background image

 

TGPS-9084GT-M12  Series  User

 

Manual 

 

ORing Industrial Networking Corp 

105 

 

 

Label 

Description 

Mode 

Enables or disables DDOS prevention of the port 

Sensibility 

Indicates the level of DDOS detection. Possible levels are:   

Low

: low sensibility 

Normal

: normal sensibility 

Medium

: medium sensibility 

High

: high sensibility 

Packet Type 

Indicates the types of DDoS attack packets to be monitored. Possible 

types are:   

RX Total

: all ingress packets   

RX Unicast

: unicast ingress packets   

RX Multicast

: multicast ingress packets 

RX Broadcast

: broadcast ingress packets 

TCP

: TCP ingress packets 

UDP

: UDP ingress packets 

Socket Number 

If  packet  type  is  UDP  (or  TCP),  please  specify  the  socket  number 

here.  The  socket  number  can  be  a  range,  from  low  to  high.  If  the 

socket  number  is  only  one,  please  fill  the  same  number  in  the  low 

and high fields. 

Filter 

If  packet type  is  UDP  (or TCP),  please  choose  the  socket  direction 

(

Destination

/

Source

). 

Action 

Indicates  the  action  to  take  when  DDOS  attacks  occur.  Possible 

actions are:   

---

: no action 

Blocking  1  minute

:  blocks  the forwarding for  1 minute  and  log the 

event   

Blocking  10  minute

:  blocks  the forwarding  for  10 minutes  and  log 

Содержание TGPS-9084GT-M12

Страница 1: ...s st tr ri ia al l M Ma an na ag ge ed d E Et th he er rn ne et t S Sw wi it tc ch h U Us se er r M Ma an nu ua al l V Ve er rs si io on n 1 1 0 0 S Se ep pt te em mb be er r 2 20 01 14 4 w ww ww w o...

Страница 2: ...expenses apportioned by ORing and the distributor This warranty does not cover product modifications or repairs done by persons other than ORing approved personnel and this warranty does not apply to...

Страница 3: ...11 3 1 Wall mount Installation 11 3 2 Wiring 12 3 2 1 Grounding 12 3 2 2 Fault Relay 12 3 2 3 Redundant Power Inputs 13 3 3 Connection 13 3 3 1 Cables 13 3 3 2 O Ring O Chain 15 Redundancy 19 4 1 O Ri...

Страница 4: ...TPS 45 5 1 8 SSH 45 5 1 9 LLDP 46 5 1 10 Modbus TCP 49 5 1 11 Backup Restore Configurations 49 5 1 12 Firmware Update 50 5 2 DHCP Server 50 5 2 1 Basic Settings 50 5 2 2 Dynamic Client List 51 5 2 3 C...

Страница 5: ...cation 93 5 6 13 QoS Control List 93 5 6 14 QoS Counters 96 5 6 15 QCL Status 96 5 7 Multicast 97 5 7 1 IGMP Snooping 97 5 7 2 VLAN Configurations of IGMP Snooping 98 5 7 3 IGMP Snooping Status 99 5 7...

Страница 6: ...nostics 147 5 10 6 SFP Monitor 148 5 10 7 Ping 148 5 11 Synchronization 149 5 12 PoE 152 5 12 1 Configurations 152 5 12 2 Status 154 5 12 3 PoE Schedule 155 5 12 4 PoE Auto Ping 155 5 13 Troubleshooti...

Страница 7: ...s as the features can ensure tight robust connections and guarantee reliable operation against environmental disturbances such as vibration and shock The device also supports Power over Ethernet which...

Страница 8: ...rts 9 6K bytes Jumbo frame Multiple notifications during unexpected events Configuration via Web based Telnet Console CLI and Windows utility Open Vision Supports LLDP Protocol 1 3 Hardware Specificat...

Страница 9: ...23 type to ensure tight robust connections as well as reliable operation against environmental disturbances such as vibration and shock Port Description Power connector 1 x power connector Ethernet po...

Страница 10: ...Port is running at 1000Mbps Amber On Port is running at 100Mbps OFF Port is running at 10Mbps 10 100 1000Base T X Ethernet ports LNK ACT Green On Port is linked Blinking Transmitting data Speed Green...

Страница 11: ...h a switch without bypass function the device will lose connection if he switch loses power as traffic will not be able to flow through the link as shown in the figure below Switches with bypass funct...

Страница 12: ...rement Unit mm Follow the steps below to mount the switch to the wall Step 1 Hold the switch upright against the wall Step 2 Insert two screws through the screw holes located at the top and bottom of...

Страница 13: ...rent signal characteristics should be routed separately 6 You can use the type of signal transmitted through a wire to determine which wires should be kept separate The rule of thumb is that wiring sh...

Страница 14: ...tor until a snug t is achieved Make sure the connection is tight 3 3 Connection 3 3 1 Cables 10 100 1000BASE T X Pin Assignments The device provides Ethernet ports in M12 connector type According to t...

Страница 15: ...Assignment 1 BI_DC 2 BI_DD 3 BI_DD 4 BI_DA 5 BI_DB 6 BI_DA 7 BI_DC 8 BI_DB 10 100 1000Base T X P S E M12 port Pin Number Assignment 1 BI_DC 2 BI_DD 3 BI_DD 4 BI_DA with PoE Vout 5 BI_DB with PoE Vout...

Страница 16: ...BI_DD 5 BI_DC BI_DD 6 BI_DB BI_DA 7 BI_DD BI_DC 8 BI_DD BI_DC Note and signs represent the polarity of the wires that make up each wire pair Console port wiring The switch has one RS 232 M12 5pin cons...

Страница 17: ...into a coupling ring All you need to do is select two switches from each ring to be connected for example switch A and B from Ring 1 and switch C and D from ring 2 Decide which port on each switch to...

Страница 18: ...ated when the primary path connection fails O Chain When connecting multiple O Rings to meet your expansion demand you can create an O Chain topology through the following steps 1 Select two switches...

Страница 19: ...TGPS 9084GT M12 Series User Manual ORing Industrial Networking Corp 18...

Страница 20: ...of less than 30 milliseconds in full duplex Gigabit operation or 10 milliseconds in full duplex Fast Ethernet operation and up to 250 nodes The ring protocols identify one switch as the master of the...

Страница 21: ...ivide a big ring into two smaller rings to avoid network topology changes affecting all switches It is a good method for connecting two rings Coupling Port Ports for connecting multiple rings A coupli...

Страница 22: ...veloped by ORing to enhance ORing switches interoperability with other vendors products With this technology you can add any ORing switches to the network based on other ring technologies 4 2 2 Config...

Страница 23: ...designed for distributed and complex industrial networks enables the network to recover in less than 30 milliseconds in full duplex Gigabit operation or 10 milliseconds in full duplex Fast Ethernet op...

Страница 24: ...ght up 4 4 Bypass 4 4 1 Introduction Bypass provides reliable and uninterrupted connections of inline network devices when any of the devices encounter hardware failure such as power outage Figure 1 s...

Страница 25: ...d the backup link will be activated immediately when one of the links is down thereby ensuring uninterrupted data transmission However if any inline device fails the network will be disconnected see b...

Страница 26: ...Networking Corp 25 Fast Ethernet Networks Fiber Networks When a link between two switches fails following the breakdown of the switch the backup link will be activated Data will then be transmitted v...

Страница 27: ...4 5 MRP 4 5 1 Introduction MRP Media Redundancy Protocol is an industry standard for high availability Ethernet networks MRP allowing Ethernet switches in ring configuration to recover from failure r...

Страница 28: ...roadcast packets may get in to an infinite loop and hence causing congestion in the network STP can identify the best path to the destination and block all other paths The blocked links will stay conn...

Страница 29: ...Port The switch port number to which the following settings will be applied CIST Role The current STP port role of the CIST port The values include AlternatePort BackupPort RootPort and DesignatedPort...

Страница 30: ...cation BPDUs received transmitted on the port Discarded Unknown The number of unknown spanning tree BPDUs received and discarded on the port Discarded Illegal The number of illegal spanning tree BPDUs...

Страница 31: ...d revert to previously saved values 4 6 2 MSTP Since the recovery time of STP and RSTP takes seconds which are unacceptable in some industrial applications MSTP was developed The technology supports m...

Страница 32: ...you to enter a user defined value The path cost is used when establishing an active topology for the network Lower path cost ports are chosen as forwarding ports in favor of higher path cost ports The...

Страница 33: ...ers Configuration Revision Revision of the MSTI configuration named above This must be an integer between 0 and 65535 MSTI The bridge instance The CIST is not available for explicit mapping as it will...

Страница 34: ...ber and the 6 byte MAC address of the switch forms a bridge identifier Save Click to save changes Reset Click to undo any changes made locally and revert to previously saved values 4 6 3 CIST With the...

Страница 35: ...priority for ports having identical port costs See above OpenEdge setate flag A flag indicating whether the port is connected directly to edge devices or not no bridges attached Transiting to the for...

Страница 36: ...region of the network from causing address flushing in that region because those bridges are not under the full control of the administrator or is the physical link state for the attached LANs transi...

Страница 37: ...al Networking Corp 36 Label Description Active Activate fast recovery mode port Ports can be set to 12 priorities Only the port with the highest priority will be the active port 1st Priority is the hi...

Страница 38: ...user friendly viewing screen Note By default IE5 0 or later version do not allow Java applets to open sockets You need to modify the browser setting separately in order to enable Java applets for net...

Страница 39: ...he switch as below On the right hand side of the management interface shows links to various settings Clicking on the links will bring you to individual configuration pages 5 1 Basic Settings The Basi...

Страница 40: ...he node e g telephone closet 3rd floor The allowed string length is 0 to 255 and only ASCII characters from 32 to 126 are allowed System Contact The textual identification of the contact person for th...

Страница 41: ...ntication is disabled and login is not possible Local local user database on the switch is used for authentication Radius a remote RADIUS server is used for authentication Fallback Check to enable fal...

Страница 42: ...l be displayed in this column The default IP is 192 168 10 1 IP Mask Assigns the subnet mask of the IP address If DHCP client function is enabled you do not need to assign the subnet mask IP Router As...

Страница 43: ...pecial syntax that can be used as a shorthand way of representing multiple 16 bit groups of contiguous zeros but it can appear only once It can also represent a legally valid IPv4 address For example...

Страница 44: ...click Save Acronym You can set an acronym for the time zone for identification up to 16 alpha numeric characters are allowed and can contain _ or Label Description Daylight Saving Time This is used to...

Страница 45: ...Select the ending date Year Select the ending year Hours Select the ending hour Minutes Select the ending minute Recurring Configurations Offset settings Label Description offset Enter the number of...

Страница 46: ...the current connection is HTTPS disabling HTTPS will automatically redirect web browser to an HTTP connection The modes include Enabled enable HTTPS Disabled disable HTTPS Save Click to save changes R...

Страница 47: ...ls and to store the information that is learned about other devices This page allows you to examine and configure current LLDP port settings Label Description Port The switch port number to which the...

Страница 48: ...advertised by the neighbor System Capabilities Description of the neighbor s capabilities The capabilities include 1 Other 2 Repeater 3 Bridge 4 WLAN Access Point 5 Router 6 Telephone 7 DOCSIS Cable D...

Страница 49: ...ber of entries deleted due to expired time to live Local Counters Label Description Local Port The port that receives or transmits LLDP frames Tx Frames The number of LLDP frames transmitted on the po...

Страница 50: ...the age out counter will be incremented Refresh Click to refresh the page immediately Clear Click to clear the local counters All counters including global counters are cleared upon reboot Auto refre...

Страница 51: ...vides DHCP server functions By enabling DHCP the switch will become a DHCP server and dynamically assigns IP addresses and related IP information to network clients 5 2 1 Basic Settings This page allo...

Страница 52: ...play in the following table You can select the entries and add them to a static table by clicking Add to static Table 5 2 3 Client List You can assign a specific IP address within the dynamic IP range...

Страница 53: ...used to forward and transfer DHCP messages between the clients and the server when they are not in the same subnet domain Relay Information Mode Indicates the existing DHCP relay information mode The...

Страница 54: ...sage containing the information is received Drop drop the package when a DHCP message containing the information is received The relay statistics shows the information of relayed packets of the switch...

Страница 55: ...ed packets containing relay agent information Replace Agent Option The number of packets replaced when received messages contain relay agent information Keep Agent Option The number of packets whose r...

Страница 56: ...rrent Tx indicates whether pause frames on the port are transmitted The Rx and Tx settings are determined by the result of the last auto negotiation You can check the Configured column to use flow con...

Страница 57: ...Source MAC Address Calculates the destination port of the frame You can check this box to enable the source MAC address or uncheck to disable By default Source MAC Address is enabled Destination MAC A...

Страница 58: ...and the ports must be in the same speed in each group 5 3 3 LACP LACP Link Aggregation Control Protocol trunks are similar to static port trunks but they are more flexible because LACP is compliant wi...

Страница 59: ...activity status Active will transmit LACP packets every second while Passive will wait for a LACP packet from a partner speak if spoken to Save Click to save changes Reset Click to undo changes made...

Страница 60: ...up means the port cannot join in the aggregation group unless other ports are removed The LACP status is disabled Key The key assigned to the port Only ports with the same key can be aggregated Aggr I...

Страница 61: ...mber of LACP frames received at each port Discarded The number of unknown or illegal LACP frames discarded at each port Refresh Click to refresh the page immediately Auto refresh Check to enable an au...

Страница 62: ...e kept disabled when a loop is detected shutting down the port The valid value is 0 to 604800 seconds 7 days A value of zero will keep a port disabled permanently until the device is restarted Label D...

Страница 63: ...to those ports traffic for the same VLAN can be sent between switches Label Description Delete Check to delete the entry It will be deleted during the next save VLAN ID The VLAN ID for a tagged port...

Страница 64: ...s is a global setting for all custom S ports Custom Ethertype enables you to change the Ethertype value on a port to any value to support network devices that do not use the standard 0x8100 Ethertype...

Страница 65: ...ing If ingress filtering is enabled and the ingress port is not a member of the classified VLAN of the frame the frame will be discarded By default ingress filtering is disabled no check mark Frame Ty...

Страница 66: ...en the port receives tagged frames 1 If the tagged frame contains a TPID of 0x8100 it will become a double tag frame and will be forwarded 2 If the TPID of tagged frame is not 0x8100 ex 0x88A8 it will...

Страница 67: ...ns a tag based on PVID and is forwarded When the port receives tagged frames 1 If the tagged frame contains a TPID of 0x8100 it will be forwarded 2 If the TPID of tagged frame is not 0x88A8 ex 0x8100...

Страница 68: ...TGPS 9084GT M12 Series User Manual ORing Industrial Networking Corp 67...

Страница 69: ...Series User Manual ORing Industrial Networking Corp 68 Examples of VLAN Settings VLAN Access Mode Switch A Port 7 is VLAN Access mode Untagged 20 Port 8 is VLAN Access mode Untagged 10 Below are the...

Страница 70: ...PS 9084GT M12 Series User Manual ORing Industrial Networking Corp 69 VLAN 1Q Trunk Mode Switch B Port 1 VLAN 1Qtrunk mode tagged 10 20 Port 2 VLAN 1Qtrunk mode tagged 10 20 Below are the switch settin...

Страница 71: ...TGPS 9084GT M12 Series User Manual ORing Industrial Networking Corp 70 VLAN Hybrid Mode Port 1 VLAN Hybrid mode untagged 10 Tagged 10 20 Below are the switch settings...

Страница 72: ...VLAN QinQ Mode VLAN QinQ mode is usually adopted when there are unknown VLANs as shown in the figure below VLAN X Unknown VLAN 9000 Series Port 1 VLAN Settings VLAN ID Settings When setting the manage...

Страница 73: ...VLAN ID or destination MAC address A port must be a member of both a VLAN and a private VLAN to be able to forward packets This page allows you to configure private VLAN memberships for the switch By...

Страница 74: ...ion The private VLAN is enabled when you click Save The Delete button can be used to undo the addition of new private VLANs A private VLAN is defined as a pairing of a primary VLAN with a secondary VL...

Страница 75: ...string length is 0 to 255 and only ASCII characters from 33 to 126 are allowed The field only suits to SNMPv1 and SNMPv2c SNMPv3 uses USM for authentication and privacy and the community string will...

Страница 76: ...cters from 33 to 126 are allowed Trap Destination Address Indicates the SNMP trap destination address Trap Destination IPv6 Address Provides the trap destination IPv6 address of this switch IPv6 addre...

Страница 77: ...5 5 2 SNMP Community Configurations You can define access to the SNMP data on your devices by creating one or more SNMP communities An SNMP community is the group that devices and management stations...

Страница 78: ...Model USM for message security and View based Access Control Model VACM for access control For the USM entry the usmUserEngineID and usmUserName are the entry keys In a simple agent usmUserEngineID i...

Страница 79: ...to 40 Only ASCII characters from 33 to 126 are allowed Privacy Protocol Indicates the privacy protocol that this entry should belong to Possible privacy protocols include None no privacy protocol DES...

Страница 80: ...ry should belong to The allowed string length is 1 to 32 and only ASCII characters from 33 to 126 are allowed Group Name A string identifying the group name that this entry should belong to The allowe...

Страница 81: ...and its OID subtree oversteps the Excluded entry OID Subtree The OID defining the root of the subtree to add to the named view The allowed OID length is 1 to 128 The allowed string content is digital...

Страница 82: ...fic Prioritization 5 6 1 Storm Control A LAN storm occurs when packets flood the LAN creating excessive traffic and degrading network performance Errors in the protocol stack implementation mistakes i...

Страница 83: ...and transmit the frames based on their importance Frames in higher priority queues receive a bigger slice of bandwidth than those in a lower priority queue Label Description Port The port number for w...

Страница 84: ...gged and Tag Class is enabled then the frame is classified to a DP level that is mapped from the PCP and DEI value in the tag Otherwise the frame is classified to the default DP level The classified D...

Страница 85: ...ort number to which the following settings will be applied Click on the port number to configure tag remarking Mode Shows the tag remarking mode for this port Classified use classified PCP DEI values...

Страница 86: ...te check to enable the function Classify includes four values Disable no Ingress DSCP classification DSCP 0 classify if incoming or translated if enabled DSCP is 0 Selected classify only selected DSCP...

Страница 87: ...5 6 5 Policing Policing is a traffic regulation mechanism for limiting the rate of traffic streams thereby controlling the maximum rate of traffic sent or received on an interface When the traffic ra...

Страница 88: ...nd is restricted to 1 to 3300 when the Unit is Mbps This field is only shown if at least one of the queue policers is enabled Unit Configures the unit of measurement for each queue policer rate as kbp...

Страница 89: ...are available Strict Priority or Weighted Queue Shaper Enable Check to enable queue shaper for individual switch ports Queue Shaper Rate Configures the rate of each queue shaper The default value is...

Страница 90: ...Shaper Unit Configures the unit of measurement for each port shaper rate as kbps or Mbps The default value is kbps Weighted Weighted scheduling will deliver traffic on a rotating basis It can guarante...

Страница 91: ...idth Queue Scheduler Weight Configures the weight of each queue The default value is 17 This value is restricted to 1 to 100 This parameter is only shown if Scheduler Mode is set to Weighted Queue Sch...

Страница 92: ...te that is less than the line rate for that interface When configuring port shaping on an interface you specify a value indicating the maximum amount of traffic allowable for the interface This value...

Страница 93: ...Translation This page allows you to configure basic QoS DSCP translation settings for all switches DSCP translation can apply to Ingress or Egress Label Description DSCP Maximum number of supported D...

Страница 94: ...drop precedence with a high priority You can select the DSCP value from a selected menu to which you want to remap DSCP value ranges from 0 to 63 5 6 12 DSCP Classification This page allows you to con...

Страница 95: ...ge of VIDs PCP Priority Code Point can be specific numbers 0 1 2 3 4 5 6 7 a range 0 1 2 3 4 5 6 7 0 3 4 7 or Any DEI Drop Eligible Indicator can be any of values between 0 and 1 or Any SMAC Source MA...

Страница 96: ...rom left to right all bits following the first zero must also be zero DSCP Differentiated Code Point can be a specific value a range or Any DSCP values are in the range 0 63 including BE CS1 CS7 EF or...

Страница 97: ...ived at each queue Label Description Port The switch port number to which the following settings will be applied Qn There are 8 QoS queues per port Q0 is the lowest priority Rx Tx The number of receiv...

Страница 98: ...the QCE then DP level will set to a value displayed under DPL column DSCP if a frame matches the QCE then DSCP will be classified with the value displayed under DSCP column Conflict Displays the confl...

Страница 99: ...is a port on the Ethernet switch that leads towards the Layer 3 multicast device or IGMP querier If an aggregation member port is selected as a router port the whole aggregation will act as a router...

Страница 100: ...the starting point in the VLAN Table Clicking Refresh will update the displayed table starting from that or the next closest VLAN Table match The button will use the last entry of the currently displa...

Страница 101: ...he number of received V2 reports V3 Reports Receive The number of received V3 reports V2 Leave Receive The number of received V2 leave packets Refresh Click to refresh the page immediately Clear Clear...

Страница 102: ...up 5 8 Security 5 8 1 Remote Control Security Configurations Remote Control Security allows you to limit remote access to the management interface When enabled requests of the client which is not in t...

Страница 103: ...DDoS prevention Label Description Mode Indicates the device binding operation for each port Possible modes are disable Scan scans IP MAC automatically but no binding function Binding enables binding...

Страница 104: ...atus Possible statuses are disable Analyzing analyzes packet throughput for initialization Running analysis completes and ready for next move Attacked DDOS attacks occur Device IP Address Specifies IP...

Страница 105: ...Description Link Change Disables or enables the port Only log it Simply sends logs to the log server Shunt Down the Port Disables the port Reboot Device Disables or enables PoE power DDoS Prevention...

Страница 106: ...RX Multicast multicast ingress packets RX Broadcast broadcast ingress packets TCP TCP ingress packets UDP UDP ingress packets Socket Number If packet type is UDP or TCP please specify the socket numbe...

Страница 107: ...be rebooted The event will be logged Status Indicates the DDOS prevention status Possible statuses are disables DDOS prevention Analyzing analyzes packet throughput for initialization Running analysi...

Страница 108: ...the port When the traffic changes sharply all of a sudden an alert will be issued This page allows you to configure stream check settings Label Description Mode Enables or disables stream monitoring o...

Страница 109: ...are copied to The allowed values are Disabled or a specific port number The default value is Disabled Logging Specifies the logging operation of the port The allowed values are Enabled frames receive...

Страница 110: ...1K 2K 4K 8K 16K 32K 64K 128K 256K 512K or 1024K The 1 kpps is actually 1002 1 pps ACL Control List An ACE Access Control Entry is an element in an access control list ACL An ACL can have zero or more...

Страница 111: ...s the action to take when a frame matches the ACE Permit takes action when the frame matches the ACE Deny drops the frame matching the ACE Rate Limiter Specifies the rate limiter in number of base uni...

Страница 112: ...can enter a specific source MAC address The legal format is xx xx xx xx xx xx Frames matching the ACE will use this SMAC value DMAC Filter Specifies the destination MAC filter for this ACE Any no DMA...

Страница 113: ...with the ACE choose this value A field for entering a VLAN ID number appears VLAN ID When Specific is selected for the VLAN ID filter you can enter a specific VLAN ID number The allowed range is 1 to...

Страница 114: ...ws you to enter a specific value The allowed range is 0 to 255 Frames matching the ACE will use this IP protocol value IP TTL Specifies the time to live settings for the ACE Zero IPv4 frames with a ti...

Страница 115: ...ific SIP mask in dotted decimal notation DIP Filter Specifies the destination IP filter for the ACE Any no destination IP filter is specified destination IP filter is don t care Host destination IP fi...

Страница 116: ...ask When Network is selected for the sender IP filter you can enter a specific sender IP mask in dotted decimal notation Target IP Filter Specifies the target IP filter for the specific ACE Any no tar...

Страница 117: ...equal to Ethernet 0x06 and the PLN is equal to IPv4 0x04 must match this entry Any any value is allowed don t care IP Specifies whether frames will meet the action according to their ARP RARP hardwar...

Страница 118: ...ICMP code filter for the ACE Any no ICMP code filter is specified ICMP code filter status is don t care Specific if you want to filter a specific ICMP code filter with the ACE you can enter a specific...

Страница 119: ...UDP destination filter with the ACE you can enter a specific TCP UDP destination value A field for entering a TCP UDP destination value appears Range if you want to filter a specific range TCP UDP de...

Страница 120: ...be able to match this entry Any any value is allowed don t care TCP URG Specifies the TCP URG urgent pointer field significant value for the ACE 0 TCP frames where the URG field is set must not be abl...

Страница 121: ...has failed to respond to a previous request This will stop the switch from continually trying to contact a server that it has already determined as dead Setting the dead time to a value greater than...

Страница 122: ...IP Address The IP address or hostname of the RADIUS authentication server IP address is expressed in dotted decimal notation Port The UDP port to use on the RADIUS authentication server If the port is...

Страница 123: ...or field during exchanges between the router and a RADIUS authentication server The router encrypts PPP PAP passwords using this text string The secret up to 29 characters long shared between the RADI...

Страница 124: ...ate to detailed statistics of the server IP Address The IP address and UDP port number in IP Address UDP Port notation of the server Status The current status of the server This field has one of the f...

Страница 125: ...tistics This page shows the access statistics of the authentication and accounting servers Use the server drop down list to switch between the backend servers to show related details Label Description...

Страница 126: ...Networking Corp 125 Other Info This section contains information about the state of the server and the latest round trip time Label Description Packet Counters RADIUS accounting server packet counter...

Страница 127: ...cate against the backend server As intruders can create counterfeit MAC addresses MAC based authentication is less secure than 802 1X authentication Overview of 802 1X Port Based Authentication In an...

Страница 128: ...n users are called clients and the switch acts as the supplicant on behalf of clients The initial frame any kind of frame sent by a client is snooped by the switch which in turn uses the client s MAC...

Страница 129: ...o detect if a new device is plugged into a switch port For MAC based ports reauthentication is only useful if the RADIUS server configuration has changed It does not involve communication between the...

Страница 130: ...is to age the entry Hold Time This setting applies to the following modes i e modes using the Port Security functionality to secure MAC addresses MAC Based Auth If a client is denied access either bec...

Страница 131: ...now which authentication method the supplicant and the authentication server are using or how many information exchange frames are needed for a particular method The switch simply encapsulates the EAP...

Страница 132: ...be the first one considered If that supplicant does not provide valid credentials within a certain amount of time the chance will be given to another supplicant Once a supplicant is successfully authe...

Страница 133: ...ts as the supplicant on behalf of clients The initial frame any kind of frame sent by a client is snooped by the switch which in turn uses the client s MAC address as both username and password in the...

Страница 134: ...authorized Unauthorized the port is in Force Unauthorized or a single supplicant mode and the supplicant is not successfully authorized by the RADIUS server X Auth Y Unauth the port is in a multi sup...

Страница 135: ...address carried in the most recently received EAPOL frame for EAPOL based authentication and the most recently received frame from a new client for MAC based authentication Last ID The user name suppl...

Страница 136: ...each value Port State The current state of the port Refer to NAS Port State for more details regarding each value EAPOL Counters These supplicant frame counters are available for the following adminis...

Страница 137: ...for the following administrative states 802 1X MAC based Auth 5 9 Alerts 5 9 1 Fault Alarm When any selected fault event happens the Fault LED on the switch panel will light up and the electric relay...

Страница 138: ...s them As Syslog messages are UDP based the sender and receiver will not be aware of it if the packet is lost due to network disconnection and no UDP packet will be resent Label Description Server Mod...

Страница 139: ...l is a protocol for transmitting e mails across the Internet By setting up SMTP alert the device will send a notification e mail when a user defined event occurs Label Description E mail Alarm Enables...

Страница 140: ...es will gray out if SYSLOG or SMTP is disabled Label Description System Cold Start Sends out alerts when the system is restarted Power Status Sends out alerts when power is up or down SNMP Authenticat...

Страница 141: ...MAC tablet will age out after a configured aging time Such entries can be added by learning or manual configuration Aging Configuration Aging enables the switch to track only active MAC addresses on t...

Страница 142: ...is received Disable No learning is done Secure Only static MAC entries are learned all other frames are dropped Note make sure the link used for managing the switch is added to the static Mac table b...

Страница 143: ...ited the web page will show the first 20 entries from the beginning of the MAC Table The first displayed will be the one with the lowest VLAN ID and the lowest MAC address found in the MAC Table The S...

Страница 144: ...ed in error and the number of incomplete transmissions per port Drops The number of frames discarded due to ingress or egress congestion Filtered The number of received frames filtered by the forwardi...

Страница 145: ...and transmitted good and bad unicast packets Rx and Tx Multicast The number of received and transmitted good and bad multicast packets Rx and Tx Broadcast The number of received and transmitted good...

Страница 146: ...frames longer than the maximum frame length configured for this port 5 10 3 Port Mirroring Port mirroring function will copy the traffic of one port to another port on the same switch to allow the ne...

Страница 147: ...ven port a frame is only transmitted once Therefore you cannot mirror Tx frames to the mirror port In this case mode for the selected mirror port is limited to Disabled or Rx nly 5 10 4 System Log Inf...

Страница 148: ...able faults short open etc and feedback a distance to the fault Simply select the port from the drop down list and click Start to run the diagnostics This will take approximately 5 seconds If all port...

Страница 149: ...Digital Diagnostic Monitoring function can measure the temperature of the apparatus helping you monitor the status of connection and detect errors immediately You can manage and set up event alarms th...

Страница 150: ...1 time 0ms 64 bytes from 10 10 132 20 icmp_seq 2 time 0ms 64 bytes from 10 10 132 20 icmp_seq 3 time 0ms 64 bytes from 10 10 132 20 icmp_seq 4 time 0ms Sent 5 packets received 5 OK 0 bad You can conf...

Страница 151: ...Input enable the 1 pps clock input Disable disable the 1 pps clock in out put External Enable The box allows you to configure external clock output The following values are possible True enable extern...

Страница 152: ...ments are used This parameter applies only to a slave In one way mode no delay measurements are performed i e this is applicable only if frequency synchronization is needed The master always responds...

Страница 153: ...e the amount of power that each port reserves The allocated reserved power for each port power device is specified in the Maximum Power field Class each port automatically determines how much power to...

Страница 154: ...y Primary and Backup Power Source Some switches support two PoE power supplies One is used as primary power source and one as a backup If the switch does not support backup power supply only the prima...

Страница 155: ...power consumed by the PD This setting includes five classes Class 0 Max power 15 4 W Class 1 Max power 4 0 W Class 2 Max power 7 0 W Class 3 Max power 15 4 W Class 4 Max power 30 0 W Power Requested...

Страница 156: ...he power device is turned off Invalid PD the power device is detected but is not working correctly 5 12 3 PoE Schedule You can set the port to activate or deactivate PoE function at a scheduled time i...

Страница 157: ...ry Time Input a value to specify the number of times for pinging Failure Log Note down the result of the Ping check Failure Action Specify the actions to take when ping fails Reboot Time Input a value...

Страница 158: ...o factory defaults No Click to return to the Port State page without resetting 5 13 2 System Reboot You can reset the stack switch on this page After reset the system will boot normally as if you have...

Страница 159: ...e switch by CLI CLI Management by RS 232 Serial Console 115200 8 none 1 none Before configuring RS 232 serial console connect the RS 232 port of the switch to your PC Com port using a RJ45 to DB9 F ca...

Страница 160: ...Manual ORing Industrial Networking Corp 159 Step 3 Select a COM port in the drop down list Step 4 A pop up window that indicates COM port properties appears including bits per second data bits parity...

Страница 161: ...king Corp 160 Step 5 The console login screen will appear Use the keyboard to enter the Username and Password same as the password for Web browsers then press Enter CLI Management by Telnet You can ca...

Страница 162: ...User Name admin Password admin Follow the steps below to access console via Telnet Step 1 Telnet to the IP address of the switch from the Run window by inputting commands or from the MS DOS prompt as...

Страница 163: ...TGPS 9084GT M12 Series User Manual ORing Industrial Networking Corp 162 Commander Groups...

Страница 164: ...e disable Setup ip_addr ip_mask ip_router vid Ping ip_addr_string ping_length SNTP ip_addr_string Port port Configuration port_list up down Mode port_list auto 10hdx 10fdx 100hdx 100fdx 1000fdx sfp_au...

Страница 165: ..._all PortType port_list unaware c port s port s custom port EtypeCustomSport etype Add vid name ports_list Forbidden Add vid name port_list Delete vid name Forbidden Delete vid name Forbidden Lookup v...

Страница 166: ...cal radius enable disable Security Switch SSH Security switch ssh Configuration Mode enable disable Security Switch HTTPS Security switch ssh Configuration Mode enable disable Security Switch RMON Sec...

Страница 167: ...thorized macbased Reauthentication enable disable ReauthPeriod reauth_period EapolTimeout eapol_timeout Agetime age_time Holdtime hold_time Authenticate port_list now Statistics port_list clear eapol...

Страница 168: ...ble Security Network DHCP Security Network DHCP Configuration Mode enable disable Server ip_addr Information Mode enable disable Information Policy replace keep drop Statistics clear Security Network...

Страница 169: ...able Port AutoEdge port_list enable disable Port P2P port_list enable disable auto Port RestrictedRole port_list enable disable Port RestrictedTcn port_list enable disable Port bpduGuard port_list ena...

Страница 170: ...on al_res lldp_res lldp_con Maximum_Power port_list port_power Status Primary_Supply supply_power QoS QoS DSCP Map dscp_list class dpl DSCP Translation dscp_list trans_dscp DSCP Trust dscp_list enable...

Страница 171: ...disable rx tx Dot1x Dot1x Configuration port_list Mode enable disable State port_list macbased auto authorized unauthorized Authenticate port_list now Reauthentication enable disable Period reauth_per...

Страница 172: ...smac dmac arp sip dip smac arp_opcode arp_flags ip sip dip protocol ip_flags icmp sip dip icmp_type icmp_code ip_flags udp sip dip sport dport ip_flags tcp sip dip sport dport ip_flags tcp_flags permi...

Страница 173: ...word User Lookup index Group Add security_model security_name group_name Group Delete index Group Lookup index View Add view_name included excluded oid_subtree View Delete index View Lookup index Acce...

Страница 174: ...nst UniConfig clockinst index duration ip_addr ForeignMasters clockinst port_list EgressLatency show clear MasterTableUnicast clockinst ExtClockMode one_pps_mode ext_enable clockfreq vcxo_enable OnePp...

Страница 175: ...owerFailure pwr1 pwr2 pwr3 enable disable Event Event Configuration Syslog SystemStart enable disable Syslog PowerStatus enable disable Syslog SnmpAuthenticationFailure enable disable Syslog RingTopol...

Страница 176: ...e disable 1stUplinkPort port 2ndUplinkPort port EdgePort 1st 2nd none RCS RCS Mode enable disable Add ip_addr port_list web_on web_off telnet_on telnet_off snmp_on snmp_off Del index Configuration Fas...

Страница 177: ...Action port_list do_nothing link_change shutdown only_log reboot_device Port Alive Status port_list Port Stream Mode port_list enable disable Port Stream Action port_list do_nothing only_log Port Str...

Страница 178: ...TGPS 9084GT M12 Series User Manual ORing Industrial Networking Corp 177 Parameter MRP_LNKdownT value Parameter MRP_LNKupT value Parameter MRP_LNKNRmax value Modbus Modbus Status Mode enable disable...

Страница 179: ...VLANs 256 IGMP multicast groups 128 for each VLAN Port rate limiting User Define Jumbo frame Up to 9 6K Bytes Security Features Device Binding security feature Enable disable ports MAC based port sec...

Страница 180: ...connector Dual DC inputs 24 12 57VDC VDC on 5 pin M23 connector Power consumption Typ 18 Watts power consumption of P S E is not included 23 Watts power consumption of P S E is not included 18 Watts...

Отзывы: