group...

Страница 65: ...if it can be forwarded The switch supports supplement of 802 1q For more details Each tag based VLAN you built up must be assigned VLAN name and VLAN ID Valid VLAN ID is 1 4094 User can create total...

Страница 66: ...in the same segment ports the received packets will be forwarded to the same segment port member without any change for example VLAN tag or un tag frames The L2 PDU will be passed through between two...

Страница 67: ...me and VLAN ID WEB INTERFACE To Configure the Tag based Group in the web interface 1 Click VLAN Tag based Group 2 Add new VLAN and specify the tag based VLAN parameters 3 Click Apply Figure 4 17 Tag b...

Страница 68: ...ect the system to its hosts that are farther away from the root of the tree These interfaces are known as downstream interfaces Member Port This is used to enable or disable if a port is a member of t...

Страница 69: ......

Страница 70: ...on PARAMETERS These parameters are displayed on the Port based VLAN Configuration page VLAN Name The name defined by administrator is associated with a VLAN group Valid letters are A Z a z 0 9 and _ c...

Страница 71: ...p untagged frame You can also select the Role of each port as Access Trunk or Hybrid WEB INTERFACE To Configure the Ports in the web interface 1 Click VLAN Ports 2 Specify the VLAN Port Configuration...

Страница 72: ...tag header If packets have double VLAN tags one will be dropped and the other will still be left As to Hybrid it is similar to Trunk and both of them will tag out When the port is set to Hybrid its pa...

Страница 73: ...protected port A destination address on an data packet is matched with a physical address on said layer 2 switch and a forwarding map is generated for the data packet based upon the destination addre...

Страница 74: ...indow Only one management VLAN can be active at a time When you specify a new management VLAN your HTTP connection to the old management VLAN is lost For this reason you should have a connection betwe...

Страница 75: ...y MAC Address Table parameters and evoke which port to enable the MAC learning 3 Click Save Figure 4 22 MAC Address Table Configuration PARAMETERS These parameters are displayed on the MAC Address Tab...

Страница 76: ...ble this port MAC address dynamic learning mechanism only support static MAC address setting Secure Disable this port MAC address dynamic learning mechanism and copy the dynamic learning packets to CP...

Страница 77: ...Configure the MAC Static Filter in the web interface 1 Click MAC Static Filter 2 Specify Static Filter parameters includes MAC Address VID and Alias 3 Click Apply Figure 4 23 MAC Static Filter Config...

Страница 78: ...RFACE To Configure the MAC Static Forward in the web interface 1 Click MAC Static Forward 2 Specify Static Forward parameters includes MAC Address Port No VID and Alias 3 Click Apply Figure 4 24 MAC S...

Страница 79: ...ust be composed of A Z a z and 0 9 only and has a maximal length of 15 characters WEB INTERFACE To Configure the MAC Alias in the web interface 1 Click MAC MAC Alias 2 Specify MAC Alias parameters inc...

Страница 80: ...o search 4 Click Search Figure 4 26 MAC Table Information PARAMETERS These parameters are displayed on the MAC Table page Alias MAC alias name you assign MAC address Display the MAC address of one ent...

Страница 81: ...update their knowledge database the set of VLANs associated with currently active members and through which ports these members can be reached WEB INTERFACE To display the GVRP Configuration in the we...

Страница 82: ...egistrar administrative control value normal registrar fixed registrar and forbidden registrar provided for the user s choice Normal It is Normal Registration The Registrar responds normally to incomi...

Страница 83: ...ck Refresh to modify the GVRP Counter information Figure 4 28 Display GVRP Counter detail information PARAMETERS These parameters are displayed on the GVRP Counter page Received Total GVRP Packets Tot...

Страница 84: ...on Invalid GVRP Packets Number of invalid GVRP BPDU is received by the GVRP application LeaveAll Message Packets Number of GVRP BPDU with Leave All message is received by the GVRP application JoinEmpt...

Страница 85: ...formation 3 Select a exist GVRP VLAN Group entry 4 Click Edit Administrative Contol Figure 4 29 Display GVRP VLAN Group information PARAMETERS These parameters are displayed on the GVRP VLAN Group pag...

Страница 86: ...the frame according to what was configured for that specific QoS class The switch support advanced memory control mechanisms providing excellent performance of all QoS classes under any traffic scena...

Страница 87: ...You could scroll with 0 to 7 Queuing Mode There are two Scheduling Method Strict Priority and Weighted Fair Default is Strict Priority After you choose any of Scheduling Method please click Apply but...

Страница 88: ...S QoS Control List 2 Scroll the QCL rule number The value from 1 to 24 3 Press 4 Specify the QCL Parameters Figure 4 31 Display QoS Control List Configuration PARAMETERS These parameters are displayed...

Страница 89: ...ces over Ethernet 0x 80F3 AARP AppleTalk Address Resolution Protocol 0x8100 IEEE Std 802 1Q Customer VLAN Tag Type 0x8137 IPX Internet Packet Exchange 0x 814C SNMP Simple Network Management Protocol 0...

Страница 90: ...ification method by Range or Specific UDP TCP Port Range The configurable ports range 0 65535You can refer to following UDP TCP port numbers information http www iana org assignments port numbers UDP...

Страница 91: ...asure for the traffic rate 3 To set an rate limit on egress traffic check Shaper Enabled box next to the required port set the rate limit in the Shaper Rate field and select the unit of measure for th...

Страница 92: ...e the Egress rate limiter rule Egress Rate rule Configures the rate for the port shaper Range 500 1000000 kbps or 1 1000 Mbps Default 500 kbps Egress Shaper Unit Sets the unit of measure for the port...

Страница 93: ...ny packets exceeding the specified threshold will then be dropped Note that the limit specified on this page applies to each port WEB INTERFACE To configure Storm Control 1 Click QoS Storm Control 2 E...

Страница 94: ...s per second pps or by selecting one of the options in Kpps 1 2 4 8 16 32 64 128 256 512 1K 2K 4K 8K 16K 32K 64K 128K 256K 512K 1024K NOTE Due to an ASIC limitation the enforced rate limits are slight...

Страница 95: ...ext step of configuration 4 Follw up the GUI procedure to set all parameters Figure 4 34 Select 1 of 4 QCL Configuration Wizards PARAMETERS These parameters are displayed on the QCL Wizard page Please...

Страница 96: ...rom 1 to 24 Port Member Evoke the port to join the QCL ID and become the QCL Member Wizard Again Click on the Wizard Again back to QCL Configuration Wizard Finish When you click on Finish the paramete...

Страница 97: ...one Napster Real Audio Games Blizzard Battlenet Diablo2 and StarCraft Fighter Ace II Quake2 Quake3 MSN Game Zone User Definition Ethernet Type VLAN ID UDP TCP Port DSCP Ethernet Type Value Type Range...

Страница 98: ...tion Rules PARAMETERS These parameters are displayed on the QCL Wizard page QCL ID Scroll to set the QCL ID from 1 to 24 Traffic Class Scroll to set the Traffic Class with Low Normal Medium High Figur...

Страница 99: ...s Scroll to set the TOS Precedence Mapping Class with Low Normal Medium High Figure 4 40 Set up VLAN Tag Priority Mapping Rules PARAMETERS These parameters are displayed on the QCL Wizard page QCL ID...

Страница 100: ...rmation using software such as LantechView Access to the onboard agent from clients using SNMP v1 and v2c is controlled by community strings To communicate with the switch the management station must...

Страница 101: ...takes effect WEB INTERFACE To configure SNMP System 1 Click SNMP System 2 Evoke SNMP State to enable or disable the SNMP function 3 Specify the Engine ID 4 Click Apply Figure 4 41 Set up SNMP System...

Страница 102: ...setting then click Reset Figure 4 42 Set up SNMP Communities PARAMETERS These parameters are displayed on the SNMP Communities Setting page Delete If you had create a new SNMP Community entry then you...

Страница 103: ...ters 4 Click Save 5 If you want to modify or clear the setting then click Reset Figure 4 43 Set up SNMP Users PARAMETERS These parameters are displayed on the SNMP Users Setting page Delete If you had...

Страница 104: ...fy the Authentication Password field The length of MD5 Authentication PWD is restricted to 8 32 The length of SHA Authentication PWD is restricted to 8 40 Privacy Protocol Scroll to choice the DES enc...

Страница 105: ...vailable security name please add commuity or user first Figure 4 44 Set up SNMP Groups PARAMETERS These parameters are displayed on the SNMP Groups Setting page Delete If you had create a new SNMP Gr...

Страница 106: ...odel The length of UserName string is restricted to 1 32 Security Name Scroll to choice the UserName you set on the switch already to join the SNMP Groups The length of Security Name string is restric...

Страница 107: ...Delete button to delete the entry View Name Specify the View Name field The name of MIB view The length of View Name string is restricted to 1 32 View Type Scroll to choice the View Type as included o...

Страница 108: ...f Group Name string is restricted to 1 32 View Type Scroll to choice the View Type as included or excluded Security Model Scroll to choice the security Model as below four models any Accepted any secu...

Страница 109: ...acy Read View Name Scroll to choice the read view name The name of MIB view Select None this entry has no read right Write View Name Scroll to choice the write view name The name of MIB view Select No...

Страница 110: ...hosts entry Figure 4 47 Set up SNMP Trap Hosts PARAMETERS These parameters are displayed on the SNMP Trap Hosts Setting page Delete If you had create a new SNMP Trap Hosts entry then you could click D...

Страница 111: ...NoAuth NoPriv No authentication and no privacy Auth NoPriv Authentication and no privacy Auth Priv Authentication and privacy Authentication Protocol Scroll to choice two methods as MD5 and SHA for Au...

Страница 112: ...ach port with Any or assign this ACE for a policy or assign this ACE for a port There are 8 policies each port can select one of policy then decides which of the following actions would take according...

Страница 113: ...RAMETERS These parameters are displayed on the SNMP Trap Hosts Setting page Port Port Identifier Port number 1 24 Policy ID An ACL policy configured on the ACE Configuration Range 1 8 Default 1 which...

Страница 114: ...ration Default Disabled Port Copy Defines a port to which matching frames are copied Range 1 24 Default Disabled that will disable to copy the met ACL packets to specific port Port number 1 24 Copy th...

Страница 115: ...Rate Limiter ID Rate limiter identifier Range 1 16 Rate pps The threshold above which packets are dropped Options 1 2 4 8 16 32 64 128 256 512 1K 2K 4K 8K 16K 32K 64K 128K 256K 512K 1024K NOTE Due to...

Страница 116: ...is equal to IP 0x800 IPv4 frames based on destination MAC address protocol type TTL IP fragment IP option flag source destination IP VLAN ID VLAN priority WEB INTERFACE To configure an Access Control...

Страница 117: ...Figure 4 50 Access Control List Configuration...

Страница 118: ...ort 1 24 Policy 1 8 Default Any Frame Type The type of frame to match Options Any Ethernet ARP IPv4 Default Any Filter Criteria Based on Selected Frame Type Any frame type MAC Parameters DMAC Filter T...

Страница 119: ...uest opcode flag set Reply frame must have ARP Reply or RARP Reply opcode flag Default Any Sender IP Filter Specifies the sender s IP address Options Any no sender IP filter is specified Host specifie...

Страница 120: ...ARP RARP protocol address space PRO settings Options Any any value is allowed 0 ARP RARP frames where the PRO is equal to IP 0x800 must not match this entry 1 ARP RARP frames where the PRO is equal to...

Страница 121: ...Any TCP ACK Specifies the TCP Acknowledgment field significant ACK value for this rule Options Any any value is allowed 0 TCP frames where the ACK field is set must not match this entry 1 TCP frames...

Страница 122: ...ation IP mask in the DIP Address and DIP Mask fields Default Any Response to take when a rule is matched Action Permits or denies a frame based on whether it matches an ACL rule Default Permit Rate Li...

Страница 123: ...ce IP Binding Next Click on Next to confirm current setting and go to next step automatically Cancel Cancel current setting back to top layer in the ACL wizard function Back Click on Back to back to p...

Страница 124: ...o complete the configuration Figure 4 53 Set up ACL Wizard Port Polices Rules NOTE It is easy to configure ACL Wizard Port Polices Rules then you only need to click Next and Finish to complete the con...

Страница 125: ...ication Rules PARAMETERS These parameters are displayed on the Wizard Typical Network Application Rules Configuration page Common Server Evoke What kinds Server to choice The server type includes DHCP...

Страница 126: ...ort TCP Port Others Evoke the article with TCP Port ICMP Multicast IP Stream NetBIOS Ping Request Ping Reply SNMP SNMP Traps Next Click on Next to confirm current setting and go to next step automatic...

Страница 127: ...P MAC binding enabled port the system will block the access by dropping its packet WEB INTERFACE To configure IP MAC Binding 1 Click IP MAC Binding Configuration 2 Scroll the state to enable the IP MA...

Страница 128: ...eld Six byte MAC Address xx xx xx xx xx xx For example 00 40 c7 00 00 01 IP Specify the IP Address field Four byte IP Address xxx xxx xxx xxx For example 192 168 1 100 Port No Scroll to choice what Po...

Страница 129: ...access to the network resources through a 802 1X enabled port without authentication If a user wishes to touch the network through a port under 802 1X control he she must firstly input his her accoun...

Страница 130: ...tion Protocol over LAN EAPOL are exchanged between an authenticator PAE and a supplicant PAE The Authenticator exchanges the message to authentication server using EAP encapsulation Before successfull...

Страница 131: ...doesn t send EAP Request Identity the supplicant will initiate EAPOL Start the process by sending to the authenticator 5 And next the Supplicant replies an EAP Response Identity to the authenticator T...

Страница 132: ...ltiHost 802 1X is the type of authentication supported in the switch In this mode for the devices connected to this port once a supplicant is authorized the devices connected to this port can access t...

Страница 133: ...Address Specify the IP Address field The RADIUS Server IP Address for Authentication Default 192 168 1 1 UDP Port Default port number is 1812 Secret Key The secret key between authentication server an...

Страница 134: ...er IP Address for Accounting Default 192 168 1 1 UDP Port Default port number is 1813 Secret Key The secret key between authentication server and authenticator It is a string with the length 1 31 char...

Страница 135: ...Port Scroll the port and set the parameter It is the port number to be selected for configuring its associated 802 1X parameters which are Port control reAuthMax txPeriod Quiet Period reAuthEnabled r...

Страница 136: ...controlled port is forced to hold in the authorized state Auto The controlled port is set to be in authorized state or unauthorized state depends on the result of the authentication exchange between...

Страница 137: ...5 Default 30 seconds serverTimeout 1 65535 s A timeout condition in the exchange between the authenticator and the authentication server The valid range 1 65535 Default 30 seconds VlanAssignment This...

Страница 138: ...t The Port indentity Port number 1 24 Mode Show this port IEEE 802 1X operating mode There are four modes Disable Normal Advance and Clientless Status Show this port IEEE 802 1X security current statu...

Страница 139: ...2 1X Statistics PARAMETERS These parameters are displayed on the 802 1X Status page Port The Port indentity Port number 1 24 Auto refresh Refresh the authenticator counters in the web UI automatically...

Страница 140: ...played on the TACACS State page Server IP Address 1 2 Specify the TACACS Server 1 and 2 IP Address in the field Server 1 IP address for authentication Default 0 0 0 0 Secret Key Specify the Secret key...

Страница 141: ...o set Telnet authentication method with Login primary or Login secondary Default Primary is Local and Secondary is None Web Scroll to Web authentication method with Login primary or Login secondary De...

Страница 142: ...age State Scroll to set enable or disable the State Authorization via TACACS Server Default Disable Fallback to Local Authorization Scroll to set enable or disable the switch Fallback to Local Authori...

Страница 143: ...7 Configure TACACS Accounting PARAMETERS These parameters are displayed on the TACACS Accounting page State Scroll to set enable or disable the State Accounting via TACACS Server Default Disable TACAC...

Страница 144: ...non IEEE 802 3 MAC link Operating in half duplex mode Aggregate the ports with different data rates Static Trunk Ports using Static Trunk as their trunk method can choose their unique Static GroupID a...

Страница 145: ...he port won t aggregate with other ports b 14 ports all use LACP Trunk Group ID 1 at most 12 ports can aggregate together and transit into the ready state c A port using the None trunking method or Gr...

Страница 146: ...164 CHAPTER 4 Configuring the Switch Configure SNMP Port Port identity of switch Port Number 1 24...

Страница 147: ...e An Active LACP port begins to send LACPDU to its link partner right after the LACP protocol entity started to take control of this port Passive An Passive LACP port will not actively send LACPDU out...

Страница 148: ...an LACP aggregator with at leaset one member port PARAMETERS These parameters are displayed on the Aggegator view page Aggregator It shows the aggregator ID from 1 to 24 of every port In fact every p...

Страница 149: ...port System Priority Show the Actor and Partner system priority value MAC Address Show the Client device s MAC Address information Port Show the Trunk Port number Key Show the Trunk LACP Key value Tru...

Страница 150: ...r disable source MAC address for Aggregate Mode Destination MAC Address Evoke to enable or disable Destination MAC address for Aggregate Mode IP Address Evoke to enable or disable IP address for Aggre...

Страница 151: ...field The Ragne is 1 65535 and Default is 32768 Apply Save the setting to switch flash memory TRUNK LACP SYSYTEM PRORITY CONFIGURATION The Function is used to set the priority part of the LACP system...

Страница 152: ...ports connected to designated bridging devices are assigned as designated ports After determining the lowest cost spanning tree it enables all root ports and designated ports and disables all other p...

Страница 153: ...how this switch s current bridge priority setting Default is 32768 Designated Root Show root bridge ID of this network segment If this switch is a root bridge the Designated Root will show this switch...

Страница 154: ...172 CHAPTER 4 Configuring the Switch Configure SNMP designated port of the root bridge...

Страница 155: ...warding state of a port in bridge Hello Time Show the current hello time of the root bridge Hello time is a time interval specified by root bridge used to request all other bridges periodically sendin...

Страница 156: ...Force Version with STP or RSTP 6 Click Apply NOTE You must to consider 2 Forward Delay 1 Max Age and Max Age need to 2 Hellow Time 1 NOTE You will lose connection with this device for a while if you e...

Страница 157: ...from the root bridge and if the message age conveyed in the BPDU exceeds the Max Age of the root bridge the bridge will treat the root bridge malfunctioned and issue a Topology Change Notification TC...

Страница 158: ...on first and without it then the Edit and MCheck Button is unavailable Figure 4 74 Display the Spanning Tree Port Configuration SPANNING TREE PORT CONFIGURATION The Function is used for user to Config...

Страница 159: ...ath cost value would become the Root Port more possibly Configured Path Cost The range is 0 200 000 000 In the switch if path cost is set to be zero the STP will get the recommended value resulted fro...

Страница 160: ...178 CHAPTER 4 Configuring the Switch Configure SNMP Unlike the designate port or root port though an edge port will transit to a normal spanning tree port immediately if it receives a BPDU...

Страница 161: ...heck It forces the port sending out an RSTP BPDU instead of a legacy STP BPDU at the next transmission The only benefit of this operation is to make the port quickly get back to act as an RSTP port Cl...

Страница 162: ...180 CHAPTER 4 Configuring the Switch Configure SNMP...

Страница 163: ...osts Port Type Link Type IEEE 802 1w 2001 Ethernet Half Duplex Full Duplex Trunk 2 000 000 1 000 000 500 000 Fast Ethernet Half Duplex Full Duplex Trunk 200 000 100 000 50 000 Gigabit Ethernet Full Du...

Страница 164: ...mmon and Internal Spanning Tree always exists Up to 64 more spanning tree instances MSTIs can be provisioned WEB INTERFACE To display the MSTP State Configuration 1 Click MSTP State 2 Scroll the Multi...

Страница 165: ...on Config page Region Name It provides user to specify the Region Name 0 32 characters A variable length text string encoded within a fixed field of 32 octets conforming to RFC 2271 s definition of Sn...

Страница 166: ...deleted At least one vlan must be provisioned for an MSTI to declare the need for the MSTI to be existent Corresponding Vlans Multiple vlans can belong to an MSTI All vlans that are not provisioned t...

Страница 167: ...of all ports regarding a specific spanning tree instance Detail see Fig 84 Figure 4 78 Display the MSTP Edit MSTI VLAN Configuration PARAMETERS These parameters are displayed on the MSTP Edit MSTI VLA...

Страница 168: ...3248 57344 61440 MAX Age The same definition as in the RSTP protocol The Range is from 6 to 40 sec Forward Delay The same definition as in the RSTP protocol The Range is from 4 to 30 sec MAX Hops 6 40...

Страница 169: ...best spanning tree priority vector Such a Port will be selected as an Alternate Port after the Root Port has been selected This parameter is No by default If set it can cause lack of spanning tree con...

Страница 170: ...the bridge itself Bridge Max Hops It shows the Max Hops setting of the bridge itself Instance Priority Spanning tree priority value for a specific tree instance CIST or MSTI Bridge Mac Address The Ma...

Страница 171: ...Root bridge CIST CURRENT FORWARD DELAY Forward Delay of the CIST Root bridge TIME SINCE LAST TOPOLOGY CHANGE SECs Time Since Last Topology Change is the elapsed time in unit of seconds for a bunch of...

Страница 172: ...ate Path Cost Display currently resolved port path cost value for each port in a particular spanning tree instance Priority Display port priority value for each port in a particular spanning tree inst...

Страница 173: ...Port A and Port B are Monitoring Port and Monitored Port respectively thus the traffic received by Port B will be copied to Port A for monitoring NOTE When configure the mirror function you should avo...

Страница 174: ...ring Port number or Disabled the function Default is Disabled Port No The port identity of switch physical interface Port number is 1 to 24 Source Enable The source enable means the monitored port ing...

Страница 175: ...icast Host can update the information of the Multicast table when a member port joins or leaves an IP Multicast Destination Address With this function once a switch receives an IP multicast packet it...

Страница 176: ...er Query Max Response Time field the specific value 3 Select Router Port member 4 Click Apply Figure 4 85 Display the IGMP Proxy Configuration PARAMETERS These parameters are displayed on the IGMP Pro...

Страница 177: ...25 secs Last Member Query Max Response Time Set the max response code value in the specific query packet Available 1 25 secs Router Ports Set the interface what connect to IGMP Router and it is the s...

Страница 178: ...p Allow 2 Scroll Vid 3 Specify the Start Address and End Address field the specific value 4 Click Apply Figure 4 87 Display the IGMP Group Allow PARAMETERS These parameters are displayed on the IGMP G...

Страница 179: ...GMP Group Membership page Index Display current built up multicast group entry index Group Address Display current built up multicast Group Address VLAN ID Display current built up multicast VLAN ID P...

Страница 180: ...Disabled Host Time Out Set the MVR function enable and the Host packet received by Switch timeout period The unit is second and time range is from 1 to 65535 The default is 125 seconds Fast Leave Set...

Страница 181: ...pecific value 4 Select MVID port member disable client or server 5 Click Apply To display how to delete the MVID Setting 1 Click MVID 2 Select those MVIDs which you want to delete 3 Click Delete Figur...

Страница 182: ...oup Allow 1 Click MVR Group Allow 2 Scroll MVID 3 Specify the Start Address and End Address field the specific value 4 Click Apply To display how to delete the MVR Group Allow 1 Click MVR Group Allow...

Страница 183: ...EB INTERFACE To display the MVR Group Membership 1 Click MVR Group Membership 2 Display MVR group membership data 3 Click Next Page display next page context 4 Click Previous Page display previous pag...

Страница 184: ...Previous Page Display previous page context Next Page Display next page context Refresh Update multicast group membership...

Страница 185: ...can be sent out in two ways including email and trap The message will be sent while users tick the trap event individually on the web page shown as below WEB INTERFACE To display the Alarm Events Con...

Страница 186: ...ed LACP Port Failure GVRP GVRP Disabled GVRP Enabled VLAN VLAN Disabled Port based VLAN Enabled Tag based VLAN Enabled Metro mode VLAN Enabled Double tag VLAN Enabled Module Swap Module Inserted Modul...

Страница 187: ...Membership page Mail Server Specify the IP Address of the server transferring your email Username Specify the username on the mail server Password Specify the password on the mail server Sender To set...

Страница 188: ...Snooping State Configuration 1 Click DHCP Snooping State 2 Scroll to choice Spanning Tree Protocol enable or disable Default is Disable Figure 4 95 Display the DHCP Snooping State PARAMETERS These par...

Страница 189: ...the Turst Port 2 value to select a specific value with 1 to 24 or Disable Default is Disable 6 Scroll to choice Option 82 enable or disable Default is Disable 7 Scroll to choice the action for Option...

Страница 190: ...globally and also enabled on the VLAN where the DHCP packet is received all DHCP packets are forwarded for a trusted por It set a trust port 1 available port from 0 to 24 0 is disabled Trust Port 2 It...

Страница 191: ...e DHCP Snooping Client page MAC To show the DHCP snooping client s MAC address VID To show the DHCP snooping client s VLAN ID 802 1w RSTP recommended value Valid range 1 200 000 000 10 Mbps 2 000 000...

Страница 192: ...d to learn about adjacent LLDP devices WEB INTERFACE To configure LLDP 1 Click LLDP LLDP State 2 Modify LLDP timing parameters 3 Set the required mode for transmitting or receiving LLDP messages 4 Spe...

Страница 193: ...ult 5 secs Port Port identifier Range 1 24 Mode To enable or disable the LLDP mode per port There are four type Options Disabled Tx_Rx Tx only and Rx only Default Disabled Notification Enables or disa...

Страница 194: ...To display an alphanumeric string describing the port what the neighbor s port description System Capabilities To display an includes a bitmask of system capabilities device functions that are support...

Страница 195: ...ries Deleted The total neighbors entries deleted be received which have been removed from the LLDP remote systems MIB for any reason Total Neighbors Entries Dropped The total neighbors entries dropped...

Страница 196: ...346 CHAPTER 8 Commands of CLI Alarm Commandsof CLI...

Страница 197: ...Frames Discarded Number of frames discarded because they did not conform to the general validation rules as well as any specific usage rules defined for the particular Type Length Value TLV TLVs Disca...

Страница 198: ...same one that you had saved before by performing this function Working Configuration It is the configuration you are using currently and can be changed any time The configurations you are using are s...

Страница 199: ...346 CHAPTER 8 Commands of CLI Alarm Commandsof CLI...

Страница 200: ...urrent configuration as a start configuration file in flash memory SAVE USER Save the current configuration as a user configuration file in flash memory RESTORE USER CONFIGURATION Restore User Configu...

Страница 201: ...WEB INTERFACE To display restore to factory default configuration 1 Click Save Restore Restore User 2 Click Yes Figure 4 104 Restore USER Configuration...

Страница 202: ...on automatically to latest firmware version WEB INTERFACE To display restore to factory default configuration 1 Click Export Import 2 Scroll to select User or Current 3 Click Export to Export 4 Click...

Страница 203: ...mmandsof CLI Export User Conf Export Save As User s config file stored in the flash Import File Path Import Start Import Save As Start s config file stored in the flash Import User Conf Import Save As...

Страница 204: ...NOSTICS Diagnostics function provides a set of basic system diagnosis It let users know that whether the system is health or needs to be fixed The basic system check includes EEPROM test UART test DRA...

Страница 205: ...Display th Diagnostics Ping functionality Screen PARAMETERS These parameters are displayed on the Diagnostics Ping page IP Address An IP address with the version of v4 e g 192 168 1 1 Ping Size To se...

Страница 206: ...cussing is software reset for the reboot in the main menu WEB INTERFACE To display the Maintenance reset device Procedure 1 Click Maintenance Reset Device 2 Click Yes Figure 109 Display Reset Device S...

Страница 207: ...3 Click Upload Figure 110 Display Firmware Upgrade Screen...

Страница 208: ...atically The switch allows you to logout the system to prevent other users from the system without the permission If you do not logout and exit the browser the switch will automatically have you logou...

Страница 209: ...rt config show statistics show server Set 802 1X maxReq Set 802 1X mode Set 802 1X port control Set 802 1X quietPeriod Set 802 1X reAuthEnabled Set 802 1X reAuthMax Set 802 1X reAuthPeriod Set 802 1 X...

Страница 210: ...hPeriod 120 maxReq 2 suppTimeout 30 serverTimeout 30 VlanAssignment Disable GuestVlan N A AuthFailedVlan N A set maxReq The maximum number of times that the state machine will retransmit an EAP Reques...

Страница 211: ...Value 60 EXAMPLE Set port control To set up 802 1X status of each por command displays or sets port LGS 2816C RPS 802 1X set port control 2 2 LGS 2816C RPS 802 1X show port config 2 Port 2 Mode Disabl...

Страница 212: ...etPeriod 30 reAuthEnabled On reAuthPeriod 120 maxReq 2 suppTimeout 30 serverTimeout 30 VlanAssignment Disable GuestVlan N A AuthFailedVlan N A set reAuthEnabled A constant that define whether regular...

Страница 213: ...TTING Value 3600 EXAMPLE set reAuthMax The number of reauthentication attempts that are permitted before the port becomes Unauthorized LGS 2816C RPS 802 1X set reAuthMax 2 2 LGS 2816C RPS 802 1X show...

Страница 214: ...sable GuestVlan N A AuthFailedVlan N A set serverTimeout A timer used by the Backend Authentication state machine in order to determine timeout conditions in the exchanges between the Authenticator an...

Страница 215: ...AuthFailedVlan N A set auth server To configure the settings related with 802 1X Radius Server LGS 2816C RPS 802 1X set auth server 192 168 1 1 1812 Radius LGS 2816C RPS 802 1X show server Authenticat...

Страница 216: ...Assignment Disable GuestVlan N A AuthFailedVlan N A set suppTimeout A timer used by the Backend Authentication state machine in order to determine timeout conditions in the exchanges between the Authe...

Страница 217: ...N A set txPeriod A timer used by the Authenticator PAE state machine to determine when an EAPOL PDU is to be transmitted LGS 2816C RPS 802 1X set txPeriod 2 30 LGS 2816C RPS 802 1X show port config 2...

Страница 218: ...sabled N A 6 Disabled N A 7 Disabled N A 8 Disabled N A 9 Disabled N A 10 Disabled N A 11 Disabled N A 12 Disabled N A 13 Disabled N A 14 Disabled N A 15 Disabled N A 16 Disabled N A 17 Disabled N A 1...

Страница 219: ...ort LGS 2816C RPS 802 1X show statistics 2 Port 2 Authenticator Counters authEntersConnecting 0 authEapLogoffsWhileConnecting 0 authEntersAuthenticating 0 authAuthSuccessesWhileAuthenticating 0 authAu...

Страница 220: ...espFramesRx 0 dot1xAuthEapolReqIdFramesTx 0 dot1xAuthEapolReqFramesTx 0 dot1xAuthInvalidEapolFramesRx 0 dot1xAuthEapLengthErrorFramesRx 0 dot1xAuthLastEapolFrameVersion 0 dot1xAuthLastEapolFrameSource...

Страница 221: ...perator del modify show Add guest account Add operator account Delete account Change account and password Show system account add guest To create a new guest user When you create a new guest user you...

Страница 222: ...me existing user account EXAMPLE LGS 2816C RPS account add operator aaaaa Password Confirm Password del To delete an existing account LGS 2816C RPS account del aaaaa Account aaaaa deleted modify To ch...

Страница 223: ...TING None EXAMPLE Username changed successfully Password changed successfully show To show system account including account name and identity LGS 2816C RPS account show Account Name Identity admin Adm...

Страница 224: ...port as packet filter action rule To delete the ACE Access Control Entry configuration on the switch To displays ACL list To move the ACE Access Control Entry configuration between index1 and index2...

Страница 225: ...Ethernet any action 1 rate limiter 3 copy port 0 action This command set the access control per port as packet filter action rule LGS 2816C RPS acl action 5 0 2 2 LGS 2816C RPS acl show port policy i...

Страница 226: ...led 0 20 1 permit Disabled Disabled 0 21 1 permit Disabled Disabled 0 22 1 permit Disabled Disabled 0 23 1 permit Disabled Disabled 0 24 1 permit Disabled Disabled 0 rate limiter rate pps 1 512 2 1600...

Страница 227: ...Switch Permit 3 Disabled 0 Frame Type ARP 5 Switch Permit Any Disabled 12989 Frame Type ARP 6 Switch Permit Any Disabled 0 Frame Type IPv4 UDP DHCP Client Out 7 Switch Permit Any Disabled 0 Frame Type...

Страница 228: ...cy ports policy set specific policy id for specific port Range 1 8 ports A specific port or range of ports Range 1 24 DEFAULT SETTING Policy 1 EXAMPLE move This command move ACE configuration between...

Страница 229: ...source ip mask any destination ip destination ip mask any ip ttl ip fragment ip option icmp icmp type icmp code udp source port range destination port range tcp source port range destination port rang...

Страница 230: ...mask Source IP address or any destination ip destination ip mask Destination IP address or any arp smac match flag ARP frame where sender hardware address SHA field is equal to the SMAC address Option...

Страница 231: ...535 or any tcp fin flag TCP frames with any value in the FIN field Option any 0 1 Default any tcp syn flag TCP frames with any value in the SYN field Option any 0 1 Default any tcp rst flag TCP frames...

Страница 232: ...s control entry setting on switch LGS 2816C RPS acl show port policy id action rate limiter port copy counter 1 1 permit 1 1 0 2 1 permit 1 1 71959 3 1 permit 1 1 0 4 1 permit 1 1 0 5 1 deny 2 2 0 6 1...

Страница 233: ...rmit Disabled Disabled 0 23 1 permit Disabled Disabled 0 24 1 permit Disabled Disabled 0 rate limiter rate pps 1 512 2 16000 3 32 4 1 5 1 6 1 7 1 8 1 9 1 10 1 11 1 12 1 13 1 14 1 15 1 16 1 LGS 2816C R...

Страница 234: ...configuration email To enter into email mode Command Function set mail address set return path set sender set server set user del mail address del return path del sender del server user show Set mail...

Страница 235: ...t server ip ip Email server ip address or domain name EXAMPLE set mail address To set up the email address LGS 2816C RPS alarm email set mail address 1 abc mail abc com set mail address To set up the...

Страница 236: ...er username username Email server account EXAMPLE SYNTAX del mail address Email address number range 1 to 6 EXAMPLE LGS 2816C RPS alarm email set user admin del mail address To remove the configuratio...

Страница 237: ...ECTION IV APPENDICES This section provides additional information and includes these items Software Specifications Troubleshooting...

Страница 238: ...lex IEEE 802 3 2005 Half Duplex Back pressure STORM CONTROL Broadcast multicast or unicast traffic throttled above a critical threshold PORT MIRRORING Multiple source ports one destination port RATE L...

Страница 239: ...ERING IGMP Snooping IGMP Proxy ADDITIONAL FEATURES DHCP Client LLDP Link Layer Discover Protocol RMON Remote Monitoring groups 1 2 3 9 SMTP Email Alerts SNMP Simple Network Management Protocol SNTP Si...

Страница 240: ...rotocol LACP ARP RFC 826 DHCP Client RFC 2131 HTTPS ICMP RFC 792 IGMP RFC 1112 IGMPv2 RFC 2236 IGMPv3 RFC 3376 partial support RADIUS RFC 2618 RMON RFC 2819 groups 1 2 3 9 SNMP RFC 1157 SNMPv2c RFC 25...

Страница 241: ...349 Interfaces Evolution MIB RFC 2863 IP MIB RFC 2011...

Страница 242: ...uthentication Client MIB RFC 2621 RMON MIB RFC 2819 RMON II Probe Configuration Group RFC 2021 partial implementation SNMPv2 IP MIB RFC 2011 SNMP Community MIB RFC 3584 SNMP Framework MIB RFC 3411 SNM...

Страница 243: ...itches in the network must be configured with the appropriate tag If you cannot connect using Telnet you may have exceeded the maximum number of concurrent Telnet SSH sessions permitted Try connecting...

Страница 244: ...of commands or other actions that lead up to the error 6 Make a list of the commands or circumstances that led to the fault Also make a list of any error messages displayed 7 Contact your distributor...

Страница 245: ...ity of service on large networks by employing a well defined set of building blocks from which a variety of aggregate forwarding behaviors may be built Each packet carries information DS byte used by...

Страница 246: ...LAN members on ports along the Spanning Tree so that VLANs defined in each switch can work automatically over a Spanning Tree network IEEE 802 1D Specifies a general method for the operation of MAC br...

Страница 247: ...IGMP SNOOPING Listening to IGMP Query and IGMP Report packets transferred between IP Multicast Routers and IP Multicast host groups to identify IP Multicast group members IN BAND MANAGEMENT Managemen...

Страница 248: ...VLAN Registration is a method of using a single network wide multicast VLAN to transmit common services such as such as television channels or video on demand across a service provider s network MVR s...

Отзывы: