Planet IGS-5225 Series Скачать руководство пользователя страница 371

User’s  Manual  of  IGS-5225  series 

 

371 

 

 

Ethernet Type Parameters 

The Ethernet Type parameters can be configured when Frame Type "Ethernet Type" is selected. 

Object 

Description 

 

EtherType Filter

 

Specify the Ethernet type filter for this ACE.   

 

Any

: No EtherType filter is specified (EtherType filter status is 

"don't-care").   

 

Specific

: If you want to filter a specific EtherType filter with this 

ACE, you can enter a specific EtherType value. A field for entering a 
EtherType value appears. 

 

Ethernet Type Value

 

When "Specific" is selected for the EtherType filter, you can enter a specific 
EtherType value. 
The allowed range is 

0x600

 to 

0xFFFF

 but excluding 0x800(IPv4), 0x806(ARP) 

and 0x86DD(IPv6). A frame that hits this ACE matches this EtherType value. 

 

Buttons 

: Click to apply changes   

: Click to undo any changes made locally and revert to previously saved values.

 

: Return to the previous page. 

 

 

4.5.5.4 ACL Ports Configuration 

Configure the ACL parameters (ACE) of each switch port. These parameters will affect frames received on a port unless the 
frame matches a specific ACE. The ACL Ports Configuration screen in 

Figure 4-5-5-4

 appears. 

 

Figure 4-5-5-4:

 ACL Ports Configuration Page Screenshot 

Содержание IGS-5225 Series

Страница 1: ...User s Manual of IGS 5225 series 1 ...

Страница 2: ...harmful interference when the equipment is operated in a commercial environment This equipment generates uses and can radiate radio frequency energy and if not installed and used in accordance with the Instruction manual may cause harmful interference to radio communications Operation of this equipment in a residential area is likely to cause harmful interference in which case the user will be req...

Страница 3: ...igital Input Output 55 2 2 Installing the Industrial Managed Switch 58 2 2 1 Installation Steps 58 2 2 2 DIN rail Mounting 59 2 2 3 Wall Mount Plate Mounting 61 2 3 Cabling 62 2 3 1 Installing the SFP Transceiver 63 2 3 2 Removing the SFP SFP Transceiver 66 3 SWITCH MANAGEMENT 67 3 1 Requirements 67 3 2 Management Access Overview 68 3 3 CLI Mode Management 69 3 4 Web Management 71 3 5 SNMP based N...

Страница 4: ...uration 110 4 2 2 3 SNMP System Information 111 4 2 2 4 SNMP Trap Configuration 112 4 2 2 5 SNMP Trap Source Configuration 114 4 2 2 6 SNMPv3 Communities 116 4 2 2 7 SNMPv3 Users 117 4 2 2 8 SNMPv3 Groups 119 4 2 2 9 SNMPv3 Views 120 4 2 2 10 SNMPv3 Access 121 4 2 3 RMON 122 4 2 3 1 RMON Alarm Configuration 122 4 2 3 2 RMON Alarm Status 124 4 2 3 3 RMON Event Configuration 125 4 2 3 4 RMON Event S...

Страница 5: ...em Status 158 4 3 2 5 LACP Port Status 159 4 3 2 6 LACP Port Statistics 160 4 3 3 VLAN 161 4 3 3 1 VLAN Overview 161 4 3 3 2 IEEE 802 1Q VLAN 162 4 3 3 3 VLAN Port Configuration 165 4 3 3 4 VLAN Membership Status 170 4 3 3 5 VLAN Port Status 172 4 3 3 6 Private VLAN 173 4 3 3 7 Port Isolation 175 4 3 3 8 VLAN setting example 177 4 3 3 8 1 Two Separate 802 1Q VLANs 177 4 3 3 8 2 VLAN Trunking betwe...

Страница 6: ...MLD Snooping VLAN Configuration 222 4 3 6 3 MLD Snooping Port Group Filtering 224 4 3 6 4 MLD Snooping Status 225 4 3 6 5 MLD Group Information 226 4 3 6 6 MLDv2 Information 227 4 3 7 MVR Multicast VLAN Registration 229 4 3 7 1 MVR Configuration 229 4 3 7 2 MVR Status 232 4 3 7 3 MVR Groups Information 233 4 3 7 4 MVR SFM Information 233 4 3 8 LLDP 235 4 3 8 1 Link Layer Discovery Protocol 235 4 3...

Страница 7: ...89 4 4 1 General 289 4 4 1 1 QoS Port Classification 290 4 4 1 2 Queue Policing 291 4 4 1 3 Port Tag Remarking 293 4 4 1 4 WRED 294 4 4 1 5 Statistics 295 4 4 2 Bandwidth Control 296 4 4 2 1 Port Policing 296 4 4 2 3 Port Shaping 298 4 4 3 Storm Control 301 4 4 3 1 Storm Policing Configuration 301 4 4 4 Differentiated Service 302 4 4 4 1 Port DSCP 302 4 4 4 2 DSCP based QoS 303 4 4 4 3 DSCP Transl...

Страница 8: ...sts 358 4 5 5 1 Access Control List Status 358 4 5 5 2 Access Control List Configuration 359 4 5 5 3 ACE Configuration 361 4 5 5 4 ACL Ports Configuration 371 4 5 5 5 ACL Rate Limiters 373 4 5 6 DHCP Snooping 375 4 5 6 1 DHCP Snooping Configuration 375 4 5 6 2 Snooping Table 377 4 5 7 IP Source Guard 378 4 5 7 1 IP Source Guard Configuration 378 4 5 7 2 Static IP Source Guard Table 379 4 5 7 3 Dyn...

Страница 9: ... 8 2 ONVIF Device Search 422 4 8 3 ONVIF Device List 424 4 8 4 Map Upload Edit 426 4 8 5 Floor Map 427 4 9 Maintenance 429 4 9 1 Switch Maintenance 429 4 9 1 1 Web Firmware Upgrade 429 4 9 1 2 Save Startup Config 430 4 9 1 3 Configuration Download 430 4 9 1 4 Configuration Upload 431 4 9 1 5 Configuration Activate 432 4 9 1 6 Configuration Delete 432 4 9 1 7 Image Select 432 4 9 1 8 Factory Defaul...

Страница 10: ...S 5225 series 10 5 5 Auto Negotiation 442 6 TROUBLESHOOTING 443 APPENDIX A Networking Connection 445 A 1 Switch s Data RJ45 Pin Assignments 1000Mbps 1000BASE T 445 A 2 10 100Mbps 10 100BASE TX 445 APPENDIX B GLOSSARY 447 ...

Страница 11: ...1000X SFP IGS 5225 4T2S Industrial L2 4 Port 10 100 1000T Managed Ethernet Switch with 2 Port 100 1000X SFP Industrial Managed Switch is used as an alternative name for the above models in this user s manual 1 1 Packet Contents Open the box of the Industrial Managed Switch and carefully unpack it The box should contain the following items Model Name Item IGS 5225 8P2T2S IGS 5225 8P4S IGS 5225 4UP1...

Страница 12: ...ts Power Input 48 56V DC x 2 12 48V DC x 2 or 24V AC Environmentally Hardened Design With IP30 aluminum case the Industrial Managed Switch provides a high level of immunity against electromagnetic interference and heavy electrical surges which are usually found on plant floors or in curb side traffic control cabinets It also possesses an integrated power supply source with a wide range of voltages...

Страница 13: ...put and Digital Output on its upper panel The external alarm enables users to use Digital Input to detect external device s status such as door intrusion detector and send event alarm to the administrators The Digital Output could be used to alarm the administrators if the Industrial Managed Switch port is link down link up or power dead ...

Страница 14: ...ill greatly enhance the network reliability through the PoE port resetting the PD s power source and reduce administrator management burden PoE Schedule for Energy Savings Under the trend of energy saving worldwide and contributing to environment protection on the Earth the Industrial Managed PoE Switch can effectively control the power supply along with its capability of giving high watts power o...

Страница 15: ...g and redundancy QoS traffic control network access control and authentication and Secure Management features to protect customer s industrial and building automation network connectivity with reliable switching recovery capability that is suitable for implementing fault tolerant and mesh network architectures IPv4 and IPv6 VLAN Routing for Secure and Flexible Management The Industrial Managed Swi...

Страница 16: ...ime the Industrial Managed Switch offers Cisco like command via Telnet or console port and customer doesn t need to learn new command from these switches Moreover the Industrial Managed Switch offers remote secure management by supporting SSH SSL and SNMPv3 connection which can encrypt the packet content at each session ...

Страница 17: ... Solution It features 100BASE FX and 1000BASE SX LX SFP Small Form factor Pluggable fiber optic modules meaning the administrator now can flexibly choose the suitable SFP transceiver according to the transmission distance or the transmission speed required to extend the network efficiently 1588 Precision Time Protocol for Industrial Computing Networks The Industrial Managed Switch is intended for ...

Страница 18: ...re function of the Industrial Managed Switch Section 4 WEB CONFIGURATION The section explains how to manage the Industrial Managed Switch by Web interface Section 5 SWITCH OPERATION The chapter explains how to do the switch operation of the Industrial Managed Switch Section 6 TROUBLESHOOTING The chapter explains how to do troubleshooting of the Industrial Managed Switch Appendix A The section cont...

Страница 19: ...ment features Total PoE power budget control Per port PoE function enable disable PoE admin mode control PoE port power feeding priority Per PoE port power limit PD classification detection Intelligent PoE features Temperature threshold control PoE usage threshold control PD alive check PoE schedule Power over Ethernet IGS 5225 8P2T2S and IGS 5225 8P4S Complies with IEEE 802 3at Power over Etherne...

Страница 20: ...oE admin mode control PoE port power feeding priority Per PoE port power limit PD classification detection Intelligent PoE features Temperature threshold control PoE usage threshold control PD alive check PoE schedule Industrial Protocol Modbus TCP for real time monitoring in a SCADA system IEEE 1588v2 PTP Precision Time Protocol Industrial Case and Installation IP30 aluminum case DIN rail and wal...

Страница 21: ...D Spanning Tree Protocol STP IEEE 802 1w Rapid Spanning Tree Protocol RSTP IEEE 802 1s Multiple Spanning Tree Protocol MSTP spanning tree by VLAN BPDU Guard Supports Link Aggregation 802 3ad Link Aggregation Control Protocol LACP Cisco ether channel static trunk Maximum 2 trunk groups with 2 ports per trunk group Up to 4Gbps bandwidth duplex mode Provides port mirror many to 1 Port mirroring to mo...

Страница 22: ... Multicast VLAN Registration Security Authentication IEEE 802 1x Port based MAC based network access authentication Built in RADIUS client to cooperate with the RADIUS servers TACACS login users access authentication RADIUS TACACS users access authentication Access Control List IP based Access Control List ACL MAC based Access Control List Source MAC IP address binding DHCP snooping to filter dist...

Страница 23: ...nd DHCP for IP address assignment System Maintenance Firmware upload download via HTTP TFTP Reset button for system reboot or reset to factory default Dual Images DHCP Relay and DHCP Option 82 DHCP Server User Privilege levels control Network Time Protocol NTP SFP DDM Digital Diagnostic Monitor Network Diagnositc ICMPv6 ICMPv4 Remote Ping Cable diagnostic technology provides the mechanism to detec...

Страница 24: ...tes packet Address Table 8K entries automatic source address learning and aging Shared Data Buffer 4Mbits Flow Control IEEE 802 3x pause frame for full duplex Back pressure for half duplex Jumbo Frame 9Kbytes Reset Button 5 sec System reboot 5 sec Factory default ESD Protection 6KV DC Enclosure IP30 aluminum case Installation DIN rail kit and wall mount kit Connector Removable 6 pin terminal block...

Страница 25: ...ower Pin Assignment 1 2 3 6 PoE Power Budget 240W maximum depending on power input PoE Ability PD 15 watts 8 PoE Ability PD 30 watts 8 PoE Ability PD 60 watts 8 Layer 2 Function Basic Management Interfaces Console Telnet Web browser SNMP v1 v2c Secure Management Interfaces SSH SSL SNMP v3 Port Configuration Port disable enable Auto negotiation 10 100 1000Mbps full and half duplex mode selection Fl...

Страница 26: ...Part 15 Class A CE Stability Testing IEC60068 2 32 free fall IEC60068 2 27 shock IEC60068 2 6 vibration Standards Compliance IEEE 802 3 10BASE T IEEE 802 3u 100BASE TX 100BASE FX IEEE 802 3z Gigabit SX LX IEEE 802 3ab Gigabit 1000T IEEE 802 3x flow control and back pressure IEEE 802 3ad port trunk with LACP IEEE 802 1D Spanning Tree Protocol IEEE 802 1w Rapid Spanning Tree Protocol IEEE 802 1s Mul...

Страница 27: ...RFC 2665 Ether Like MIB RFC 2819 RMON MIB Groups 1 2 3 and 9 RFC 2737 Entity MIB RFC 2618 RADIUS Client MIB RFC 2933 IGMP STD MIB RFC 3411 SNMP Frameworks MIB IEEE 802 1X PAE LLDP MAU MIB Environment Operating Temperature 40 75 degrees C Storage Temperature 40 85 degrees C Humidity 5 95 non condensing ...

Страница 28: ... packet per second 10 42Mpps 64 bytes packet 8 928Mpps 64 bytes packet 8 928Mpps 64 bytes packet Address Table 8K entries automatic source address learning and aging Shared Data Buffer 4Mbits Flow Control IEEE 802 3x pause frame for full duplex Back pressure for half duplex Jumbo Frame 9Kbytes Reset Button 5 sec System reboot 5 sec Factory default ESD Protection 6KV DC Enclosure IP30 aluminum case...

Страница 29: ... Ports 10 100Mbps LNK ACT Amber 1000 LNK ACT Green Per SFP Interface 100 LNK ACT Amber 1000 LNK ACT Green Dimensions WxDxH 72 x 107 x 152 mm 50 x 87 8 x 135 mm 32 x 87x 135 mm Weight 1050g 610g 456g Power Requirements 48 56V DC 52V DC for PoE output recommended 48 56V DC 52V DC for PoE output recommended Dual 12 48V DC 24V AC Power Consumption Max 6 6 watts 22 52BTU Power on without any connection...

Страница 30: ...faces SSH SSL SNMP v3 Port Configuration Port disable enable Auto negotiation 10 100 1000Mbps full and half duplex mode selection Flow control disable enable Port Status Display each port s speed duplex mode link status flow control status auto negotiation status trunk status Port Mirroring TX RX both 1 to 1 monitor VLAN 802 1Q tagged based VLAN up to 255 VLAN groups Q in Q tunneling Private VLAN ...

Страница 31: ...t SX LX IEEE 802 3ab Gigabit 1000T IEEE 802 3x flow control and back pressure IEEE 802 3ad port trunk with LACP IEEE 802 1D Spanning Tree Protocol IEEE 802 1w Rapid Spanning Tree Protocol IEEE 802 1s Multiple Spanning Tree Protocol IEEE 802 1p Class of Service IEEE 802 1Q VLAN tagging IEEE 802 1ad Q in Q VLAN stacking IEEE 802 1X Port Authentication Network Control IEEE 802 1ab LLDP IEEE 802 3af P...

Страница 32: ...of IGS 5225 series 32 RFC 2933 IGMP STD MIB RFC 3411 SNMP Frameworks MIB IEEE 802 1X PAE LLDP MAU MIB Environment Operating Temperature 40 75 degrees C Storage Temperature 40 85 degrees C Humidity 5 95 non condensing ...

Страница 33: ...ion describes the hardware features of Industrial Managed Switch For easier management and control of the Industrial Managed Switch familiarize yourself with its display indicators and ports Front panel illustrations in this chapter display the unit LED indicators Before connecting any network device to the Industrial Managed Switch read this chapter carefully 2 1 1 Physical Dimensions IGS 5225 4U...

Страница 34: ...User s Manual of IGS 5225 series 34 ...

Страница 35: ...User s Manual of IGS 5225 series 35 IGS 5225 8P2T2S IGS 5225 8P2T2S Dimensions W x D x H 72 x 107 x 152 mm ...

Страница 36: ...User s Manual of IGS 5225 series 36 IGS 5225 8P4S IGS 5225 8P4S Dimensions W x D x H 72 x 107 x 152 mm ...

Страница 37: ...User s Manual of IGS 5225 series 37 IGS 5225 4P2S IGS 5225 4P2S Dimensions W x D x H 50 x 87 8 x 135 mm ...

Страница 38: ...User s Manual of IGS 5225 series 38 IGS 5225 4T2S IGS 5225 4T2S Dimensions W x D x H 32 x 87x 135 mm ...

Страница 39: ...User s Manual of IGS 5225 series 39 2 1 2 Front Panels IGS 5225 8P2T2S IGS 5225 8P4S Figure 2 1 IGS 5225 8P2T2S Switch Front Panel Figure 2 2 IGS 5225 8P4S Switch Front Panel ...

Страница 40: ...S 5225 4P2S Switch Front Panel Figure 2 5 IGS 5225 4T2S Switch Front Panel Gigabit TP Interface 10 100 1000BASE T Copper RJ45 Twisted pair Up to 100 meters SFP Slot 100 1000BASE X mini GBIC slot SFP Small form Factor Pluggable transceiver module From 550 meters to 2km multi mode fiber and to 10 20 30 40 50 70 120 kilometers single mode fiber ...

Страница 41: ...o the console port on the device After the connection users can run any terminal emulation program Hyper Terminal ProComm Plus Telix Winterm and so on to enter the startup screen of the device Reset Button On the upper left side of the front panel the reset button is designed for rebooting the Industrial Managed Switch without turning off and on the power The following is the summary table of rese...

Страница 42: ...ction 5 sec System Reboot Reboot the Industrial Managed Switch 5 sec Factory Default Reset the Industrial Managed Switch to Factory Default configuration The Industrial Managed Switch will then reboot and load the default settings as shown below Default Username admin Default Password admin Default IP address 192 168 0 100 Subnet mask 255 255 255 0 Default Gateway 192 168 0 254 ...

Страница 43: ... state is in idle mode Blinks to indicate that the Ring state is in protected mode DI DO Red Blinks to indicate that Switch DC or port has failed or DI has event Per 10 100 1000BASE T Port LED Color Function 1000 LNK ACT Green Lights to indicate the port is running at 1000Mbps speed and successfully established Blinks to indicate that the switch is actively sending or receiving data over that port...

Страница 44: ... Port 4 LED Color Function PoE Green Lights to indicate the port is providing DC in line power with Ultra PoE mode Off to indicate the connected device is not a PoE PD Amber Lights to indicate the port is providing DC in line power with End span Mid span mode Off to indicate the connected device is not a PoE PD PoE Power Usage Unit Watt LED Color Function 60 Amber Lights to indicate the system con...

Страница 45: ...en Lights to indicate that Ring state is in idle mode Blinks to indicate that the Ring state is in protected mode DI DO Red Blinks to indicate that Switch AC DC or port has failed or DI has event Per 10 100 1000BASE T Port with PoE Port 1 Port 8 LED Color Function 10 100 1000 LNK ACT Green Lights Indicating the port is running at 1000Mbps speed and successfully established Blinks Indicating that t...

Страница 46: ...rt 11 Port 12 LED Color Function 1000 LNK ACT Green Lights Indicating the port is running at 1000Mbps speed and successfully established Blinks Indicating that the switch is actively sending or receiving data over that port 100 LNK ACT Amber Lights Indicating the port is running at 100Mbps speed and successfully established Blinks Indicating that the switch is actively sending or receiving data ov...

Страница 47: ...n Lights to indicate that Ring state is in idle mode Blinks to indicate that the Ring state is in protected mode DI DO Red Blinks to indicate that Switch AC DC or port has failed or DI has event Per 10 100 1000BASE T Port with PoE Port 1 Port 8 LED Color Function 10 100 1000 LNK ACT Green Lights Indicating the port is running at 1000Mbps speed and successfully established Blinks Indicating that th...

Страница 48: ...0 LNK ACT Amber Lights Indicating the port is running at 100Mbps speed and successfully established Blinks Indicating that the switch is actively sending or receiving data over that port PoE Power Usage Unit Watt LED Color Function 60 Amber Lights To indicate the system consumes over 60 watt PoE power budget 120 Amber Lights To indicate the system consumes over 120 watt PoE power budget 180 Amber ...

Страница 49: ...ssfully R O Green Lights to indicate that Ring state is in idle mode Blinks to indicate that the Ring state is in protected mode Per 10 100 1000BASE T Port with PoE Port 1 Port 4 LED Color Function LNK ACT Green Lights Indicating the port is running at 10 100 1000Mbps speed and successfully established Blinks Indicating that the switch is actively sending or receiving data over that port PoE Amber...

Страница 50: ...ort PoE Power Usage Unit Watt LED Color Function 30 Amber Blinks To indicate the system consumes between 15 watts and 30 watts of PoE power Lights To indicate the system consumes over 30 watts of PoE power 60 Amber Blinks To indicate the system consumes between 45 watts and 60 watts of PoE power Lights To indicate the system consumes over 60 watts of PoE power 90 Amber Blinks To indicate the syste...

Страница 51: ...te is in idle mode Blinks to indicate that the Ring state is in protected mode Per 10 100 1000BASE T Port Port 1 Port 4 LED Color Function 1000 LNK ACT Green Lights When lit it indicates the Switch is successfully connecting to the network at 1000Mbps Blinks When blinking it indicates that the Switch is actively sending or receiving data over that port 10 100 LNK ACT Amber Lights When lit it indic...

Страница 52: ...g the port is running at 1000Mbps speed and successfully established Blinks Indicating that the switch is actively sending or receiving data over that port 100 LNK ACT Amber Lights Indicating the port is running at 100Mbps speed and successfully established Blinks Indicating that the switch is actively sending or receiving data over that port ...

Страница 53: ... with a DC inlet power socket and one terminal block connector with 6 contacts 1 Insert positive negative DC power wires into contacts 1 and 2 for DC Power 1 or 5 and 6 for DC Power 2 Figure 2 11 IGS 5225 8P2T2S and IGS 5225 8P4S Upper Panel Figure 2 12 IGS 5225 4P2S Upper Panel Figure 2 13 IGS 5225 4T2S Upper Panel ...

Страница 54: ...ut Voltage IGS 5225 4UP1T2S Pin 1 5 Pin 2 6 DC 48 56V IGS 5225 8P2T2S IGS 5225 8P4S Pin 1 5 Pin 2 6 DC 48 56V IGS 5225 4P2S IGS 5225 4T2S Pin 1 5 Pin 2 6 DC 48 56V 1 The wire gauge for the terminal block should be in the range of 12 24 AWG 25 degrees C 2 When performing any of the procedures like inserting the wires or tightening the wire clamp screws make sure the power is OFF to prevent from get...

Страница 55: ...arm contacts 1 The wire gauge for the terminal block should be in the range of 12 24 AWG 2 When performing any of the procedures like inserting the wires or tightening the wire clamp screws make sure the power is OFF to prevent from getting an electric shock 2 1 6 Wiring the Digital Input Output The 6 contact terminal block connector on the rear panel of IGS Series is used for Digital Input and Di...

Страница 56: ...re are two Digital Input groups for you to monitor two different devices The following topology shows how to wire DI0 and DI1 Figure 2 17 Wiring DI0 and DI1 to Open Detector 3 There are two Digital Output groups for you to sense IGS 5225 4UP1T2S IGS 5225 8P2T2S IGS 5225 8P4S port failure or power failure and issue a high or low signal to external device The following topology shows how to wire DO0...

Страница 57: ...User s Manual of IGS 5225 series 57 Figure 2 18 Wiring DO0 and DO1 to Open Detector ...

Страница 58: ...Mounting section for wall mount plate installation 3 To hang the Industrial Managed Switch on the DIN rail track or wall 4 Power on the Industrial Managed Switch Please refer to the Wiring the Power Inputs section for knowing the information about how to wire the power The power LED on the Industrial Managed Switch will light up Please refer to the LED Indicators section for indication of LED ligh...

Страница 59: ...ll the Industrial Managed Switch DIN rail mounting and wall mount plate mounting Please read the following topics and perform the procedures in the order being presented Follow all the DIN rail installation steps as shown in the example Step 1 Screw the DIN rail bracket on the Industrial Managed Switch Step 2 Lightly slide the DIN rail bracket into the track ...

Страница 60: ...eries 60 Step 3 Check whether the DIN rail bracket is tightly on the track Please refer to the following procedures to remove the Industrial Managed Switch from the track Step 4 Lightly remove the DIN rail bracket from the track ...

Страница 61: ...t from the Industrial Managed Switch Use the screwdriver to loosen the screws to remove the DIN rail bracket Step 2 Place the wall mount plate on the rear panel of the Industrial Managed Switch Step 3 Use the screwdriver to screw the wall mount plate on the Industrial Managed Switch Step 4 Use the hook holes at the corners of the wall mount plate to hang the Industrial Managed Switch on the wall S...

Страница 62: ...TP The IEEE 802 3 802 3u 802 3ab Fast Gigabit Ethernet standard requires Category 5 U TP for 100Mbps 100BASE TX 10BASE T networks can use Cat 3 4 5 or 1000BASE T use 5 5e 6 UTP see table below Maximum distance is 100 meters 328 feet The 100BASE FX 1000BASE SX LX SFP slot uses an LC connector with optional SFP module Please see table below and know more about the cable specifications Port Type Cabl...

Страница 63: ...ansceivers PLANET Industrial Managed Switch supports both single mode and multi mode SFP transceivers The following list of approved PLANET SFP SFP transceivers is correct at the time of publication Fast Ethernet Transceiver 100BASE X SFP Model DDM Speed Mbps Connector Interface Fiber Mode Distance Wavelength nm Operating Temp MFB FX 100 LC Multi Mode 2km 1310nm 0 60 MFB F20 100 LC Single Mode 20k...

Страница 64: ...000 LC Multi Mode 2km 1310nm 0 60 MGB LX V2 YES 1000 LC Single Mode 20km 1310nm 0 60 MGB L40 YES 1000 LC Single Mode 40km 1310nm 0 60 MGB L80 YES 1000 LC Single Mode 80km 1550nm 0 60 MGB L120 V2 YES 1000 LC Single Mode 120km 1550nm 0 60 MGB TSX YES 1000 LC Multi Mode 550m 850nm 40 75 MGB TSX2 YES 1000 LC Multi Mode 2km 1310nm 40 75 MGB TLX V2 YES 1000 LC Single Mode 20km 1310nm 40 75 MGB TL40 YES ...

Страница 65: ...gle Mode 80km 1550nm 1490nm 40 75 1 It is recommended to use PLANET SFP on the Industrial Managed Switch If you insert an SFP SFP transceiver that is not supported the Industrial Managed Switch will not recognize it 2 Please choose the SFP SFP transceiver which can be operated under 40 75 degrees C temperature if the switch device is working in a 0 50 degrees C temperature environment Connect the ...

Страница 66: ... if available to disable the port in advance 2 Remove the fiber optic cable gently 3 Turn the lever of the SFP transceiver to a horizontal position 4 Pull out the module gently through the lever Figure 2 20 Pulling out the SFP SFP Transceiver Module Never pull out the module without pulling the lever or the push bolts on the module Directly pulling out the module with force could damage the module...

Страница 67: ...t Access Overview Remote Telnet Access Web Management Access SNMP Access Standards Protocols and Related Reading 3 1 Requirements Workstation running Windows XP 2003 Vista Windows 7 8 10 MAC OS X Linux Fedora Ubuntu or other platform is compatible with TCP IP protocols Workstation is installed with Ethernet NIC Network Interface Card Serial Port Terminal The above PC comes with COM Port DB9 RS232 ...

Страница 68: ...erm Secure Must be near the switch or use dial up connection Not convenient for remote users Modem connection may prove to be unreliable or slow Remote Telnet Text based Telnet functionality built into Windows XP 2003 Vista Windows 7 operating systems Can be accessed from any location Security can be compromised hackers need only know the IP address Web Browser Ideal for configuring the switch rem...

Страница 69: ...ed Switch remote telnet interface from personal computer or workstation in the same Ethernet environment as long as you know the current IP address of the Industrial Managed Switch Direct Access Direct access to the administration console is achieved by directly connecting a terminal or a PC equipped with a terminal emulation program such as HyperTerminal ProcommPlus putty tera term to the Managed...

Страница 70: ...ch the associated action was initiated A Macintosh or PC attachment can use any terminal emulation program for connecting to the terminal serial port A workstation attachment under UNIX can use an emulator Remote Telnet In Windows system you may click Start and then choose Accessories and Command Prompt Please input telnet 192 168 0 100 and press enter from your keyboard You will see the following...

Страница 71: ...ddress for the Industrial Managed Switch you can access the Industrial Managed Switch s Web interface applications directly in your Web browser by entering the IP address of the Industrial Managed Switch Figure 3 3 Web Management You can then use your Web browser to list and manage the Industrial Managed Switch configuration parameters from one central location the Web Management requires Microsof...

Страница 72: ...he Industrial Managed Switch and the SNMP Network Management Station to use the same community string This management method in fact uses two community strings the get community string and the set community string If the SNMP Network Management Station only knows the set community string it can read and write to the MIBs However if it only knows the get community string it can only read MIBs The d...

Страница 73: ... Planet Smart Discovery Utility 1 Open the Planet Smart Discovery Utility in administrator PC 2 Run this utility and the following screen appears Figure 3 6 Planet Smart Discovery Utility Screen If there are two LAN cards or above in the same administrator PC choose a different LAN card by using the Select Adapter tool 3 Press the Refresh button for the currently connected devices in the discovery...

Страница 74: ...above are shown below Update Device Use the current setting on one single device Update Multi Use the current setting on choose multi devices Update All Use the current setting on whole devices in the list The same functions mentioned above also can be found in Option tools bar 3 To click the Control Packet Force Broadcast function it allows new setting value to be assigned to the Web Smart Switch...

Страница 75: ... use network ports The Industrial Managed Switch can be configured through an Ethernet connection making sure the manager PC must be set to the same the IP subnet address with the Industrial Managed Switch For example the default IP address of the Industrial Managed Switch is 192 168 0 100 then the manager PC should be set to 192 168 0 x where x is a number between 1 and 254 except 100 and the def...

Страница 76: ...een in Figure 4 1 2 appears Figure 4 1 2 Login Screen Default User name admin Default Password admin After entering the username and password the main screen appears as Figure 4 1 3 Figure 4 1 3 Default Main page Now you can use the Web management interface to continue the switch management or manage the Industrial Managed Switch by Web interface The Switch Menu on the left of the web page lets yo...

Страница 77: ...fter clicking on the Save button From now on you need to use the new IP address to access the Internet 3 For security reason please change and memorize the new password after this first setup 4 Only accept command in lowercase letter Web Configuration 10Gigabit Ethernet PoE UPoE E R P S Ring DIDO IGS 5225 4UP1T2S IGS 5225 8P2T2S IGS 5225 8P4S IGS 5225 4P2S Supported Not supported ...

Страница 78: ...age of the Industrial Managed Switch s ports The Mode can be set to display different information for the ports including Link up or Link down Clicking on the image of a port opens the Port Statistics page The port states are illustrated as follows State Disabled Down Link RJ45 Ports SFP Ports Main Menu Using the onboard web agent you can define system parameters manage and control the Industrial ...

Страница 79: ...User s Manual of IGS 5225 series 79 Figure 4 1 5 Industrial Managed Switch Main Functions Menu ...

Страница 80: ...ser Privilege Levels This page provides an overview of the privilege levels NTP Configuration Configure NTP server on this page Time Configuration Configure time parameter on this page UPnP Configure UPnP on this page DHCP Relay Configure DHCP Relay on this page DHCP Relay Statistics This page provides statistics for DHCP relay CPU Load This page displays the CPU load using an SVG graph System Log...

Страница 81: ... name configured in SNMP System Information System Name Location The system location configured in SNMP System Information System Location MAC Address The MAC Address of this Industrial Managed Switch Power Status The status of power input Temperature Indicates chipset temperature System Date The current GMT system time and date The system time is obtained through the configured NTP Server if any ...

Страница 82: ...hether the IP stack should act as a Host or a Router In Host mode IP traffic between interfaces will not be routed In Router mode traffic is routed between all interfaces DNS Server This setting controls the DNS name resolution done by the switch There are four servers available for configuration and the index of the server presents the preference less index has higher priority in doing DNS name r...

Страница 83: ...on to delete an existing IP interface VLAN The VLAN associated with the IP interface Only ports in this VLAN will be able to access the IP interface This field is only available for input when creating a new interface DHCPv4 Enabled Enable the DHCPv4 client by checking this box If this option is enabled the system will configure the IPv4 address and mask of the interface using the DHCPv4 protocol ...

Страница 84: ...r hexadecimal digits with a colon separating each field For example fe80 215 c5ff fe03 4dc7 The symbol is a special syntax that can be used as a shorthand way of representing multiple 16 bit groups of contiguous zeros but it can appear only once System accepts the valid IPv6 unicast address only except IPv4 Compatible address and IPv4 Mapped address The field may be left blank if IPv6 operation on...

Страница 85: ...ress is link local it must specify the next hop Buttons Click to add a new IP interface A maximum of 128 interfaces are supported Click to add a new IP route A maximum of 32 routes are supported Click to apply changes Click to undo any changes made locally and revert to previously saved values 4 2 1 3 IP Status IP Status displays the status of the IP protocol layer The status is defined by the IP ...

Страница 86: ... 3 seconds Click to refresh the page 4 2 1 4 Users Configuration This page provides an overview of the current users Currently the only way to login as another user on the web server is to close and reopen the browser After setup is completed press the Apply button to take effect Please login web interface with new user name and password the screen in Figure 4 2 4 appears Figure 4 2 4 Users Config...

Страница 87: ...Page Screenshot The page includes the following fields Object Description Username A string identifying the user name that this entry should belong to The allowed string length is 1 to 31 The valid user name is a combination of letters numbers and underscores Password The password of the user The allowed string length is 0 to 31 Password again Please enter the user s new password here again to con...

Страница 88: ...o undo any changes made locally and revert to previously saved values Click to undo any changes made locally and return to the Users Delete the current user This button is not available for new configurations Add new user Once the new user is added the new user entry is shown on the Users Configuration page Figure 4 2 6 User Configuration Page Screenshot If you forget the new password after changi...

Страница 89: ... name and password and the screen in Figure 4 2 7 appears Figure 4 2 7 Privilege Levels Configuration Page Screenshot The page includes the following fields Object Description Group Name The name identifying the privilege group In most cases a privilege level group consists of a single module e g LACP RSTP or QoS but a few of them contain more than one The following description defines these privi...

Страница 90: ...guration Save Configuration Load and Firmware Load Web Users Privilege Levels and everything in Maintenance Debug Only present in CLI Privilege Level Every privilege level group has an authorization level for the following sub groups Configuration read only Configuration execute read write Status statistics read only Status statistics read write e g for clearing of statistics User Privilege should...

Страница 91: ...n enabling NTP mode operation the agent forward and transfer NTP messages between the clients and the server when they are not on the same subnet domain Disabled Disable NTP mode operation Server Provide the NTP IPv4 or IPv6 address of this switch IPv6 address is in 128 bit records represented as eight fields of up to four hexadecimal digits with a colon separating each field For example fe80 215 ...

Страница 92: ...time correction Manually Page Screenshot The page includes the following fields Object Description User Manually Indicates the NTP mode as manual operation Possible modes are Enabled Enable NTP manual mode operation When enabling NTP user manually mode operation the system time will follow the date setting Disabled Disable NTP user manual mode operation Date If enable the user manually Switch can ...

Страница 93: ...me zone This is a User configurable acronym to identify the time zone Range Up to 16 characters Daylight Saving Time This is used to set the clock forward or backward according to the configurations set below for a defined Daylight Saving Time duration Select Disable to disable the Daylight Saving Time configuration Select Recurring and configure the Daylight Saving Time duration to repeat the con...

Страница 94: ... appears Figure 4 2 11 UPnP Configuration Page Screenshot The page includes the following fields Object Description Mode Indicates the UPnP operation mode Possible modes are Enabled Enable UPnP mode operation Disabled Disable UPnP mode operation When the mode is enabled two ACEs are added automatically to trap UPnP related packets to CPU The ACEs are automatically removed when the mode is disabled...

Страница 95: ...signment Dynamic Default selection for UPnP UPnP module helps users choosing the IP address of the switch device It finds the first available system IP address Static User specifies the IP interface VLAN for choosing the IP address of the switch device Static VLAN Interface ID The index of the specific IP VLAN interface It will only be applied when IP Addressing Mode is static Valid configurable v...

Страница 96: ... the switch is 4 bytes in length and the format is vlan_id module_id port_no The parameter of vlan_id is the first two bytes representing the VLAN ID The parameter of module_id is the third byte for the module ID The parameter of port_no is the fourth byte and it means the port number The Remote ID is 6 bytes in length and the value equals the DHCP relay agent s MAC address The DHCP Relay Configur...

Страница 97: ...elay Information Policy Indicates the DHCP relay information option policy When enabling DHCP relay information mode operation if agent receives a DHCP message that already contains relay agent information It will enforce the policy And it only works under DHCP relay information operation mode enabled Possible policies are Replace Replace the original relay information when receiving a DHCP messag...

Страница 98: ...eously sent packets to clients Receive from Server The packets number that received packets from server Receive Missing Agent Option The packets number that received packets without agent information options Receive Missing Circuit ID The packets number that received packets whose the Circuit ID option was missing Receive Missing Remote ID The packets number that received packets whose Remote ID o...

Страница 99: ...er that received packets with relay agent information option Replace Agent Option The packets number that replaced received packets with relay agent information option Keep Agent Option The packets number that kept received packets with relay agent information option Drop Agent Option The packets number that dropped received packets with relay agent information option Buttons Auto refresh Check th...

Страница 100: ...er must support the SVG format Consult the SVG Wiki for more information on browser support Specifically at the time of writing Microsoft Internet Explorer will need to have a plugin installed to support SVG The CPU Load screen in Figure 4 2 14 appears Figure 4 2 14 CPU Load Page Screenshot Buttons Auto refresh Check this box to refresh the page automatically Automatic refresh occurs every 3 secon...

Страница 101: ...el of the system log All All levels Clear Level To clear the system log entry level The following level types are supported Info Information level of the system log Warning Warning level of the system log Error Error level of the system log All All levels Time The time of the system log entry Message The message of the system log entry Buttons Auto refresh Check this box to refresh the page automa...

Страница 102: ...16 appears Figure 4 2 16 Detailed Log Page Screenshot The page includes the following fields Object Description ID The ID 1 of the system log entry Message The message of the system log entry Buttons Download the system log entry to the current entry ID Updates the system log entry to the current entry ID Updates the system log entry to the first available entry ID Updates the system log entry to ...

Страница 103: ...ents back sender since UDP is a connectionless protocol and it does not provide acknowledgments The syslog packet will always send out even if the syslog server does not exist Possible modes are Enabled Enable remote syslog mode operation Disabled Disable remote syslog mode operation Syslog Server IP Indicates the IPv4 host address of syslog server If the switch provides DNS feature it also can be...

Страница 104: ...or the IP address of the SMTP server SMTP Port Set port number of SMTP service SMTP Authentication Controls whether SMTP authentication is enabled if authentication is required when an e mail is sent Authentication User Name Type the user name for the SMTP server if Authentication is Enabled Authentication Password Type the password for the SMTP server if Authentication is Enabled E mail From Type...

Страница 105: ...rs Figure 4 2 19 Fault Alarm Control Configuration page Screenshot The page includes the following fields Object Description Enable Controls whether Fault Alarm is enabled on this switch Record Controls whether Record is sending System log or SNMP Trap or both Action Controls whether Port Fail or Power Fail or both for fault detecting Power Alarm Controls whether AC DC1 or DC2 or both for fault de...

Страница 106: ...omething else System will log a user customized message into system log and syslog and issue SNMP trap or issue an alarm E mail Digital Output allows user to monitor the switch port and power and let system issue a high or low signal to an external device such as alarm when the monitor port or power has failed The Configuration screen in Figure 4 2 20 appears ...

Страница 107: ...will trigger an action that logs a customize message or issue the message from the switch Event Description Allows user to set a customized message for Digital Input function alarming Action As Digital Input Allows user to record alarm message to System log syslog or issues out via SNMP Trap or SMTP As default SNMP Trap and SMTP are disabled please enable them first if you want to issue alarm mess...

Страница 108: ... Condition DI Condition As Digital Output Allows user to select High to Low or Low to High This means that when the switch is power failed or port failed then system will issue a High or Low signal to an external device such as an alarm Power Alarm Allows user to choose which power module that needs to be monitored Port Alarm Allows user to choose which port that needs to be monitored Buttons Clic...

Страница 109: ... collect and store management information such as the number of error packets received by a network element Management information base MIB A MIB is a collection of managed objects residing in a virtual information store Collections of related managed objects are defined in specific MIB modules Network management protocol A management protocol is used to convey management information between agent...

Страница 110: ...roups table on this page SNMPv3 Views Configure SNMPv3 views table on this page SNMPv3 Access Configure SNMPv3 accesses table on this page 4 2 2 2 SNMP System Configuration Configure SNMP on this page The SNMP System Configuration screen in Figure 4 2 2 2 appears Figure 4 2 2 2 SNMP System Configuration Page Screenshot The page includes the following fields Object Description Mode Indicates the SN...

Страница 111: ...wed string length is 0 to 255 and the allowed content is the ASCII characters from 32 to 126 System Name An administratively assigned name for this managed node By convention this is the node s fully qualified domain name A domain name is a text string drawn from the alphabet A Za z digits 0 9 minus sign No space characters are permitted as part of a name The first character must be an alpha chara...

Страница 112: ...llowing fields Object Description Trap Config Indicates which trap Configuration s name for configuring The allowed string length is 0 to 255 and the allowed content is ASCII characters from 33 to 126 Trap Mode Indicates the SNMP trap mode operation Possible modes are Enabled Enable SNMP trap mode operation Disabled Disable SNMP trap mode operation Trap Version Indicates the SNMP trap supported ve...

Страница 113: ... security engine ID mode of operation Trap Security Engine ID Indicates the SNMP trap security engine ID SNMPv3 sends traps and informs using USM for authentication and privacy A unique engine ID for these traps and informs is needed When Trap Probe Security Engine ID is enabled the ID will be probed automatically Otherwise the ID specified in this field is used The string must contain an even num...

Страница 114: ...nd no filters with filter type excluded matches Figure 4 2 2 5 SNMP Trap Source Configuration Page Screenshot Click Add New Entry to add a new entry The maximum entry count is 32 Figure 4 2 2 6 SNMP Trap Source Configuration Page Screenshot The page includes the following fields Object Description Name Indicates the name for the entry Type The filter type for the entry Possible types are included ...

Страница 115: ... For example the ifIdex is the subset OID of linkUp and linkDown A valid subset OID is one or more digital number 0 4294967295 or asterisk which are separated by dots The first character must not begin with asterisk and the maximum of OID count must not exceed 128 Buttons Click to add a new community entry The maximum entry count is 32 Click to apply changes Click to undo any changes made locally ...

Страница 116: ... the community access string to permit access to SNMPv3 agent The allowed string length is 1 to 32 and the allowed content is ASCII characters from 33 to 126 The community string will be treated as security name and map a SNMPv1 or SNMPv2c community string Source IP Indicates the SNMP access source address A particular range of source addresses can be used to restrict source subnet when combined w...

Страница 117: ...he entry s keys In a simple agent usmUserEngineID is always that agent s own snmpEngineID value The value can also take the value of the snmpEngineID of a remote SNMP engine with which this user can communicate In other words if user engine ID equal system engine ID then it is local user otherwise it s remote user User Name A string identifying the user name that this entry should belong to The al...

Страница 118: ...otocol the allowed string length is 8 to 40 The allowed content is the ASCII characters from 33 to 126 Privacy Protocol Indicates the privacy protocol that this entry should belong to Possible privacy protocol are None None privacy protocol DES An optional flag to indicate that this user using DES authentication protocol AES An optional flag to indicate that this user uses AES authentication proto...

Страница 119: ...hat this entry should belong to Possible security models are v1 Reserved for SNMPv1 v2c Reserved for SNMPv2c usm User based Security Model USM Security Name A string identifying the security name that this entry should belong to The allowed string length is 1 to 32 and the allowed content is the ASCII characters from 33 to 126 Group Name A string identifying the group name that this entry should b...

Страница 120: ...acters from 33 to 126 View Type Indicates the view type that this entry should belong to Possible view type are included An optional flag to indicate that this view subtree should be included excluded An optional flag to indicate that this view subtree should be excluded In general if a view entry s view type is excluded it should be exist another view entry which view type is included and it s OI...

Страница 121: ...security model v1 v2c usm v1 Reserved for SNMPv1 v2c Reserved for SNMPv2c usm User based Security Model USM Security Level Indicates the security model that this entry should belong to Possible security models are NoAuth NoPriv None authentication and none privacy Auth NoPriv Authentication and none privacy Auth Priv Authentication and privacy Read View Name The name of the MIB view defining the M...

Страница 122: ...implementation of Event Statistics and History display some current or history subnet statistics Alarm and Event provide a method to monitor any integer data change in the network and provide some alerts upon abnormal events sending Trap or record in logs 4 2 3 1 RMON Alarm Configuration Configure RMON Alarm table on this page The entry index key is ID screen in Figure 4 2 3 1 appears Figure 4 2 3...

Страница 123: ...e output packet queue in packets Sample Type The method of sampling the selected variable and calculating the value to be compared against the thresholds possible sample types are Absolute Get the sample directly Delta Calculate the difference between samples default Value The value of the statistic during the last sampling period Startup Alarm The method of sampling the selected variable and calc...

Страница 124: ...ampling and comparing the rising and falling threshold Variable Indicates the particular variable to be sampled Sample Type The method of sampling the selected variable and calculating the value to be compared against the thresholds Value The value of the statistic during the last sampling period Startup Alarm The alarm that may be sent when this entry is first set to valid Rising Threshold Rising...

Страница 125: ...ication of the event the possible types are none The total number of octets received on the interface including framing characters log The number of uni cast packets delivered to a higher layer protocol snmptrap The number of broad cast and multi cast packets delivered to a higher layer protocol logandtrap The number of inbound packets that are discarded even the packets are normal Community Speci...

Страница 126: ... 3 4 RMON Event Overview Page Screenshot The page includes the following fields Object Description Event Index Indicates the index of the event entry Log Index Indicates the index of the log entry Logtime Indicates Event log time Log Description Indicates the Event description Buttons Click to refresh the page immediately Auto refresh Check this box to refresh the page automatically Automatic refr...

Страница 127: ...the entry The range is from 1 to 65535 Data Source Indicates the port ID which wants to be monitored Interval Indicates the interval in seconds for sampling the history statistics data The range is from 1 to 3600 default value is 1800 seconds Buckets Indicates the maximum data entries associated this History control entry stored in RMON The range is from 1 to 3600 default value is 50 Buckets Grant...

Страница 128: ...broadcast packets and multicast packets received Broadcast The total number of good packets received that were directed to the broadcast address Multicast The total number of good packets received that were directed to a multicast address CRC Errors The total number of packets received that had a length excluding framing bits but including FCS octets of between 64 and 1518 octets inclusive but had...

Страница 129: ...the table starting with the entry after the last entry currently displayed 4 2 3 7 RMON Statistics Configuration Configure RMON Statistics table on this page The entry index key is ID screen in Figure 4 2 3 7 appears Figure 4 2 3 7 RMON Statistics Configuration Page Screenshot The page includes the following fields Object Description Delete Check to delete the entry It will be deleted during the n...

Страница 130: ...in which packets were dropped by the probe due to lack of resources Octets The total number of octets of data including those in bad packets received on the network Pkts The total number of packets including bad packets broadcast packets and multicast packets received Broadcast The total number of good packets received that were directed to the broadcast address Multicast The total number of good ...

Страница 131: ... number of packets including bad packets received that were between 256 to 511 octets in length 512 1023 The total number of packets including bad packets received that were between 512 to 1023 octets in length 1024 1518 The total number of packets including bad packets received that were between 1024 to 1518 octets in length Buttons Click to refresh the page immediately Auto refresh Check this bo...

Страница 132: ...er system Possible modes are Enabled Enable DHCP server per system Disabled Disable DHCP server pre system VLAN Mode Configure operation mode to enable disable DHCP server per VLAN Object Description VLAN Range Indicate the VLAN range in which DHCP server is enabled or disabled The first VLAN ID must be smaller than or equal to the second VLAN ID BUT if the VLAN range contains only 1 VLAN ID then ...

Страница 133: ...ill see the disabled VLAN range is removed from the DHCP Server mode configuration page Mode Indicate the operation mode per VLAN Possible modes are Enabled Enable DHCP server per VLAN Disabled Disable DHCP server pre VLAN Buttons Click to add a new VLAN range Click to apply changes Click to undo any changes made locally and revert to previously saved values ...

Страница 134: ...t The page includes the following fields Object Description IP range Define the IP range to be excluded IP addresses The first excluded IP must be smaller than or equal to the second excluded IP BUT if the IP range contains only 1 excluded IP then you can just input it to either one of the first and second excluded IP or both Buttons Click to add a new excluded IP range Click to apply changes Clic...

Страница 135: ...e detail settings you can click the pool name to go into the configuration page Type Display which type of the pool is Network the pool defines a pool of IP addresses to service more than one DHCP client Host the pool services for a specific DHCP client identified by client identifier or hardware address IP Display network number of the DHCP address pool If is displayed it means not defined Subnet...

Страница 136: ...tistics Page Screenshot The page includes the following fields Database Counters Object Description Pool Number of pools Excluded IP Address Number of excluded IP address ranges Declined IP Address Number of declined IP addresses Binding Counters Object Description Automatic Binding Number of bindings with network type pools Manual Binding Number of bindings that administrator assigns an IP addres...

Страница 137: ...QUEST messages received Decline Number of DHCP DECLINE messages received Release Number of DHCP RELEASE messages received Inform Number of DHCP INFORM messages received DHCP message Sent Counters Object Description Offer Number of DHCP OFFER messages sent ACK Number of DHCP ACK messages sent NAK Number of DHCP NAK messages sent Buttons Check this box to refresh the page automatically Click to appl...

Страница 138: ...f binding Possible states are Committed Allocated Expired Pool Name Display the pool that generates the binding Server ID Display server IP address to service the binding Buttons Check this box to refresh the page automatically Click to refresh the page immediately Click to clear selected bindings If the selected binding is Automatic or Manual then it is changed to be Expired If the selected bindi...

Страница 139: ...Check this box to refresh the page automatically Click to refresh the page immediately 4 2 4 7 DHCP Detail Statistics This page provides statistics for DHCP snooping Notice that the normal forward per port TX statistics isn t increased if the incoming DHCP packet is done by L3 forwarding mechanism And clear the statistics on specific port may not take effect on global statistics since it gathers t...

Страница 140: ...n 53 with value 7 packets received and transmitted Rx and Tx Inform Display the number of inform option 53 with value 8 packets received and transmitted Rx and Tx Lease Query Display the number of lease query option 53 with value 10 packets received and transmitted Rx and Tx Lease Unassigned Display the number of lease unassigned option 53 with value 11 packets received and transmitted Rx and Tx L...

Страница 141: ...formation and communication status thus easily achieving enhanced monitoring and maintenance of the entire factory 4 2 5 1 Protocol Configuration The Industrial Protocol Configuration are configured here screen in Figure 4 2 5 1 appears Figure 4 2 5 1 Protocol Configuration Page Screenshot The page includes the following fields Object Description Modbus TCP Mode Indicates the modbus TCP mode opera...

Страница 142: ...ion Port Mirror Sets the source and target ports for mirroring 4 3 1 1 Port Configuration This page displays current port configurations Ports can also be configured here The Port Configuration screen in Figure 4 3 1 1 appears Figure 4 3 1 1 Port Configuration Page Screenshot The page includes the following fields Object Description Port This is the logical port number for this row Port Descriptio...

Страница 143: ...o the link partner When a fixed speed setting is selected that is what is used The Current Rx column indicates whether pause frames on the port are obeyed and the Current Tx column indicates whether pause frames on the port are transmitted The Rx and Tx settings are determined by the result of the last Auto Negotiation Check the configured column to use flow control This setting is related to the ...

Страница 144: ...he number of incomplete transmissions per port Drops The number of frames discarded due to ingress or egress congestion Filtered The number of received frames filtered by the forwarding process Buttons Download the Port Statistics Overview result in EXCEL file Click to refresh the page immediately Clears the counters for all ports Print the Port Statistics Overview result Auto refresh Check this b...

Страница 145: ...mitted good and bad bytes including FCS but excluding framing bits Rx and Tx Unicast The number of received and transmitted good and bad unicast packets Rx and Tx Multicast The number of received and transmitted good and bad multicast packets Rx and Tx Broadcast The number of received and transmitted good and bad broadcast packets Rx and Tx Pause A count of the MAC Control frames received or trans...

Страница 146: ...figured maximum frame length for this port 1 Short frames are frames that are smaller than 64 bytes 2 Long frames are frames that are longer than the configured maximum frame length for this port Transmit Error Counters Object Description Tx Drops The number of frames dropped due to output buffer congestion Tx Late Exc Coll The number of frames dropped due to excessive or late collisions Buttons C...

Страница 147: ...ent speed information Wave Length nm Display the wavelength of current SFP module the wavelength value is got from the SFP module Use this column to check if the wavelength values of two nodes are matched while the fiber connection failed Distance m Display the support distance of current SFP module the distance value is got from the SFP module Temperature C SFP DDM Module Only Display the tempera...

Страница 148: ...ick to refresh the page immediately 4 3 1 5 Port Mirror Configure port Mirroring on this page This function provides monitoring network traffic that forwards a copy of each incoming or outgoing packet from one port of a network Switch to another port where the packet can be studied It enables the manager to keep close track of switch performance and alter it if necessary To debug network problems ...

Страница 149: ...o known as ingress or source mirroring All frames transmitted on a given port also known as egress or destination mirroring Mirror Port Configuration The Port Mirror screen in Figure 4 3 1 6 appears and click the session ID to Figure 4 3 1 7 Figure 4 3 1 6 Mirror Configuration Page Screenshot Figure 4 3 1 7 Mirror Configuration Page Screenshot ...

Страница 150: ...n the stacking mode you need to select switch ID to select the correct device If you shut down a port it cannot be a candidate for reflector port If you shut down the port which is a reflector port the remote mirror function cannot work Source VLAN s Configuration The switch can supports VLAN based Mirroring If you want to monitor some VLANs on the switch you can set the selected VLANs on this fie...

Страница 151: ... source port For a given port a frame is only transmitted once It is therefore not possible to mirror Tx frames on the mirror port Because of this mode for the selected mirror port is limited to Disabled or Rx only Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values ...

Страница 152: ... can be assigned manually Port Trunk or automatically by enabling Link Aggregation Control Protocol LACP on the relevant links Aggregated Links are treated by the system as a single logical port Specifically the Aggregated Link has similar port attributes to a non aggregated port including auto negotiation speed Duplex setting etc The device supports the following Aggregation links Static LAGs Por...

Страница 153: ...ded or deleted from a VLAN The Spanning Tree Protocol will treat all the ports in a link aggregation as a whole Enable the link aggregation prior to connecting any cable between the switches to avoid creating a data loop Disconnect all link aggregation port cables or disable the link aggregation ports before removing a port link aggregation to avoid creating a data loop It allows a maximum of 10 p...

Страница 154: ...t Source MAC Address is enabled Destination MAC Address The Destination MAC Address can be used to calculate the destination port for the frame Check to enable the use of the Destination MAC Address or uncheck to disable By default Destination MAC Address is disabled IP Address The IP address can be used to calculate the destination port for the frame Check to enable the use of the IP Address or u...

Страница 155: ...witch port is listed for each group ID Select a radio button to include a port in an aggregation or clear the radio button to remove the port from the aggregation By default no ports belong to any aggregation group Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values 4 3 2 2 Static Aggregation Status This page is used to see the staus of ports...

Страница 156: ...ggregated Ports Display the Aggregated member ports of the Aggregation group Buttons Click to refresh the page immediately Auto refresh Automatic refresh occurs every 3 seconds 4 3 2 3 LACP Configuration Link Aggregation Control Protocol LACP LACP LAG negotiate Aggregated Port links with other LACP ports located on a different device LACP allows switches connected to each other to discover automat...

Страница 157: ...he key as appropriate by the physical link speed 10Mb 1 100Mb 2 1Gb 3 Using the Specific setting a user defined value can be entered Ports with the same Key value can participate in the same aggregation group while ports with different keys cannot The default setting is Auto Role The Role shows the LACP activity status The Active will transmit LACP packets each second while Passive will wait for a...

Страница 158: ...gregation Groups and LACP Port status The LACP System Status screen in Figure 4 3 2 6 appears Figure 4 3 2 6 LACP System Status Page Screenshot The page includes the following fields Object Description Aggr ID The Aggregation ID associated with this aggregation instance For LLAG the id is shown as isid aggr id and for GLAGs as aggr id Partner System ID The system ID MAC address of the aggregation ...

Страница 159: ...is not enabled or that the port link is down Backup means that the port could not join the aggregation group but will join if other port leaves Meanwhile it s LACP status is disabled Key The key assigned to this port Only ports with the same key can aggregate together Aggr ID The Aggregation ID assigned to this aggregation group Partner System ID The partner s System ID MAC address Partner Port Th...

Страница 160: ... includes the following fields Object Description Port The switch port number LACP Received Shows how many LACP frames have been received at each port LACP Transmitted Shows how many LACP frames have been sent from each port Discarded Shows how many unknown or illegal LACP frames have been discarded at each port Buttons Click to refresh the page immediately Auto refresh Automatic refresh occurs ev...

Страница 161: ...dcast was initiated 1 No matter what basis is used to uniquely identify end nodes and assign these nodes VLAN membership packets cannot cross VLAN without a network device performing a routing function between the VLANs 2 The Industrial Managed Switch supports IEEE 802 1Q VLAN The port untagging function can be used to remove the 802 1 tag from packet headers to maintain compatibility with devices...

Страница 162: ...l Managed Switch supports the following VLAN features Up to 255 VLANs based on the IEEE 802 1Q standard Port overlapping allowing a port to participate in multiple VLANs End stations can belong to multiple VLANs Passing traffic between VLAN aware and VLAN unaware devices Priority tagging IEEE 802 1Q Standard IEEE 802 1Q tagged VLAN are implemented on the Switch 802 1Q VLAN require tagging which en...

Страница 163: ... 4 octets All of the information originally contained in the packet is retained 802 1Q Tag User Priority CFI VLAN ID VID 3 bits 1 bit 12 bits TPID Tag Protocol Identifier TCI Tag Control Information 2 bytes 2 bytes Preamble Destination Address Source Address VLAN TAG Ethernet Type Data FCS 6 bytes 6 bytes 4 bytes 2 bytes 46 1500 bytes 4 bytes The Ether Type and VLAN ID are inserted after the MAC s...

Страница 164: ... connected to a tag aware device the packet should be tagged Default VLANs The Switch initially configures one VLAN VID 1 called default The factory default setting assigns all ports on the Switch to the default As new VLAN are configured in Port based mode their respective member ports are removed from the default Assigning Ports to VLANs Before enabling VLANs for the switch you must first assign...

Страница 165: ... PVID Understand nomenclature of the Switch IEEE 802 1Q Tagged and Untagged Every port on an 802 1Q compliant switch can be configured as tagged or untagged Tagged Ports with tagging enabled will put the VID number priority and other VLAN information into the header of all packets that flow into those ports If a packet has previously been tagged the port will not alter the packet thus keeping the ...

Страница 166: ...tables and could easily exceed the maximum VLAN limit of 4096 The Industrial Managed Switch supports multiple VLAN tags and can therefore be used in MAN applications as a provider bridge aggregating traffic from numerous independent customer LANs into the MAN Metro Access Network space One of the purposes of the provider bridge is to recognize and use VLAN tags so that the VLANs in the MAN space c...

Страница 167: ...ore VLANs may be created by using a list syntax where the individual elements are separated by commas Ranges are specified with a dash separating the lower and upper bound The following example will create VLANs 1 10 11 12 13 200 and 300 1 10 13 200 300 Spaces are allowed in between the delimiters Ethertype for Custom S ports This field specifies the ethertype TPID specified in hexadecimal used fo...

Страница 168: ...d By default all frames but frames classified to the Port VLAN a k a Native VLAN get tagged on egress Frames classified to the Port VLAN do not get C tagged on egress Egress tagging can be changed to tag all frames in which case only tagged frames are accepted on ingress Hybrid Hybrid ports resemble trunk ports in many ways but adds additional port configuration features In addition to the charact...

Страница 169: ...LAN If frames must be tagged on egress they will be tagged with an S tag S Custom Port On ingress frames with a VLAN tag with a TPID 0x8100 or equal to the Ethertype configured for Custom S ports get classified to the VLAN ID embedded in the tag If a frame is untagged or priority tagged the frame gets classified to the Port VLAN If frames must be tagged on egress they will be tagged with the custo...

Страница 170: ...fault a Trunk or Hybrid port will become member of all VLANs and is therefore set to 1 4095 The field may be left empty which means that the port will not become member of any VLANs Forbidden VLANs A port may be configured to never be member of one or more VLANs This is particularly useful when dynamic VLAN protocols like MVRP and GVRP must be prevented from dynamically adding ports to VLANs The t...

Страница 171: ...or voice traffic typically originating from IP phones MVR MVR is used to eliminate the need to duplicate multicast traffic for subscribers in each VLAN Multicast traffic for all channels is sent only on a single multicast VLAN Port Members A row of check boxes for each port is displayed for each VLAN ID If a port is included in a VLAN an image will be displayed If a port is included in a Forbidden...

Страница 172: ...rrently displayed 4 3 3 5 VLAN Port Status This page provides VLAN Port Status The VLAN Port Status screen in Figure 4 3 3 4 appears Figure 4 3 3 4 VLAN Port Status for Combined users Page Screenshot The page includes the following fields Object Description Port The logical port for the settings contained in the same row Port Type Show the VLAN Awareness for the port If VLAN awareness is enabled t...

Страница 173: ...onfiguration the following conflicts can occur Functional Conflicts between feature Conflicts due to hardware limitation Direct conflict between user modules Buttons Select VLAN Users from this drop down list Auto refresh Check this box to refresh the page automatically Automatic refresh occurs every 3 seconds Click to refresh the page immediately 4 3 3 6 Private VLAN The Private VLAN membership c...

Страница 174: ...g a New Private VLAN Click Add New Private VLAN to add a new private VLAN ID An empty row is added to the table and the private VLAN can be configured as needed The allowed range for a private VLAN ID is the same as the switch port number range Any values outside this range are not accepted and a warning message appears Click OK to discard the incorrect entry or click Cancel to return to the editi...

Страница 175: ...with database servers on the inside segment but are not allowed to communicate with each other For private VLANs to be applied the switch must first be configured for standard VLAN operation When this is in place one or more of the configured VLANs can be configured as private VLANs Ports in a private VLAN fall into one of these two groups Promiscuous ports Ports from which traffic can be forwarde...

Страница 176: ... A port member of a VLAN can be isolated to other isolated ports on the same VLAN and Private VLAN The Port Isolation screen in Figure 4 3 3 6 appears Figure 4 3 3 6 Port Isolation Configuration Page Screenshot The page includes the following fields Object Description Port Members A check box is provided for each port of a private VLAN When checked port isolation is enabled on that port When unche...

Страница 177: ...late network traffic so only members of the VLAN receive traffic from the same VLAN members The screen in Figure 4 3 3 7 appears and Table 4 3 3 8 describes the port configuration of the Industrial Managed Switches Figure 4 3 3 7 Two Separate VLANs Diagram VLAN Group VID Untagged Members Tagged Members VLAN Group 1 1 Port 7 Port 52 N A VLAN Group 2 2 Port 1 Port 2 Port 3 VLAN Group 3 3 Port 4 Port...

Страница 178: ... be stripped away it tag becoming an untagged packet Untagged packet entering VLAN 3 1 While PC 4 transmit an untagged packet enters Port 4 the switch will tag it with a VLAN Tag 3 PC 5 and PC 6 will received the packet through Port 5 and Port 6 2 While the packet leaves Port 5 it will be stripped away it tag becoming an untagged packet 3 While the packet leaves Port 6 it will keep as a tagged pac...

Страница 179: ...Ns column Change Port 6 Mode as Trunk and Selects Egress Tagging as Tag All and Types 3 in the Allowed VLANs column The Per Port VLAN configuration in Figure 4 3 3 10 appears Figure 4 3 3 10 Check VLAN 2 and 3 Members on VLAN Membership Page 4 3 3 8 2 VLAN Trunking between two 802 1Q aware switches The most cases are used for Uplink to other switches VLANs are separated at different switches but t...

Страница 180: ...Group Add two VLANs VLAN 2 and VLAN 3 Type 1 3 in Allowed Access VLANs column the 1 3 is including VLAN1 and 2 and 3 Figure 4 3 3 12 Add VLAN 2 and VLAN 3 2 Assign VLAN Member and PVID for each port VLAN 2 Port 1 Port 2 and Port 3 VLAN 3 Port 4 Port 5 and Port 6 VLAN 1 All other ports Port 7 Port 52 ...

Страница 181: ... both VLAN 2 and VLAN 3 at the VLAN Member configuration page 3 Define a VLAN 1 as a Public Area that overlapping with both VLAN 2 members and VLAN 3 members 4 Assign the VLAN Trunk Port to be the member of each VLAN which wants to be aggregated For this example add Port 7 to be VLAN 2 and VLAN 3 member port 5 Specify Port 7 to be the 802 1Q VLAN Trunk port and the Trunking port must be a Tagged p...

Страница 182: ...e Trunk port to the VLANs 4 3 3 8 3 Port Isolate The diagram shows how the Industrial Managed Switch handles isolated and promiscuous ports and the each PC is not able to access the isolated port of each other s PCs But they all need to access with the same server AP Printer This section will show you how to configure the port for the server that could be accessed by each isolated port Setup steps...

Страница 183: ...ayed for each MAC based VLAN entry To include a port in a MAC based VLAN check the box To remove or exclude the port from the MAC based VLAN make sure the box is unchecked By default no ports are members and all boxes are unchecked Adding a New MAC based VLAN Click Add New Entry to add a new MAC based VLAN entry An empty row is added to the table and the MAC based VLAN entry can be configured as n...

Страница 184: ...and assigning them to different ports The MAC based VLAN screen in Figure 4 3 3 17 appears Figure 4 3 3 17 IP Subnet based VLAN Membership Configuration page screenshot The page includes the following fields Object Description Delete To delete a MAC based VLAN entry check this box and press save IP Address Indicates the subnet s IP address Any of the subnet s host addresses can be also provided he...

Страница 185: ... changes Click to undo any changes made locally and revert to previously saved values Auto refresh Check this box to refresh the page automatically Automatic refresh occurs every 3 seconds Click to refresh the page immediately 4 3 3 11 Protocol based VLAN This page allows you to add new protocols to Group Name unique for each Group mapping entries as well as allow you to see and delete already map...

Страница 186: ...x where each pair xx in string is a hexadecimal value ranges from 0x00 0xff b PID If the OUI is hexadecimal 000000 the protocol ID is the Ethernet type EtherType field value for the protocol running on top of SNAP if the OUI is an OUI for a particular organization the protocol ID is a value assigned by that organization to the protocol running on top of SNAP In other words if value of OUI field is...

Страница 187: ...ntry check this box The entry will be deleted on the switch during the next Save Group Name A valid Group Name is a string of almost 16 characters which consists of a combination of alphabets a z or A Z and integers 0 9 no special character is allowed Whichever Group name you try map to a VLAN must be present in Protocol to Group mapping table and must not be preused by any other existing mapping ...

Страница 188: ...alues for a VLAN ID are 1 through 4095 The Delete button can be used to undo the addition of new entry Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values Auto refresh Check this box to refresh the page automatically Automatic refresh occurs every 3 seconds Click to refresh the page immediately ...

Страница 189: ...f the blocked links at the time of a primary link failure is also accomplished automatically without operator intervention This automatic network reconfiguration provides maximum uptime to network users However the concepts of the Spanning Tree Algorithm and protocol are a complicated and complex subject and must be fully researched and understood It is possible to cause serious degradation of the...

Страница 190: ...s in a switched network might not be ideal For instance connecting higher speed links to a port that has a higher number than the current root port can cause a root port change STP Port States The BPDUs take some time to pass through a network This propagation delay can result in topology changes where a port that transitioned directly from a Blocking state to a Forwarding state could create tempo...

Страница 191: ...ing state No packets except BPDUs are forwarded from or received by STP enabled ports until the forwarding state is enabled for that port 2 STP Parameters STP Operation Levels The Switch allows for two levels of operation the switch level and the port level The switch level forms a spanning tree consisting of links between one or more switches The port level constructs a spanning tree consisting o...

Страница 192: ...PDU for a port and ensures that the BPDU is discarded when its age exceeds the value of the maximum age timer 20 seconds Forward Delay Timer The amount time spent by a port in the learning and listening states waiting for a BPDU that may return the port to the blocking state 15 seconds The following are the user configurable STP parameters for the port or port group level Variable Description Defa...

Страница 193: ... listening state while moving from the blocking state to the forwarding state Observe the following formulas when setting the above parameters Max Age _ 2 x Forward Delay 1 second Max Age _ 2 x Hello Time 1 second Port Priority A Port Priority can be from 0 to 240 The lower the number the greater the probability the port will be chosen as the Root Port Port Cost A Port Cost can be set from 0 to 20...

Страница 194: ...sing the Priority setting or influencing STP to choose a particular port to block using the Port Priority and Port Cost settings is however relatively straight forward Figure 4 3 4 2 Before Applying the STA Rules In this example only the default STP values are used ...

Страница 195: ...stem Configuration This page allows you to configure STP system settings The settings are used by all STP Bridge instances in the Switch The Industrial Managed Switch support the following Spanning Tree protocols Compatiable Spanning Tree Protocol STP Provides a single path between end stations avoiding and eliminating loops Normal Rapid Spanning Tree Protocol RSTP Detects and uses of network topo...

Страница 196: ... bridge priority Lower numeric values have better priority The bridge priority plus the MSTI instance number concatenated with the 6 byte MAC address of the switch forms a Bridge Identifier For MSTP operation this is the priority of the CIST Otherwise this is the priority of the STP RSTP bridge Hello Time The interval between sending STP BPDU s Valid values are in the range 1 to 10 seconds default...

Страница 197: ... port explicitly configured as Edge will transmit and receive BPDUs Edge Port BPDU Guard Control whether a port explicitly configured as Edge will disable itself upon reception of a BPDU The port will enter the error disabled state and will be removed from the active topology Port Error Recovery Control whether a port in the error disabled state automatically will be enabled after a certain time I...

Страница 198: ...currently elected root bridge Root Port The switch port currently assigned the root port role Root Cost Root Path Cost For the Root Bridge this is zero For all other Bridges it is the sum of the Port Path Costs on the least cost path to the Root Bridge Topology Flag The current state of the Topology Change Flag for this Bridge instance Topology Change Last The time since last Topology Change occur...

Страница 199: ...User s Manual of IGS 5225 series 199 Figure 4 3 4 6 STP CIST Port Configuration Page Screenshot ...

Страница 200: ... as Root Port for the CIST or any MSTI even if it has the best spanning tree priority vector Such a port will be selected as an Alternate Port after the Root Port has been selected If set it can cause lack of spanning tree connectivity It can be set by a network administrator to prevent bridges external to a core region of the network influence the spanning tree active topology possibly because th...

Страница 201: ...nd the default path cost recommended by the IEEE 8021w standard exceeds 65 535 the default is set to 65 535 Port Type IEEE 802 1D 1998 IEEE 802 1w 2001 Ethernet 50 600 200 000 20 000 000 Fast Ethernet 10 60 20 000 2 000 000 Gigabit Ethernet 3 10 2 000 200 000 Table 4 3 4 1 Recommended STP Path Cost Range Port Type Link Type IEEE 802 1D 1998 IEEE 802 1w 2001 Ethernet Half Duplex Full Duplex Trunk 1...

Страница 202: ...age Screenshot The page includes the following fields Object Description MSTI The bridge instance The CIST is the default instance which is always active Priority Controls the bridge priority Lower numerical values have better priority The bridge priority plus the MSTI instance number concatenated with the 6 byte MAC address of the switch forms a Bridge Identifier Buttons Click to apply changes Cl...

Страница 203: ...tion Page Screenshot The page includes the following fields Configuration Identification Object Description Configuration Name The name identifying the VLAN to MSTI mapping Bridges must share the name and revision see below as well as the VLAN to MSTI mapping configuration in order to share spanning trees for MSTI s Intra region The name is at most 32 characters Configuration Revision The revision...

Страница 204: ...is page allows the user to inspect the current STP MSTI port configurations and possibly change them as well A MSTI port is a virtual port which is instantiated separately for each active CIST physical port for each MSTI instance configured and applicable for the port The MSTI instance must be selected before displaying actual MSTI port configuration options This page contains MSTI port settings f...

Страница 205: ...physical link speed using the 802 1D recommended values Using the Specific setting a user defined value can be entered The path cost is used when establishing the active topology of the network Lower path cost ports are chosen as forwarding ports in favor of higher path cost ports Valid values are in the range 1 to 200000000 Priority Controls the port priority This can be used to control priority ...

Страница 206: ...port number of the logical STP port CIST Role The current STP port role of the ICST port The port role can be one of the following values AlternatePort BackupPort RootPort DesignatedPort Disable CIST State The current STP port state of the CIST port The port state can be one of the following values Disabled Learning Forwarding Uptime The time since the bridge port was last initialized Buttons Clic...

Страница 207: ...on BPDU s received transmitted on the port RSTP The number of RSTP Configuration BPDU s received transmitted on the port STP The number of legacy STP Configuration BPDU s received transmitted on the port TCN The number of legacy Topology Change Notification BPDU s received transmitted on the port Discarded Unknown The number of unknown Spanning Tree BPDU s received and discarded on the port Discar...

Страница 208: ...routers that they will become members of a multicast group The Internet Group Management Protocol IGMP is used to communicate this information IGMP is also used to periodically check the multicast group for members that are no longer active In the case where there is more than one multicast router on a sub network one router is elected as the queried This router then keeps track of the membership ...

Страница 209: ...User s Manual of IGS 5225 series 209 Figure 4 3 5 2 Multicast Flooding Figure 4 3 5 3 IGMP Snooping Multicast Stream Control ...

Страница 210: ...ters to keep track of the membership of multicast groups on their respective sub networks The following outlines what is communicated between a multicast router and a multicast group member using IGMP A host sends an IGMP report to join a group A host will never send a report when it wants to leave a group for version 1 A host will send a leave report when it wants to leave a group for version 2 M...

Страница 211: ...f querying the LAN for group members It then propagates the service requests on to any upstream multicast switch router to ensure that it will continue to receive the multicast service 4 3 5 2 Profile Table This page provides IPMC Profile related configurations The IPMC profile is used to deploy the access control on IP multicast streams It is allowed to create at maximum 64 Profiles with at maxim...

Страница 212: ... Additional description which is composed of at maximum 64 alphabetic and numeric characters about the profile No blank or space characters are permitted as part of description Use _ or to separate the description sentence Rule When the profile is created click the edit button to enter the rule setting page of the designated profile Summary about the designated profile will be shown by clicking th...

Страница 213: ...he address entry table Each entry has the unique name which is composed of at maximum 16 alphabetic and numeric characters At least one alphabet must be present Start Address The starting IPv4 IPv6 Multicast Group Address that will be used as an address range End Address The ending IPv4 IPv6 Multicast Group Address that will be used as an address range Buttons Click to add new address range Specif...

Страница 214: ...takes effect only when IGMP Snooping is enabled When IGMP Snooping is disabled unregistered IPMCv4 traffic flooding is always active in spite of this setting IGMP SSM Range SSM Source Specific Multicast Range allows the SSM aware hosts and routers run the SSM service model for the groups in the address range Leave Proxy Enable Enable IGMP Leave Proxy This feature can be used to avoid forwarding un...

Страница 215: ...nnect other IGMP multicast servers directly on the non querier Industrial Managed Switch and don t want the multicast stream to be flooded by uplinking switch through the port that is connected to the IGMP querier Fast Leave Enable the fast leave on the port Throtting Enable to limit the number of multicast groups to which a switch port can belong Buttons Click to apply changes Click to undo any c...

Страница 216: ... the IP interface associated with this VLAN When the IPv4 management address is not set system uses the first available IPv4 management address Otherwise system uses a pre defined value By default this value will be 192 0 2 1 Compatibility Compatibility is maintained by hosts and routers taking appropriate actions depending on the versions of IGMP operating on hosts and routers within a network Th...

Страница 217: ... between repetitions of a host s initial report of membership in a group The allowed range is 0 to 31744 seconds default unsolicited report interval is 1 second Buttons Refreshes the displayed table starting from the VLAN input fields Updates the table starting from the first entry in the VLAN Table i e the entry with the lowest VLAN ID Updates the table starting with the entry after the last entr...

Страница 218: ...hen the maximum number of groups is reached on a port the switch can take one of two actions either deny or replace If the action is set to deny any new IGMP join reports will be dropped If the action is set to replace the switch randomly removes an existing group and replaces it with the new multicast group The IGMP Snooping Port Group Filtering Configuration screen in Figure 4 3 5 9 appears Figu...

Страница 219: ... Querier Received The number of Received Querier V1 Reports Received The number of Received V1 Reports V2 Reports Received The number of Received V2 Reports V3 Reports Received The number of Received V3 Reports V2 Leave Received The number of Received V2 Leave Router Port Display which ports act as router ports A router port is a port on the Ethernet switch that leads towards the Layer 3 multicast...

Страница 220: ...e beginning of the IGMP Group Table The Start from VLAN and group input fields allow the user to select the starting point in the IGMP Group Table The IGMP Groups Information screen in Figure 4 3 5 11 appears Figure 4 3 5 11 IGMP Snooping Groups Information Page Screenshot The page includes the following fields Object Description VLAN ID VLAN ID of the group Groups Group address of the group displ...

Страница 221: ... Enabled Enable the Global MLD Snooping Unregistered IPMCv6 Flooding enabled Enable unregistered IPMCv6 traffic flooding The flooding control takes effect only when MLD Snooping is enabled When MLD Snooping is disabled unregistered IPMCv6 traffic flooding is always active in spite of this setting MLD SSM Range SSM Source Specific Multicast Range allows the SSM aware hosts and routers run the SSM s...

Страница 222: ...groups to which a switch port can belong Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values 4 3 6 2 MLD Snooping VLAN Configuration Each page shows up to 99 entries from the VLAN table default being 20 selected through the entries per page input field When first visited the web page will show the first 20 entries from the beginning of the VL...

Страница 223: ...n General Queries sent by the Querier The allowed range is 1 to 31744 seconds default query interval is 125 seconds QRI Query Response Interval The Max Response Time used to calculate the Max Resp Code inserted into the periodic General Queries The allowed range is 0 to 31744 in tenths of seconds default query response interval is 100 in tenths of seconds 10 seconds LLQI LMQI for IGMP Last Member ...

Страница 224: ... profile can contain one or more or a range of multicast addresses but only one profile can be assigned to a port When enabled MLD join reports received on the port are checked against the filter profile If a requested multicast group is permitted the MLD join report is forwarded as normal If a requested multicast group is denied the MLD join report is dropped MLD throttling sets a maximum number ...

Страница 225: ... saved values 4 3 6 4 MLD Snooping Status This page provides MLD Snooping status The IGMP Snooping Status screen in Figure 4 3 6 4 appears Figure 4 3 6 4 MLD Snooping Status Page Screenshot The page includes the following fields Object Description VLAN ID The VLAN ID of the entry Querier Version Working Querier Version currently Host Version Working Host Version currently Querier Status Shows the ...

Страница 226: ...o be a router port Port Switch port number Status Indicates whether specific port is a router port or not Buttons Click to refresh the page immediately Clears all Statistics counters Auto refresh Automatic refresh occurs every 3 seconds 4 3 6 5 MLD Group Information Entries in the MLD Group Table are shown on this page The MLD Group Table is sorted first by VLAN ID and then by group Each page show...

Страница 227: ...e SSM Source Specific Multicast information This table is sorted first by VLAN ID then by group and then by Port Different source addresses belong to the same group are treated as single entry Each page shows up to 99 entries from the MLD SFM Information table default being 20 selected through the entries per page input field When first visited the web Page will show the first 20 entries from the ...

Страница 228: ...ype Indicates the Type It can be either Allow or Deny Hardware Filter Switch Indicates whether data plane destined to the specific group address from the source IPv6 address could be handled by chip or not Buttons Auto refresh Automatic refresh occurs every 3 seconds Refreshes the displayed table starting from the input fields Updates the table starting from the first entry in the MLD SFM Informat...

Страница 229: ...s an MVR receiver port When a subscriber selects a channel the set top box or PC sends an IGMP MLD report message to Switch A to join the appropriate multicast group address Uplink ports that send and receive multicast data to and from the multicast VLAN are called MVR source ports It is allowed to create at maximum 8 MVR VLANs with corresponding channel settings for each Multicast VLAN There will...

Страница 230: ...egistered Flooding control when the MVR group table is full Delete Check to delete the entry The designated entry will be deleted during the next save MVR VID Specify the Multicast VLAN ID Be Caution MVR source ports are not recommended to be overlapped with management VLAN ports MVR Name MVR Name is an optional attribute to indicate the name of the specific MVR VLAN Maximum length of the MVR VLAN...

Страница 231: ...report memberships on a receiver port before removing the port from multicast group membership The value is in units of tenths of a seconds The range is from 0 to 31744 The default LLQI is 5 tenths or one half second Interface Channel Setting When the MVR VLAN is created select the IPMC Profile as the channel filtering condition for the specific MVR VLAN Summary about the Interface Channel Profili...

Страница 232: ...ription VLAN ID The Multicast VLAN ID IGMP MLD Queries Received The number of Received Queries for IGMP and MLD respectively IGMP MLD Queries Transmitted The number of Transmitted Queries for IGMP and MLD respectively IGMPv1 Joins Received The number of Received IGMPv1 Joins IGMPv2 MLDv1 Reports Received The number of Received IGMPv2 Joins and MLDv1 Reports respectively IGMPv3 MLDv2 Reports Receiv...

Страница 233: ...ge Screenshot The page includes the following fields Object Description VLAN VLAN ID of the group Groups Group ID of the group displayed Port Members Ports under this group Buttons Auto refresh Automatic refresh occurs every 3 seconds Refreshes the displayed table starting from the input fields Updates the table starting from the first entry in the MVR Channels Groups Information Table Updates the...

Страница 234: ...p address of the group displayed Port Switch port number Mode Indicates the filtering mode maintained per VLAN ID port number Group Address basis It can be either Include or Exclude Source Address IP Address of the source Currently system limits the total number of IP source addresses for filtering to be 128 When there is no any source filtering address the text None is shown in the Source Address...

Страница 235: ...o store and maintain information gathered about the neighboring network nodes it discovers Link Layer Discovery Protocol Media Endpoint Discovery LLDP MED is an extension of LLDP intended for managing endpoint devices such as Voice over IP phones and network switches The LLDP MED TLVs advertise information such as network policy power inventory and device location details LLDP and LLDP MED informa...

Страница 236: ...plier 65536 Therefore the default TTL is 4 30 120 seconds Tx Delay If some configuration is changed e g the IP address a new LLDP frame is transmitted but the time between the LLDP frames will always be at least the value of Tx Delay seconds Tx Delay cannot be larger than 1 4 of the Tx Interval value Valid values are restricted to 1 8192 seconds This attribute must comply with the rule 4 Delay Int...

Страница 237: ...hown in the LLDP neighbours table CDP TLV Port ID is mapped to the LLDP Port ID field CDP TLV Version and Platform is mapped to the LLDP System Description field Both the CDP and LLDP support system capabilities but the CDP capabilities cover capabilities that are not part of the LLDP These capabilities are shown as others in the LLDP neighbours table If all ports have CDP awareness disabled the s...

Страница 238: ...cludes the following fields Object Description Local Port The port on which the LLDP frame was received Chassis ID The Chassis ID is the identification of the neighbor s LLDP frames Remote Port ID The Remote Port ID is the identification of the neighbor port Port Description Port Description is the port description advertised by the neighbor unit System Name System Name is the name advertised by t...

Страница 239: ...scovery by the network management This could for instance hold the neighbor s IP address Click to refresh the page immediately Auto refresh Check this box to refresh the page automatically Automatic refresh occurs every 3 seconds 4 3 8 4 LLDP MED Configuration This page allows you to configure the LLDP MED The LLDPMED Configuration screen in Figure 4 3 8 3 appears Figure 4 3 8 3 LLDPMED Configurat...

Страница 240: ...f the LLDPDU to start within a second when a new LLDP MED neighbour has been detected in order share LLDP MED information as fast as possible to new neighbours Because there is a risk of an LLDP frame being lost during transmission between neighbours it is recommended to repeat the fast start transmission multiple times to increase the possibility of the neighbours receiving the LLDP frame With Fa...

Страница 241: ... Point 5 Any device that supports the IEEE 802 1AB and MED extensions that can relay IEEE 802 frames via any method An Endpoint Device a LLDP MED Device that sits at the network edge and provides some aspect of IP communications service based on IEEE 802 LAN technology The main difference between a Network Connectivity Device and an Endpoint Device is that only an Endpoint Device can start the LLD...

Страница 242: ...iated vertical datum is the North American Vertical Datum of 1988 NAVD88 This datum pair is to be used when referencing locations on land not near tidal water which would use Datum NAD83 MLLW NAD83 MLLW North American Datum 1983 CRS Code 4269 Prime Meridian Name Greenwich The associated vertical datum is Mean Lower Low Water MLLW This datum pair is to be used when referencing locations on water se...

Страница 243: ...ce Emergency Call Service ELIN identifier data format is defined to carry the ELIN identifier as used during emergency call setup to a traditional CAMA or ISDN trunk based PSAP This format consists of a numerical digit string corresponding to the ELIN to be used for emergency calling Policies Network Policy Discovery enables the efficient discovery and diagnosis of mismatch issues with the VLAN co...

Страница 244: ...lete Check to delete the policy It will be deleted during the next save Policy ID ID for the policy This is auto generated and shall be used when selecting the polices that shall be mapped to the specific ports Application Type Intended use of the application types Voice for use by dedicated IP Telephony handsets and other similar appliances supporting interactive voice services These devices are ...

Страница 245: ...video media This application type should not be advertised if all the same network policies apply as those advertised in the Video Conferencing application policy Tag Tag indicating whether the specified application type is using a tagged or an untagged VLAN Untagged indicates that the device is using an untagged frame format and as such does not include a tag header as defined by IEEE 802 1Q 2003...

Страница 246: ...or port configuration Object Description Port The port number for which the configuration applies Policy ID The set of policies that shall apply for a given port The set of policies is selected by checkmarking the checkboxes that corresponds to the policies Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values 4 3 8 5 LLDP MED Neighbor This pag...

Страница 247: ...ample will any LLDP MED Endpoint Device claiming compliance as a Media Endpoint Class II also support all aspects of TIA 1057 applicable to Generic Endpoints Class I and any LLDP MED Endpoint Device claiming compliance as a Communication Device Class III will also support all aspects of TIA 1057 applicable to both Media Endpoints Class II and Generic Endpoints Class I LLDP MED Generic Endpoint Cla...

Страница 248: ...ifier including ECS E911 information embedded L2 switch support inventory management LLDP MED Capabilities LLDP MED Capabilities describes the neighbor unit s LLDP MED capabilities The possible capabilities are 1 LLDP MED capabilities 2 Network Policy 3 Location Identification 4 Extended Power via MDI PSE 5 Extended Power via MDI PD 6 Inventory 7 Reserved Application Type Application Type indicati...

Страница 249: ... an untagged VLAN Can be Tagged or Untagged Untagged The device is using an untagged frame format and as such does not include a tag header as defined by IEEE 802 1Q 2003 Tagged The device is using the IEEE 802 1Q tagged frame format VLAN ID VLAN ID is the VLAN identifier VID for the port as defined in IEEE 802 1Q 2003 A value of 1 through 4094 is used to define a valid VLAN ID A value of 0 Priori...

Страница 250: ... to refresh the page automatically Automatic refresh occurs every 3 seconds 4 3 8 6 Port Statistics This page provides an overview of all LLDP traffic Two types of counters are shown Global counters are counters that refer to the whole switch while local counters refers to counters for the currently selected switch The LLDP Statistics screen in Figure 4 3 8 5 appears Figure 4 3 8 5 LLDP Statistics...

Страница 251: ...eceived or transmitted Tx Frames The number of LLDP frames transmitted on the port Rx Frames The number of LLDP frames received on the port Rx Errors The number of received LLDP frames containing some kind of error Frames Discarded If an LLDP frame is received on a port and the switch s internal table has run full the LLDP frame is counted and discarded This situation is known as Too Many Neighbor...

Страница 252: ...ved and the Age Out counter is incremented Buttons Click to refresh the page immediately Clears the local counters All counters including global counters are cleared upon reboot Auto refresh Check this box to refresh the page automatically Automatic refresh occurs every 3 seconds ...

Страница 253: ...C address and switch ports The frames also contain a MAC address SMAC address which shows the MAC address of the equipment sending the frame The SMAC address is used by the switch to automatically update the MAC table with these dynamic MAC addresses Dynamic entries are removed from the MAC table if no frame with the corresponding SMAC address have been seen after a configurable age time 4 3 9 1 M...

Страница 254: ...AC is received Disable No learning is done Secure Only static MAC entries are learned all other frames are dropped Note Make sure that the link used for managing the switch is added to the Static Mac Table before changing to secure learning mode otherwise the management link is lost and can only be restored by using another non secure port or by connecting to the switch via the serial interface St...

Страница 255: ...ddress Table Status Page Screenshot Navigating the MAC Table Each page shows up to 999 entries from the MAC table default being 20 selected through the entries per page input field When first visited the web page will show the first 20 entries from the beginning of the MAC Table The first displayed will be the one with the lowest VLAN ID and the lowest MAC address found in the MAC Table The Start ...

Страница 256: ... The page includes the following fields Object Description Type Indicates whether the entry is a static or dynamic entry VLAN The VLAN ID of the entry MAC Address The MAC address of the entry Port Members The ports that are members of the entry Buttons Auto refresh Automatic refresh occurs every 3 seconds Refreshes the displayed table starting from the Start from MAC address and VLAN input fields ...

Страница 257: ... 3 10 1 Configuration This page allows the user to inspect the current Loop Protection configurations and possibly change them as well as screen in Figure 4 3 10 1 appears Figure 4 3 10 1 Loop Protection Configuration Page Screenshot The page includes the following fields General Settings Object Description Enable Loop Protection Controls whether loop protection is enabled as a whole Port Configur...

Страница 258: ...n Port Shutdown Port and Log or Log Only Tx Mode Controls whether the port is actively generating loop protection PDU s or whether it is just passively looking for looped PDU s Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values 4 3 10 2 Loop Protection Status This page displays the loop protection port status of the switch screen in Figure 4...

Страница 259: ... Transmit The currently configured port transmit mode Loops The number of loops detected on this port Status The current loop protection status of the port Loop Whether a loop is currently detected on the port Time of Last Loop The time of the last loop event detected Buttons Click to refresh the page immediately Auto refresh Check this box to enable an automatic refresh of the page at regular int...

Страница 260: ...nspect the current UDLDconfigurations and possibly change them as well as screen in Figure 4 3 11 1 appears Figure 4 3 11 1 UDLD Configuration Page Screenshot The page includes the following fields General Settings Object Description Port Port number of the switch UDLD Mode Configures the UDLD mode on a port Valid values are Disable Normal and Aggressive Default mode is Disable Disable In disabled...

Страница 261: ...dvertisement phase and are determined to be bidirectional The range is from 7 to 90 seconds Default value is 7 seconds Currently default time interval is supported due to lack of detailed information in RFC 5171 Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values 4 3 11 2 UDLD Status This page displays the UDLD status of the ports as well as ...

Страница 262: ...Aggressive is Enabled Device ID local The ID of Device Device Name local Name of the Device Bidirectional State The current state of the port Neighbour Status Object Description Port The current port of neighbour device Device ID The current ID of neighbour device Link Status The current link status of neighbour port Device Name Name of the Neighbour Device Buttons Click to refresh the page immedi...

Страница 263: ...al Settings Object Description Enable GVRP globally The GVRP feature is globally enabled by setting the check mark in the checkbox named Enable GVRP and pressing the Save button GVRP protocol timers Join time is a value in the range of 1 20cs i e in units of one hundredth of a second The default value is 20cs Leave time is a value in the range of 60 300cs i e in units of one hundredth of a second ...

Страница 264: ... configured globally the protocol operation will be the same as well as screen in Figure 4 3 12 2 appears Figure 4 3 11 2 GVRP Port Configuration Page Screenshot The page includes the following fields General Settings Object Description Port The logical port that is to be configured Mode Mode can be either Disabled or GVRP enabled These values turn the GVRP feature off or on respectively for the p...

Страница 265: ...User s Manual of IGS 5225 series 265 Click to undo any changes made locally and revert to previously saved values ...

Страница 266: ...tocol for Networked Measurement and Control Systems and published in 2002 In 2008 a revised standard IEEE 588 2008 was released This new version also known as PTP Version 2 improves accuracy precision and robustness but is not backwards compatible with the original 2002 version IEEE 1588 is designed to fill a niche not well served by either of the two dominant protocols NTP and GPS IEEE 1588 is de...

Страница 267: ...tes the Instance of a particular Clock Instance 0 3 Click on the Clock Instance number to edit the Clock details HW Domain Indicates the HW clock domain used by the clock Device Type Indicates the Type of the Clock Instance There are five Device Types P2p Transp clock s Device Type is Peer to Peer Transparent Clock E2e Transp clock s Device Type is End to End Transparent Clock Profile Indicates th...

Страница 268: ...User s Manual of IGS 5225 series 268 The page includes the following fields Clock Type and Profile Object Description Clock Instance Indicates the instance number of a particular Clock Instance 0 3 ...

Страница 269: ...rofile clicking the Apply button will reset configured values to profile defaults Filter Type The PTP filter type determines should match the operating conditions of the network and the PTP profile Port Enable and Configuration Object Description Port Enable Set check mark for each port configured for this Clock Instance Configuration Click Ports Configuration to edit the port data set for the por...

Страница 270: ...e interval for issuing Delay_Req messages for the port in E2e mode This value is announced from the master to the slave in an announce message The value is reflected in the MDR field in the Slave The interval for issuing Pdelay_Req messages for the port in P2P mode Range is 7 to 5 Note The interpretation of this parameter has changed from release 2 40 In earlier versions the value was interpreted ...

Страница 271: ...ts PTP default or LinkLocal Not Slave TRUE indicates that this interface cannot enter slave mode Local Prio 1 255 priority used in the 8275 1 BMCA 2 Step Flag Option to override the 2 step option on port level IEEE 802 1AS specific parameters are only available when the 802 1AS profile is selected ...

Страница 272: ...ledLogVariance for clock as defined in IEEE Std 1588 The valid range is 0 to 65535 Pri1 Clock priority 1 0 255 used by the BMC master select algorithm Pri2 Clock priority 2 0 255 used by the BMC master select algorithm Local Prio Priority 1 255 used in the 8275 1 BMCA Local Clock Current Time Object Description PTP Time Shows the actual PTP time with nanosecond resolution Clock Adjustment Method S...

Страница 273: ...rent Port Identity Clock identity for the parent clock if the local clock is not a slave the value is the clocks own id Port Port Id for the parent master port P Stat Parents Stats always false Var It is observed parent offset scaled log variance Rate Observed Parent Clock Phase Change Rate i e the slave clocks rate offset compared to the master unit ns per s Grand Master ID Clock identity for the...

Страница 274: ...requests 2 Step Flag Static member defined by the system true if two step Sync events and Pdelay_Resp events are used Ports The total number of physical ports in the node Clock Identity It shows unique clock identifier Dom Clock domain 0 127 Clock Quality The clock quality is determined by the system and holds 3 parts Clock Class Clock Accuracy and OffsetScaledLog Variance as defined in IEEE1588 T...

Страница 275: ... for the Time Source parameter are 16 0x10 ATOMIC_CLOCK 32 0x20 GPS 48 0x30 TERRESTRIAL_RADIO 64 0x40 PTP 80 0x50 NTP 96 0x60 HAND_SET 144 0x90 OTHER 160 0xA0 INTERNAL_OSCILLATOR Object Description UtcOffset In systems whose epoch is UTC it is the offset between TAI and UTC Valid When true the value of currentUtcOffset is valid leap59 When true this field indicates that last minute of the current ...

Страница 276: ...ap Pending When true there is a leap event pending at the date defined by leapDate Leap Date The date for which the leap will occur at the end of its last minute Date is represented as the number of days after 1970 01 01 the latter represented as 0 Leap Type The type of leap event i e leap59 or leap61 ...

Страница 277: ...alization of the management system Rx and Tx Unique Error Event Notification A count of the number of unique Event OAMPDUs received and transmitted on this interface Event Notifications may be sent in duplicate to increase the probability of successfully being received given the possibility that a frame may be lost in transit Duplicate Event Notification transmissions are counted by Duplicate Even...

Страница 278: ...the number of Variable Response OAMPDUs received and transmitted on this interface Rx and Tx Org Specific PDU s A count of the number of Organization Specific OAMPDUs transmitted on this interface Rx and Tx Unsupported Codes A count of the number of OAMPDUs transmitted on this interface with an unsupported op code Rx and Tx Link fault PDU s A count of the number of Link fault PDU s received and tr...

Страница 279: ... following fields General Settings Object Description PDU Permission This field is available only for the Local DTE It displays the current permission rules set for the local DTE Possible values are Link fault Receive only Information exchange only ANY Discovery State Displays the current state of the discovery process Possible states are Fault state Active state Passive state SEND_LOCAL_REMOTE_ST...

Страница 280: ...ing the device discards all the non OAMPDU s Parser State When in forwarding state Device is forwarding non OAMPDUs to higher sublayer When in loopback Device is looping back non OAMPDUs to the lower sublayer When in discarding state Device is discarding non OAMPDUs Organizational Unique Identification 24 bit Organizationally Unique Identifier of the vendor PDU Revision It indicates the current re...

Страница 281: ...cates the total number of events occurred at the remote end Frame Error Event Timestamp This two octet field indicates the time reference when the event was generated in terms of 100 ms intervals Frame error event window This two octet field indicates the duration of the period in terms of 100 ms intervals 1 The default value is one second 2 The lower bound is one second 3 The upper bound is one m...

Страница 282: ... Period Event TLVs that have been generated since the OAM sublayer was reset Symbol Period Error Event Timestamp This two octet field indicates the time reference when the event was generated in terms of 100 ms intervals Symbol Period Error Event Window This eight octet field indicates the number of symbols in the period Symbol Period Error Event Threshold This eight octet field indicates the numb...

Страница 283: ...ayer was reset Total Error Frame Seconds Summary Events This four octet field indicates the number of Errored Frame Seconds Summary Event TLVs that have been generated since the OAM sublayer was reset encoded as a 32bit unsigned integer Buttons Click to refresh the page Click to clear the data 4 3 14 4 Port Settings This page allows the user to inspect the current Link OAM port configurations and ...

Страница 284: ...rocess Passive DTE s react to the initiation of the Discovery process by the remote DTE This eliminates the possibility of passive to passive links Passive DTE s shall not send Variable Request or Loopback Control OAMPDUs Loopback Support Controls whether the loopback support is enabled for the switch port Link OAM remote loopback can be used for fault localization and link performance testing Ena...

Страница 285: ...nt counts the number of errored frames detected during the specified period The period is specified by a time interval Window in order of 1 sec This event is generated if the errored frame count is equal to or greater than the specified threshold for that period Period Threshold Errored frames are frames that had transmission errors as detected at the Media Access Control sublayer Error Window for...

Страница 286: ...cond is a one second interval wherein at least one frame error was detected Errored frames are frames that had transmission errors as detected at the Media Access Control sublayer Error Window for Seconds Summary Event must be an integer value between 10 900 and its default value is 60 Whereas Error Threshold must be between 0 65535 and its default value is 1 Buttons Click to save changes Click to...

Страница 287: ... report the log information to network management system when occurring fault event and use remote loopback function to detect the link in necessary instance Figure 4 3 14 7 Typical OAM application topology The configuration of link oam is quite simple Step 1 Set CE as Passive OAM mode Step 2 Set PE as Active OAM mode Step 3 Check OAM status and statistic from CE device ...

Страница 288: ...User s Manual of IGS 5225 series 288 ...

Страница 289: ...sifier classifies the traffic on the network Traffic classifications are determined by protocol application source destination and so on You can create and modify classifications The Switch then groups classified traffic in order to schedule them with the appropriate service level DiffServ Code Point DSCP is the traffic prioritization bits within an IP header that are encoded by certain applicatio...

Страница 290: ...default CoS value All frames are classified to a CoS There is a one to one mapping between CoS queue and priority A CoS of 0 zero has the lowest priority The classified CoS can be overruled by a QCL entry Note If the default CoS has been dynamically changed then the actual default CoS is shown in parentheses after the configured default CoS DPL Controls the default DPL value All frames are classif...

Страница 291: ... DEI for tagged frames Click on the mode in order to configure the mode and or mapping Note This setting has no effect if the port is VLAN unaware Tagged frames received on VLAN unaware ports are always classified to the default CoS and DPL DSCP Based Click to Enable DSCP Based QoS Ingress Port Classification WRED Group Controls the WRED group membership Ingress Map Controls the Ingress Map select...

Страница 292: ...ueue policer This value is restricted to 25 13128147 when Unit is kbps and 1 13128 when Unit is Mbps The rate is internally rounded up to the nearest value supported by the queue policer This field is only shown if at least one of the queue policers are enabled Unit Controls the unit of measure for the queue policer rate as kbps or Mbps This field is only shown if at least one of the queue policer...

Страница 293: ...ars Figure 4 4 1 3 Port Tag Remarking Page Screenshot The page includes the following fields Object Description Port The logical port for the settings contained in the same row Click on the port number in order to configure tag remarking Mode Shows the tag remarking mode for this port Classified Use classified PCP DEI values Default Use default PCP DEI values Mapped Use mapped versions of CoS and ...

Страница 294: ...ence Level for which the configuration below applies Enable Controls whether RED is enabled for this entry Min Controls the lower RED fill level threshold If the queue filling level is below this threshold the drop probability is zero This value is restricted to 0 100 Max Controls the upper RED drop probability or fill level threshold for frames marked with Drop Precedence Level 0 yellow frames Th...

Страница 295: ...rts The statistics screen in Figure 4 4 1 5 appears Figure 4 4 1 5 QoS Statistics Page Screenshot The page includes the following fields Object Description Port The logical port for the settings contained in the same row Qn There are 8 QoS queues per port Q0 is the lowest priority queue Rx Tx The number of received and transmitted packets per queue Buttons Click to refresh the page immediately Cle...

Страница 296: ...ntrols whether the policer is enabled on this switch port Rate Controls the rate for the policer This value is restricted to 100 1000000 when the Unit is kbps or fps and it is restricted to 1 3300 when the Unit is Mbps or kfps The default value is 500 Unit Controls the unit of measure for the policer rate as kbps Mbps fps or kfps The default value is kbps Flow Control If flow control is enabled an...

Страница 297: ... Scheduler and Shapers for a specific port are configured on this page The QoS Egress Port Schedule and Shaper screen in Figure 4 4 2 2 appears Figure 4 4 2 2 QoS Egress Port Schedule and Shapers Page Screenshot The page includes the following fields Object Description ...

Страница 298: ...meter is only shown if Scheduler Mode is set to Weighted The default value is 17 Queue Scheduler Percent Shows the weight in percent for this queue This parameter is only shown if Scheduler Mode is set to Weighted Port Shaper Enable Controls whether the port shaper is enabled for this switch port Port Shaper Rate Controls the rate for the port shaper This value is restricted to 100 1000000 when th...

Страница 299: ...page includes the following fields Object Description Schedule Mode Controls whether the scheduler mode is Strict Priority or Weighted on this switch port Queue Shaper Enable Controls whether the queue shaper is enabled for this queue on this switch port Queue Shaper Rate Controls the rate for the queue shaper ...

Страница 300: ...ed The default value is 17 Queue Scheduler Percent Shows the weight in percent for this queue This parameter is only shown if Scheduler Mode is set to Weighted Port Shaper Enable Controls whether the port shaper is enabled for this switch port Port Shaper Rate Controls the rate for the port shaper This value is restricted to 100 1000000 when the Unit is kbps and it is restricted to 1 13200 when th...

Страница 301: ...screen in Figure 4 4 3 1 appears Figure 4 4 3 1 Storm Control Configuration Page Screenshot The page includes the following fields Object Description Port The port number for which the configuration below applies Enable Controls whether the storm control is enabled on this switch port Rate Controls the rate for the storm control The default value is 500 This value is restricted to 100 1000000 when...

Страница 302: ...ettings Ingress In Ingress settings you can change ingress translation and classification settings for individual ports There are two configuration parameters available in Ingress Translate Classify Translate To Enable the Ingress Translation click the checkbox Classify Classification for a port have 4 different values Disable No Ingress DSCP Classification DSCP 0 Classify if incoming or translate...

Страница 303: ...value Depending on the DP level of the frame the remapped DSCP value is either taken from the DSCP Translation Egress Remap DP0 table or from the DSCP Translation Egress Remap DP1 table Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values 4 4 4 2 DSCP based QoS This page allows you to configure the basic QoS DSCP based QoS Ingress Classificati...

Страница 304: ...o a specific QoS class and Drop Precedence Level Frames with untrusted DSCP values are treated as a non IP frame QoS Class QoS Class value can be any of 0 7 DPL Drop Precedence Level 0 1 4 4 4 3 DSCP Translation This page allows you to configure the basic QoS DSCP Translation settings for all switches DSCP translation can be done in Ingress or Egress The DSCP Translation screen in Figure 4 4 4 3 a...

Страница 305: ...sify Translate DSCP at Ingress side can be translated to any of 0 63 DSCP values Classify Click to enable Classification at Ingress side Egress There is following configurable parameter for Egress side Remap Remap DP Select the DSCP value from select menu to which you want to remap DSCP value ranges form 0 to 63 Buttons Click to apply changes Click to undo any changes made locally and revert to pr...

Страница 306: ...on QoS Class Available QoS Class value ranges from 0 to 7 QoS Class 0 7 can be mapped to followed parameters DPL Actual Drop Precedence Level DSCP Select DSCP value 0 63 from DSCP menu to map DSCP to corresponding QoS Class and DPL value Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values ...

Страница 307: ... type of Destination MAC addresses for incoming frame Possible values are Any All types of Destination MAC addresses are allowed Unicast Only Unicast MAC addresses are allowed Multicast Only Multicast MAC addresses are allowed Broadcast Only Broadcast MAC addresses are allowed The default value is Any SMAC Displays the OUI field of Source MAC address i e first three octet byte of MAC address Tag T...

Страница 308: ...ly IPV6 frames Action Indicates the classification action taken on ingress frame if parameters configured are matched with the frame s content There are three action fields Class DPL and DSCP Class Classified QoS class DPL Classified Drop Precedence Level DSCP Classified DSCP value Modification Buttons You can modify each QCE in the table using the following buttons Inserts a new QCE before the cu...

Страница 309: ...type possible values are unicast UC multicast MC broadcast BC or Any SMAC Source MAC address 24 MS bits OUI or Any Tag Value of Tag field can be Any Untag or Tag VID Valid value of VLAN ID can be any value in the range 1 4095 or Any user can enter either a specific value or a range of VIDs PCP Priority Code Point Valid value PCP are specific 0 1 2 3 4 5 6 7 or range 0 1 2 3 4 5 6 7 0 3 4 7 or Any ...

Страница 310: ... z w where x y z and w are decimal numbers between 0 and 255 When Mask is converted to a 32 bit binary string and read from left to right all bits following the first zero must also be zero DSCP Diffserv Code Point value DSCP It can be specific value range of value or Any DSCP values are in the range 0 63 including BE CS1 CS7 EF or AF11 AF43 IP Fragment IPv4 frame fragmented option yes no any Spor...

Страница 311: ... QCL Status This page shows the QCL status by different QCL users Each row describes the QCE that is defined It is a conflict if a specific QCE is not applied to the hardware due to hardware limitations The maximum number of QCEs is 256 on each switch The QoS Control List Status screen in Figure 4 4 5 3 appears Figure 4 4 5 3 QoS Control List Status Page Screenshot The page includes the following ...

Страница 312: ...ions It may happen that resources required to add a QCE may not be available in that case it shows conflict status as Yes otherwise it is always No Please note that conflict can be resolved by releasing the H W resources required to add QCL entry on pressing Resolve Conflict button Buttons Select the QCL status from this drop down list Auto refresh Check this box to refresh the page automatically ...

Страница 313: ... Enabled Enable Voice VLAN mode operation Disabled Disable Voice VLAN mode operation VLAN ID Indicates the Voice VLAN ID It should be a unique VLAN ID in the system and cannot equal each port PVID It is conflict configuration if the value equal management VID MVR VID PVID etc The allowed range is 1 to 4095 Aging Time Indicates the Voice VLAN secure learning age time The allowed range is 10 to 1000...

Страница 314: ...urity Indicates the Voice VLAN port security mode When the function is enabled all non telephone MAC address in Voice VLAN will be blocked 10 seconds Possible port modes are Enabled Enable Voice VLAN security mode operation Disabled Disable Voice VLAN security mode operation Port Discovery Protocol Indicates the Voice VLAN port discovery protocol It will only work when auto detect mode is enabled ...

Страница 315: ...escription Delete Check to delete the entry It will be deleted during the next save Telephony OUI An telephony OUI address is a globally unique identifier assigned to a vendor by IEEE It must be 6 characters long and the input format is xx xx xx x is a hexadecimal digit Description The description of OUI address Normally it describes which vendor telephony device it belongs to The allowed string l...

Страница 316: ...des are Enabled Enable access management mode operation Disabled Disable access management mode operation Delete Check to delete the entry It will be deleted during the next apply VLAN ID Indicates the VLAN ID for the access management entry Start IP address Indicates the start IP address for the access management entry End IP address Indicates the end IP address for the access management entry HT...

Страница 317: ...hot The page includes the following fields Object Description Interface The interface that allowed remote host can access the switch Receive Packets The received packets number from the interface under access management mode is enabled Allow Packets The allowed packets number from the interface under access management mode is enabled Discard Packets The discarded packets number from the interface ...

Страница 318: ...address to be set in the forwarding state all enabled user modules must unanimously agree on allowing the MAC address to forward If only one chooses to block it it will be blocked until that user module decides otherwise The status page is divided into two sections one with a legend of user modules and one with the actual port status The SSH Configuration screen in Figure 4 5 1 3 appears Figure 4 ...

Страница 319: ...rect mode operation It only significant if HTTPS mode Enabled is selected Automatically redirects web browser to an HTTPS connection when both HTTPS mode and Automatic Redirect are enabled or redirects web browser to an HTTP connection when both are disabled Possible modes are Enabled Enable HTTPS redirect mode operation Disabled Disable HTTPS redirect mode operation Certificate Maintain The opera...

Страница 320: ...P HTTPS TFTP and FTP The URL format is protocol username password host port path file_name For example tftp 10 10 10 10 new_image_path new_image dat http username password 10 10 10 10 80 new_image_path new_image dat A valid file name is a text string drawn from alphabet A Za z digits 0 9 dot hyphen under score _ The maximum length is 63 and hyphen must not be first character The file name content ...

Страница 321: ...n authentication is complete the RADIUS server sends a special packet containing a success or failure indication Besides forwarding this decision to the supplicant the switch uses it to open up or block traffic on the switch port connected to the supplicant Overview of MAC based Authentication Unlike 802 1X MAC based authentication is not a standard but merely a best practices method adopted by th...

Страница 322: ...ss to RADIUS aware or TACACS aware devices on the network An authentication server contains a database of multiple user name password pairs with associated privilege levels for each user that requires management access to the Industrial Managed Switch Understanding IEEE 802 1X Port based Authentication The IEEE 802 1X standard defines a client server based access control and authentication protoco...

Страница 323: ... server model in which secure authentication information is exchanged between the RADIUS server and one or more RADIUS clients Switch 802 1X device controls the physical access to the network based on the authentication status of the client The switch acts as an intermediary proxy between the client and the authentication server requesting identity information from the client verifying that inform...

Страница 324: ...identity If 802 1X is not enabled or supported on the network access device any EAPOL frames from the client are dropped If the client does not receive an EAP request identity frame after three attempts to start authentication the client transmits frames as if the port is in the authorized state A port in the authorized state effectively means that the client has been successfully authenticated Wh...

Страница 325: ...egins sending frames as if the port is in the authorized state If the client is successfully authenticated receives an Accept frame from the authentication server the port state changes to authorized and all frames from the authenticated client are allowed through the port If the authentication fails the port remains in the unauthorized state but authentication can be retried If the authentication...

Страница 326: ...ser is authenticated when he logs into theswitch via one of the management client interfaces The table has one row for each client type and a number of columns which are Object Description Client The management client for which the configuration below applies Methods Method can be set to one of the following values no Authentication is disabled and login is not possible local Use the local user da...

Страница 327: ...ACS server s for command authorization If all remote servers are offline the user is granted access to CLI commands according to his privilege leve Cmd Lvl Authorize all commands with a privilege level higher than or equal to this level Valid values are in the range 0 to 15 Cfg Cmd Also authorize configuration commands Accounting Method Configuration The accounting section allows you to configure ...

Страница 328: ... Exec Enable exec login accounting Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values 4 5 2 2 RADIUS This page allows you to configure the RADIUS Servers The RADIUS Configuration screen in Figure 4 5 2 4 appears Figure 4 5 2 4 RADIUS Server Configuration Page Screenshot ...

Страница 329: ...o a value greater than 0 zero will enable this feature but only if more than one server has been configured Key The secret key up to 63 characters long shared between the RADIUS server and the switch NAS IP Address The IPv4 address to be used as attribute 4 in RADIUS Access Request packets If this field is left blank the IP address of the outgoing interface is used NAS IPv6 Address The IPv6 addres...

Страница 330: ...l setting overrides the global key Leaving it blank will use the global key Buttons Click to add a new RADIUS server An empty row is added to the table and the RADIUS server can be configured as needed Up to 5 servers are supported Click to undo the addition of the new server Click to apply changes Click to undo any changes made locally and revert to previously saved values 4 5 2 3 TACACS This pag...

Страница 331: ...r not When Yes is selected for the option you can change the secret key up to 63 characters long shared between the TACACS server and the switch Server Configuration The table has one row for each TACACS server and a number of columns which are Object Description Delete To delete a TACACS server entry check this box The entry will be deleted during the next Save Hostname The IP address or hostname...

Страница 332: ...r authentication Authentication Status The current status of the server This field takes one of the following values Disabled The server is disabled Not Ready The server is enabled but IP communication is not yet up and running Ready The server is enabled IP communication is up and running and the RADIUS module is ready to accept access attempts Dead X seconds left Access attempts were made to thi...

Страница 333: ...ver has temporarily been disabled but will get re enabled when the dead time expires The number of seconds left before this occurs is displayed in parentheses This state is only reachable when more than one server is enabled Buttons Auto refresh Check this box to refresh the page automatically Automatic refresh occurs every 3 seconds Click to refresh the page immediately 4 5 2 5 RADIUS Details Thi...

Страница 334: ... in RFC4668 RADIUS Authentication Client MIB Use the server select box to switch between the backend servers to show details for Object Description Packet Counters RADIUS authentication server packet counter There are seven receive and four transmit counters Direction Name RFC4668 Name Description Rx Access Accepts radiusAuthClientExtA ccessAccepts The number of RADIUS Access Accept packets valid ...

Страница 335: ...packets with an invalid length Bad authenticators or Message Authenticator attributes or unknown types are not included as malformed access responses Rx Bad Authenticators radiusAuthClientExtB adAuthenticators The number of RADIUS Access Response packets containing invalid authenticators or Message Authenticator attributes received from the server Rx Unknown Types radiusAuthClientExtU nknownTypes ...

Страница 336: ...esponse This variable is incremented when an Access Request is sent and decremented due to receipt of an Access Accept Access Reject Access Challenge timeout or retransmission Tx Timeouts radiusAuthClientExtT imeouts The number of authentication timeouts to the server After a timeout the client may retry to the same server send to a different server or give up A retry to the same server is counted...

Страница 337: ...sAuthClient ExtRoundTripTim e The time interval measured in milliseconds between the most recent Access Reply Access Challenge and the Access Request that matched it from the RADIUS authentication server The granularity of this measurement is 100 ms A value of 0 ms indicates that there hasn t been round trip communication with the server yet RADIUS Accounting Statistics The statistics map closely ...

Страница 338: ...x Packets Dropped radiusAccClientExt PacketsDropped The number of RADIUS packets that were received from the server on the accounting port and dropped for some other reason Tx Requests radiusAccClientExt Requests The number of RADIUS packets sent to the server This does not include retransmissions Tx Retransmissions radiusAccClientExt Retransmissions The number of RADIUS packets retransmitted to t...

Страница 339: ...llowing values Disabled The selected server is disabled Not Ready The server is enabled but IP communication is not yet up and running Ready The server is enabled IP communication is up and running and the RADIUS module is ready to accept accounting attempts Dead X seconds left Accounting attempts were made to this server but it did not reply within the configured timeout The server has temporaril...

Страница 340: ... trip communication with the server yet Buttons Auto refresh Check this box to refresh the page automatically Automatic refresh occurs every 3 seconds Click to refresh the page immediately Clears the counters for the selected server The Pending Requests counter will not be cleared by this operation ...

Страница 341: ...ration Security AAA Page The IEEE802 1X standard defines port based operation but non standard variants overcome security limitations as shall be explored below MAC based authentication allows for authentication of more than one user on the same port and doesn t require the user to have special 802 1X supplicant software installed on his system The switch uses the user s MAC address to authenticat...

Страница 342: ... Enabled checkbox is checked Valid values are in the range 1 to 3600 seconds EAPOL Timeout Determines the time for retransmission of Request Identity EAPOL frames Valid values are in the range 1 to 65535 seconds This has no effect for MAC based ports Aging Period This setting applies to the following modes i e modes using the Port Security functionality to secure MAC addresses Single 802 1X Multi ...

Страница 343: ...fic coming from a successfully authenticated supplicant is assigned on the switch The RADIUS server must be configured to transmit special RADIUS attributes to take advantage of this feature The RADIUS Assigned QoS Enabled checkbox provides a quick way to globally enable disable RADIUS server assigned QoS Class functionality When checked the individual ports ditto setting determines whether RADIUS...

Страница 344: ...witch transmits an EAPOL Request Identity frame without response before considering entering the Guest VLAN is adjusted with this setting The value can only be changed if the Guest VLAN option is globally enabled Valid values are in the range 1 255 Allow Guest VLAN if EAPOL Seen The switch remembers if an EAPOL frame has been received on the port for the life time of the port Once the switch consi...

Страница 345: ...entication and the most recently received frame from a new client for MAC based authentication Last ID The user name supplicant identity carried in the most recently received Response Identity EAPOL frame for EAPOL based authentication and the source MAC address from the most recently received frame from a new client for MAC based authentication QoS Class QoS Class assigned to the port by the RADI...

Страница 346: ...work Access Statistics Page Screenshot The page includes the following fields Port State Object Description Admin State The port s current administrative state Refer to NAS Admin State for a description of possible values Port State The current state of the port Refer to NAS Port State for a description of the individual states QoS Class The QoS class assigned by the RADIUS server The field is bla...

Страница 347: ...mes that have been received by the switch Rx Responses dot1xAuthEapolRespFr amesRx The number of valid EAPOL response frames other than Response Identity frames that have been received by the switch Rx Start dot1xAuthEapolStartFra mesRx The number of EAPOL Start frames that have been received by the switch Rx Logoff dot1xAuthEapolLogoffFr amesRx The number of valid EAPOL Logoff frames that have be...

Страница 348: ...ave been transmitted by the switch Backend Server Counters These backend RADIUS frame counters are available for the following administrative states Port based 802 1X Single 802 1X Multi 802 1X MAC based Auth Direction Name IEEE Name Description Rx Access Challenges dot1xAuthBackendAcce ssChallenges 802 1X based Counts the number of times that the switch receives the first request from the backend...

Страница 349: ...tes that the supplicant client has successfully authenticated to the backend server Rx Auth Failures dot1xAuthBackendAuth Fails 802 1X and MAC based Counts the number of times that the switch receives a failure message This indicates that the supplicant client has not authenticated to the backend server Tx Responses dot1xAuthBackendResp onses 802 1X based Counts the number of times that the switch...

Страница 350: ... 1X Single 802 1X Multi 802 1X MAC based Auth Name IEEE Name Description MAC Address dot1xAuthLastEapolF rameSource The MAC address of the last supplicant client VLAN ID The VLAN ID on which the last frame from the last supplicant client was received Version dot1xAuthLastEapolF rameVersion 802 1X based The protocol version number carried in the most recently received EAPOL frame MAC based Not appl...

Страница 351: ...f users on the port If this number is exceeded an action is taken depending on violation mode The violation mode can be one of the four different described below The Port Security configuration consists of two sections a global and a per port The Port Limit Control Configuration screen in Figure 4 5 4 1 appears Figure 4 5 4 1 Port Limit Control Configuration Overview Page Screenshot The page inclu...

Страница 352: ...itch starts looking for frames from the end host and if such frames are not seen within the next Aging Period the end host is assumed to be disconnected and the corresponding resources are freed on the switch Hold Time The hold time measured in seconds is used to determine how long a MAC address is held in the MAC table if it has been found to violate the limit Valid range is between 10 and 100000...

Страница 353: ...be shut down This implies that all secured MAC addresses be removed from the port and no new addresses be learned There are three ways to re open the port 1 In the Configuration Ports page s Configured column first disable the port then restore the original mode 2 Make a Port Security configuration change on the port 3 Boot the switch Violation Limit The maximum number of MAC addresses that can be...

Страница 354: ...ity on a port the port is set up for software based learning In this mode frames from unknown MAC addresses are passed on to the port security module which in turn asks all user modules whether to allow this new MAC address to forward or block it For a MAC address to be set in the forwarding state all enabled user modules must unanimously agree on allowing the MAC address to forward If only one ch...

Страница 355: ... that may request Port Security services Object Description User Module Name The full name of a module that may request Port Security services Abbr A one letter abbreviation of the user module This is used in the Users column in the port status table Port Status The table has one row for each port on the selected switch in the switch and a number of columns which are Object Description ...

Страница 356: ... Disabled No user modules are currently using the Port Security service Ready The Port Security service is in use by at least one user module and is awaiting frames from unknown MAC addresses to arrive Limit Reached The Port Security service is enabled by at least the Limit Control user module and that module has indicated that the limit is reached and no more MAC addresses should be taken in Shut...

Страница 357: ...enshot The page includes the following fields Object Description MAC Address VLAN ID The MAC address and VLAN ID that is seen on this port If no MAC addresses are learned a single row stating No MAC addresses attached is displayed State Indicates whether the corresponding MAC address is blocked or forwarding In the blocked state it will not be allowed to transmit or receive traffic Time of Additio...

Страница 358: ...r Access Control Entry It describes access permission associated with a particular ACE ID There are three ACE frame types Ethernet Type ARP and IPv4 and two ACE actions permit and deny The ACE also contains many detailed different parameter options that are available for individual application 4 5 5 1 Access Control List Status This page shows the ACL status by different ACL users Each row describ...

Страница 359: ...ACE to CPU Counter The counter indicates the number of times the ACE was hit by a frame Conflict Indicates the hardware status of the specific ACE The specific ACE is not applied to the hardware due to hardware limitations Buttons Auto refresh Check this box to refresh the page automatically Automatic refresh occurs every 3 seconds Click to refresh the page 4 5 5 2 Access Control List Configuratio...

Страница 360: ... IPv6 The ACE will match all IPv6 standard frames Action Indicates the forwarding action of the ACE Permit Frames matching the ACE may be forwarded and learned Deny Frames matching the ACE are dropped Filter Frames matching the ACE are filtered Rate Limiter Indicates the rate limiter number of the ACE The allowed range is 1 to 16 When Disabled is displayed the rate limiter operation is disabled Po...

Страница 361: ...ade locally will be undone Click to clear the counters Click to remove all ACEs 4 5 5 3 ACE Configuration Configure an ACE Access Control Entry on this page An ACE consists of several parameters These parameters vary according to the frame type that you select First select the ingress port for the ACE and then select the frame type Different parameter options are displayed depending on the frame t...

Страница 362: ...E 802 3 describes the value of Length Type Field specifications to be greater than or equal to 1536 decimal equal to 0600 hexadecimal ARP Only ARP frames can match this ACE Notice the ARP frames won t match the ACE with Ethernet type IPv4 Only IPv4 frames can match this ACE Notice the IPv4 frames won t match the ACE with Ethernet type IPv6 Only IPv6 frames can match this ACE Notice the IPv6 frames...

Страница 363: ...hen the frame type is Ethernet Type or ARP Specify the source MAC filter for this ACE Any No SMAC filter is specified SMAC filter status is don t care Specific If you want to filter a specific source MAC address with this ACE choose this value A field for entering an SMAC value appears SMAC Value When Specific is selected for the SMAC filter you can enter a specific source MAC address The legal fo...

Страница 364: ... hits this ACE matches this tag priority The allowed number range is 0 to 7 The value Any means that no tag priority is specified tag priority is don t care ARP Parameters The ARP parameters can be configured when Frame Type ARP is selected Object Description ARP RARP Specify the available ARP RARP opcode OP flag for this ACE Any No ARP RARP OP flag is specified OP is don t care ARP Frame must hav...

Страница 365: ...arget IP filter you can enter a specific target IP mask in dotted decimal notation ARP Sender MAC Match Specify whether frames can hit the action according to their sender hardware address field SHA settings 0 ARP frames where SHA is not equal to the SMAC address 1 ARP frames where SHA is equal to the SMAC address Any Any value is allowed don t care RARP Target MAC Match Specify whether frames can...

Страница 366: ... appear These fields are explained later in this help file TCP Select TCP to filter IPv4 TCP protocol frames Extra fields for defining TCP parameters will appear These fields are explained later in this help file IP Protocol Value When Specific is selected for the IP protocol value you can enter a specific value The allowed range is 0 to 255 A frame that hits this ACE matches this IP protocol valu...

Страница 367: ... a specific SIP mask in dotted decimal notation DIP Filter Specify the destination IP filter for this ACE Any No destination IP filter is specified Destination IP filter is don t care Host Destination IP filter is set to Host Specify the destination IP address in the DIP Address field that appears Network Destination IP filter is set to Network Specify the destination IP address and destination IP...

Страница 368: ...field only supported last 32 bits for IPv6 address SIP BitMask When Specific is selected for the source IPv6 filter you can enter a specific SIPv6 mask The field only supported last 32 bits for IPv6 address Notice the usage of bitmask if the binary bit value is 0 it means this bit is don t care The real matched pattern is sipv6_address sipv6_bitmask last 32 bits For example if the SIPv6 address is...

Страница 369: ...urce value A field for entering a TCP UDP source value appears Range If you want to filter a specific TCP UDP source range filter with this ACE you can enter a specific TCP UDP source range value A field for entering a TCP UDP source value appears TCP UDP Source No When Specific is selected for the TCP UDP source filter you can enter a specific TCP UDP source value The allowed range is 0 to 65535 ...

Страница 370: ...SYN field is set must not be able to match this entry 1 TCP frames where the SYN field is set must be able to match this entry Any Any value is allowed don t care TCP RST Specify the TCP Reset the connection RST value for this ACE 0 TCP frames where the RST field is set must not be able to match this entry 1 TCP frames where the RST field is set must be able to match this entry Any Any value is al...

Страница 371: ... Type Value When Specific is selected for the EtherType filter you can enter a specific EtherType value The allowed range is 0x600 to 0xFFFF but excluding 0x800 IPv4 0x806 ARP and 0x86DD IPv6 A frame that hits this ACE matches this EtherType value Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values Return to the previous page 4 5 5 4 ACL Port...

Страница 372: ...es received on the port are mirrored Disabled Frames received on the port are not mirrored The default value is Disabled Logging Specify the logging operation of this port The allowed values are Enabled Frames received on the port are stored in the System Log Disabled Frames received on the port are not logged The default value is Disabled Please note that the System Log memory size and logging ra...

Страница 373: ...CL Rate Limiters Configure the rate limiter for the ACL of the switch The ACL Rate Limiter Configuration screen in Figure 4 5 5 5 appears Figure 4 5 5 5 ACL Rate Limiter Configuration Page Screenshot The page includes the following fields Object Description Rate Limiter ID The rate limiter ID for the settings contained in the same row Rate pps The allowed values are 0 3276700 in pps or 0 100 200 3...

Страница 374: ...S 5225 series 374 Unit Specify the rate unit The allowed values are pps packets per second kbps Kbits per second Buttons Click to apply changes Click to undo any changes made locally and revert to previously saved values ...

Страница 375: ...d to block intruder on the untrusted ports of DUT when it tries to intervene by injecting a bogus DHCP reply packet to a legitimate conversation between the DHCP client and server 4 5 6 1 DHCP Snooping Configuration Configure DHCP Snooping on this page in Figure 4 5 6 1 appears ...

Страница 376: ...ng mode operation the request DHCP messages will be forwarded to trusted ports and only allowed reply packets from trusted ports Disabled Disable DHCP snooping mode operation Port Mode Configuration Indicates the DHCP snooping port mode Possible port modes are Trusted Configures the port as trusted sources of the DHCP message Untrusted Configures the port as untrusted sources of the DHCP message B...

Страница 377: ...escription MAC Address User MAC address of the entry VLAN ID VLAN ID in which the DHCP traffic is permitted Source Port Switch Port Number for which the entries are displayed IP Address User IP address of the entry IP Subnet Mask User IP subnet mask of the entry DHCP Server Address DHCP Server address of the entry Buttons Auto refresh Check this box to refresh the page automatically Automatic refr...

Страница 378: ...een in Figure 4 5 7 1 appears Figure 4 5 7 1 IP Source Guard Configuration Screen Page Screenshot The page includes the following fields Object Description Mode of IP Source Guard Configuration Enable the Global IP Source Guard or disable the Global IP Source Guard All configured ACEs will be lost when the mode is enabled Port Mode Configuration Specify IP Source Guard is enabled on which ports On...

Страница 379: ... Source Guard Table The Static IP Source Guard Table screen in Figure 4 5 7 2 appears Figure 4 5 7 2 Static IP Source Guard Table Screen Page Screenshot The page includes the following fields Object Description Delete Check to delete the entry It will be deleted during the next save Port The logical port for the settings VLAN ID The VLAN ID for the settings IP Address Allowed Source IP address MAC...

Страница 380: ...umber for which the entries are displayed VLAN ID VLAN ID in which the IP traffic is permitted IP Address User IP address of the entry MAC Address Source MAC address Buttons Auto refresh Check this box to refresh the page automatically Automatic refresh occurs every 3 seconds Refreshes the displayed table starting from the input fields Flushes all dynamic entries Updates the table starting from th...

Страница 381: ...ction related configuration The ARP Inspection Configuration screen in Figure 4 5 8 1 appears Figure 4 5 8 1 ARP Inspection Configuration Screen Page Screenshot The page includes the following fields Object Description Mode of ARP Inspection Configuration Enable the Global ARP Inspection or disable the Global ARP Inspection Port Mode Configuration Specify ARP Inspection is enabled on which ports O...

Страница 382: ...able check VLAN operation Only the Global Mode and Port Mode on a given port are enabled and the setting of Check VLAN is disabled the log type of ARP Inspection will refer to the port setting There are four log types and possible types are None Log nothing Deny Log denied entries Permit Log permitted entries ALL Log all entries Buttons Click to translate all dynamic entries to static entries Clic...

Страница 383: ... then by VLAN ID then by MAC address and then by IP address The Dynamic ARP Inspection Table screen in Figure 5 8 3 appears Figure 5 8 3 Dynamic ARP Inspection Table Screenshot Navigating the ARP Inspection Table Each page shows up to 99 entries from the Dynamic ARP Inspection table default being 20 selected through the entries per Page input field When first visited the web page will show the fir...

Страница 384: ...tatus for this particular port VLAN ID The VLAN ID of the entry MAC Address The MAC address of the entry IP Address The IP address of the entry Buttons Auto refresh Check this box to refresh the page automatically Automatic refresh occurs every 3 seconds Refreshes the displayed table starting from the Start from MAC address and VLAN input fields Flushes all dynamic entries Updates the table starti...

Страница 385: ...ed IP phone system IP Camera system AP group for the enterprise For instance 4 8 cameras APs can be easily installed around the corners of the company for surveillance demands or a wireless roaming environment in the office can be built Without the power socket limitation the IGS 5225 PoE Switch Series makes the installation of cameras or WLAN AP easier and more efficient Figure 4 6 1 1 Power over...

Страница 386: ...ut It frees the device deployment from restrictions due to power outlet locations which eliminate the costs for additional AC wiring and reduces the installation time 3 25 watts High Power PoE Splitter High PoE Splitter split the PoE 56V DC over the Ethernet cable into 24 12V DC power output It frees the device deployment from restrictions due to power outlet locations which eliminate the costs fo...

Страница 387: ...ange of maximum power used by the PD Class Description 0 Default 0 44 to 12 95 watts Classification unimplement 1 Optional 0 44 to 3 84 watts Very low power 2 Optional 3 84 to 6 49 watts Low power 3 Optional 6 49 to 12 95 watts or to 15 4 watts Mid power 4 Valid for Type 2 802 3at devices not allowed for 802 3af devices 12 95 to 25 5 watts High power 5 Valid for Type 3 802 3bt devices 40 watts 6 5...

Страница 388: ... is managed according to the following user definable parameters maximum available power ports priority maximum allowable power per port Reserved Power determined by There are two modes for configuring how the ports PDs may reserve power and when to shut down ports Classification mode In this mode each port automatically determines how much power to reserve according to the class the connected PD ...

Страница 389: ... each port and system will reserve PoE power to PD PoE Legacy Mode In the legacy mode the IEEE method will be tried first and if it fails to discover a valid PD the legacy capacitance measurement with a large capacitance value will be used to detect a legacy PD This mode is used to support legacy devices The default mode is IEEE mode Enabled legacy mode could damage non PD devices Power Supply Bud...

Страница 390: ...e profile mode Possible profiles are Profile1 Profile2 Profile3 Profile4 Priority The Priority represents PoE ports priority There are three levels of power priority named Low High and Critical The priority is used in case the total power consumption is over the total power budget In this case the port with the lowest priority will be turned off and power for the port of higher priority will be of...

Страница 391: ...r Output Mode Pins 1 2 3 6 Pins 4 5 7 8 30W End span PoE Power Output Mode Pins 1 2 3 6 30W Mid span PoE Power Output Mode Pins 4 5 7 8 This page allows user to set up PoE port attributes The page includes the following fields Object Description PoE Mode There are three modes for PoE mode Enable enable PoE function Disable disable PoE function Schedule enable PoE function in schedule mode Schedule...

Страница 392: ...7 8 pair 4 in both T568A and T568B provide the return Maximum power is 90 60 watts UPOE Set inline mode to PoH Power over HD BASE T 4 pair PoE PSE Pins 1 2 pair 2 in both T568A and T568B form one side of the DC supply and pins 3 6 pair 3 in both T568A and T568B provide the return Pins 4 5 pair 1 in both T568A and T568B form one side of the DC supply and pins 7 8 pair 4 in both T568A and T568B prov...

Страница 393: ...ed Power Allocation The Powe Allocation column shows per port maximum value of PoE power Once power overload is detected the port will automatically shut down and continue to be in detection mode until Pad s power consumption is lower than the power limit value 95W UPOE PoH 90W 802 3bt PoE 60W Force Power 36W End span PoE 36W Mid span PoE Buttons Click to apply changes Click to undo any changes ma...

Страница 394: ...gure 4 6 1 4 appears Figure 4 6 1 4 PoE Status Screenshot The page includes the following fields Object Description Sequential Power On Displays the current sequential power on mode PoE Voltage Displays the current PoE voltage System Power Budget Displays the maximum PoE power budget Operation Mode Displays the current PoE operation mode Current Budget Displays the current maximum PoE budget ...

Страница 395: ...D attached to the port as established by the classification process Class 0 is the default for PDs The PD is powered based on PoE Class level if system is working in Classification mode A PD will return Class to 0 to 4 in accordance with the maximum power draw as specified by Table 4 6 1 1 Power Used W The Power Used shows how much power the PD currently is using Current Used mA The Power Used sho...

Страница 396: ...g The page includes the following fields Object Description Sequential Power up Option Allows user to enable or disable Sequential Power up function Sequential Power up Interval Allows user to configure the PoE Port Start Up interval time Sequential Power up Port Option There are two modes for Starting Up the PoE Port By Port The PoE Port will start up by following Port number By Priority The PoE ...

Страница 397: ...n on the Earth the Managed PoE switch can effectively control the power supply besides its capability of giving high watts power The PoE schedule function helps you to enable or disable PoE power feeding for each PoE port during specified time intervals and it is a powerful function to help SMBs or Enterprises save power and budget Scheduled Power Recycling The Managed PoE switch allows each of th...

Страница 398: ...s the following fields Object Description Profile Set the schedule profile mode Possible profiles are Profile1 Profile2 Profile3 Profile4 Week Day Allows user to set week day for defining PoE function should be enabled on the day Start Hour Allows user to set what hour does PoE function enables Start Min Allows user to set what minute does PoE function enables End Hour Allows user to set what hour...

Страница 399: ...nt Reboot Only Allows user to reboot PoE function by PoE reboot schedule Please be noticed that if administrator enable this function PoE schedule will not to set time to profile This function is just for PoE port reset at an indicated time Reboot Hour Allows user to set what hour PoE reboots This function only for PoE reboot schedule Reboot Min Allows user to set what minute PoE reboots This func...

Страница 400: ...r and bring the PD back to work It will greatly enhance the reliability and reduces administrator management burden This page provides you how to configure PD Alive Check The screen in Figure 4 6 1 7 appears Figure 4 6 1 7 PD Alive Check Configuration Screenshot The page includes the following fields Object Description Mode Allows user to enable or disable per port PD Alive Check function As defau...

Страница 401: ...ch offers 3 actions as following PD Reboot It menas system will reset the PoE port that connected the PD Reboot Alarm It means system will reset the PoE port and issue an alarm message via Syslog SMTP Alarm It means system will issue an alarm message via Syslog SMTP Reboot Time 30 180s This column allows user to set the PoE PD device rebooting time due to there are so many kind of PoE PD device on...

Страница 402: ...e screen in Figure 4 6 1 8 appears Figure 4 6 1 8 LLDP PoE Neighbor Screenshot Please note that administrator has to enable LLDP port from LLDP configuration please refer to the following example The screen in Figure 4 6 1 9 appears To enable LLDP function from port1 to port3 administrator has to plug a PD that supports PoE LLDP function and then administrator is going to see the PoE information o...

Страница 403: ...abled with Ring function and two ports should be assigned as the member ports in the ERPS Only one switch in the Ring group would be set as the RPL owner switch that one port would be blocked called owner port and PRL neighbor switch has one port that one port would be blocked called neighbor port that connect to owner port directly and this link is called the Ring Protection Link or RPL Each swit...

Страница 404: ...elds Object Description Delete This box is used to mark a MEP for deletion in next Save operation Instance The ID of the MEP Click on the ID of a MEP to enter the configuration page Domain Port This is a MEP in the Port Domain Flow Instance is a Port Esp Future use Evc This is a MEP in the EVC Domain Flow Instance is a EVC Mpls Future use Mode MEP This is a Maintenance Entity End Point MIP This is...

Страница 405: ...this MEP Flow Instance The MEP is related to this flow See Domain Tagged VID Port MEP An outer C S tag depending on VLAN Port Type is added with this VID Entering 0 means no TAG added This MAC The MAC of this MEP can be used by other MEP when unicast is selected Info only Alarm There is an active alarm on the MEP Buttons Click to add a new MEP entry Click to refresh the page immediately Click to s...

Страница 406: ...the user to inspect and configure the current MEP Instantly as the screen in Figure 4 7 1 2 appears Figure 4 7 1 2 Detail MEP configuration page screenshot The page includes the following fields Instant Data Object Description Instance The ID of the MEP Domain See help on MEP to create Web ...

Страница 407: ...Domain Name depending on Format See Format MEG Id This is either ITU UMC MEG ID value 7 13 or IEEE Short MA Name depending on Format See Format In case of ITU ICC format this can be max 7 char If only 6 char is entered the MEG ID value 13 will become NULL MEP Id This value will become the transmitted two byte CCM MEP ID Tagged VID This value will be the VID of a TAG added to the OAM PDU cLevel Fau...

Страница 408: ...l be used when unicast is selected with this peer MEP Also this MAC is used to create HW checking of receiving CCM PDU LOC detection from this MEP cLOC Fault Cause indicating that no CCM has been received in 3 5 periods from this peer MEP cRDI Fault Cause indicating that a CCM is received with Remote Defect Indication from this peer MEP cPeriod Fault Cause indicating that a CCM is received with a ...

Страница 409: ...owing uses The transmission rate of the CCM PDU Fault Cause cLOC is declared if no CCM PDU has been received within 3 5 periods see cLOC Fault Cause cPeriod is declared if a CCM PDU has been received with different period see cPeriod Selecting 300f sec or 100f sec will configure HW based CCM if possible Selecting other frame rates will configure SW based CCM In case of enable of Continuity Check a...

Страница 410: ...APS this is for ELPS Last Octet This is the last octet of the transmitted and expected RAPS multi cast MAC In G 8031 03 2010 a RAPS multi cast MAC is defined as 01 19 A7 00 00 XX In current standard the value for this last octet is 01 and the usage of other values is for further study Buttons Click to go to Fault Management page Click to go to Performance Monitor page TLV Configuration Configurati...

Страница 411: ...field Value The last received value in the OS TLV Value field Last RX OS TLV was received in the last received CCM PDU CC Port Status Value The last received value in the PS TLV Value field CC Port Status Last RX PS TLV was received in the last received CCM PDU CC Interface Status Value The last received value in the IS TLV Value field CC Interface Status Last RX IS TLV was received in the last re...

Страница 412: ... The Port 0 Signal Fail reporting MEP Port 1 SF MEP The Port 1 Signal Fail reporting MEP As only one SF MEP is associated with interconnected sub ring without virtual channel it is configured as 0 for such ring instances 0 in this field indicates that no Port 1 SF MEP is associated with this instance Port 0 APS MEP The Port 0 APS PDU handling MEP Port 1 APS MEP The Port 1 APS PDU handling MEP As o...

Страница 413: ... 413 Alarm There is an active alarm on the ERPS Buttons Click to add a new Protection group entry Click to refresh the page immediately Click to save changes Click to undo any changes made locally and revert to previously saved values ...

Страница 414: ...t The page includes the following fields Instant Data Object Description ERPS ID The ID of the Protection group Port 0 See help on ERPS to create Web Port 1 See help on ERPS to create Web Port 0 SF MEP See help on ERPS to create Web Port 1 SF MEP See help on ERPS to create Web Port 0 APS MEP See help on ERPS to create Web Port 1 APS MEP See help on ERPS to create Web Ring Type Type of Protecting r...

Страница 415: ...otocol Version v1 or v2 Revertive In Revertive mode after the conditions causing a protection switch has cleared the traffic channel is restored to the working transport entity i e blocked on the RPL In Non Revertive mode the traffic channel continues to use the RPL if it is not failed after a protection switch condition has cleared VLAN Config VLAN configuration of the Protection Group Click on t...

Страница 416: ...R timeout in milliseconds RPL Un blocked APS is received on the working flow No APS Received RAPS PDU is not received from the other end Port 0 Block Status Block status for Port 0 Both traffic and R APS block status R APS channel is never blocked on sub rings without virtual channel Port 1 Block Status Block status for Port 1 Both traffic and R APS block status R APS channel is never blocked on s...

Страница 417: ...d page screenshot The page includes the following fields Object Description All Switch Numbers Set all the switch numbers for the ring group The default number is 3 and maximum number is 30 Number ID The switch where you are requesting ERPS Port Configures the port number for the MEP VLAN Set the ERPS VLAN Buttons Click to configure ERPS Click to save changes Click to show the ring topology ...

Страница 418: ...g Switch ID Port MEP ID RPL Type VLAN Group Switch 1 Port 1 1 None 3001 Port 2 2 Owner 3001 Switch 2 Port 1 4 None 3001 Port 2 3 Neighbor 3001 Switch 3 Port 1 6 None 3001 Port 2 5 None 3001 Table 4 7 1 1 ERPS Configuration Table The scenario described as follows 1 Disable DHCP client and set proper static IP for Switches 1 2 3 In this example switch 1 is 192 168 0 101 switch 2 is 192 168 0 102 and...

Страница 419: ...1 Set ERPS Configuration on Switch 2 Connect PC to switch 2 directly don t connect to port 1 2 Logging on to the Switch 2 and click Ring Ring Wizard Set All Switch Number 3 and Number ID 2 click Next button to set the ERPS configuration for Switch 2 Set MEP3 Port2 MEP4 Port1 and VLAN ID 3001 click Set button to save the ERPS configuration for Switch 2 Set ERPS Configuration on Switch 3 Connect PC ...

Страница 420: ... 3 To avoid loop please don t connect Switches 1 2 3 together in the ring topology before configuring the end of ERPS Follow the configuration or ERPS wizard to connect Switches 1 2 and 3 together to establish ERPS application MEP2 MEP3 Switch1 Port2 Switch2 Port2 MEP4 MEP5 Switch2 Port1 Switch3 Port2 MEP1 MEP6 Switch1 Port1 Switch3 Port1 ...

Страница 421: ...itating the development and use of a global open standard for the interface of physical IP based security products or in other words to create a standard for how IP products within video surveillance and other physical security areas can communicate with each other The ONVIF specification aims to achieve interoperability between network video products regardless of manufacturer ...

Страница 422: ...ct the starting point in the ONVIF Devices Table Clicking the Refresh button will update the displayed table which matches the ONVIF Devices Table The page includes the following fields Object Description Port This is the logical port number for this row Device Type Entry of the ONVIF Device s Type Device Name Entry of the ONVIF Device s Name Manufacturer Entry of the ONVIF Device s Manufacturer M...

Страница 423: ... 5225 series 423 Buttons Click to search the connecting ONVIF devices Click to apply changes Click to undo any changes made locally and revert to previously saved values Auto search Automatic search occurs every 60 seconds ...

Страница 424: ... following fields Object Description Login Optional Allows for filling in one set of User name and Password Port This is the logical port number for this row Status Red The ONVIF device is not active Green The ONVIF device is active Entry of the ONVIF Device s Type Device Type Entry of the ONVIF Device s Type Device Name Entry of the ONVIF Device s Name Manufacturer Entry of the ONVIF Device s Man...

Страница 425: ...ttons Click to refresh the page immediately Auto refresh Check this box to refresh the page automatically Automatic refresh occurs every 30 seconds To update the ONVIF device entries press to go to the first page To update the ONVIF device entries press to go to the front page To update the ONVIF device entries press to go to the next page To update the ONVIF device entries press to go to the fina...

Страница 426: ...d Edit Page Screenshot The page includes the following fields Object Description MAP Select Allows to select Map1 2 3 for uploading Map Description Indicates the map s description File size Shows Map s size File Allows to choose and browse specific map file from laptop device Preview Map The Preview use of Map Current Map The Current use of Map Buttons Click to choose the file Click to upload the ...

Страница 427: ...planning the ONVIF devices with the uploaded e Map It can select the ONVIF devices from Device List and it also can modify the e Map s Zoom and Scale as the screen in Figure 4 8 1 4 appears Figure 4 8 1 4 Floor Map Page Screenshot The page includes the following fields Object Description ...

Страница 428: ...l of IGS 5225 series 428 Summary Information Shows the number of Online and Offline ONVIF cameras Map Control Allows to choose Location of Map1 2 3 and zoom in out of Map Device List Allows to select ONVIF devices ...

Страница 429: ...irmware Upgrade Page Screenshot To open Firmware Upgrade screen perform the following 1 Click Maintenance Web Firmware Upgrade 2 The Firmware Upgrade screen is displayed as in Figure 4 9 1 1 3 Click the button of the Main page the system would pop up the file selection menu to choose firmware 4 Select on the firmware and then click The Software Upload Progress would show the file with upload statu...

Страница 430: ...e 4 9 1 4 Finish Saving Page Screenshot 4 9 1 3 Configuration Download The switch stores its configuration in a number of text files in CLI format The files are either virtual RAM based or stored in flash on the switch There are three system files running config A virtual file that represents the currently active configuration on the switch This file is volatile startup config The startup configur...

Страница 431: ...Page Screenshot If the destination is running config the file will be applied to the switch configuration This can be done in two ways Replace mode The current configuration is fully replaced with the configuration in the uploaded file Merge mode The uploaded file is merged into running config If the file system is full i e contains the three system files mentioned above plus two other files it is...

Страница 432: ...isting configuration with that of the selected file 4 9 1 6 Configuration Delete The Configure Delete page allows to delete the startup config and default config files which are stored in FLASH If this is done and the switch is rebooted without a prior Save operation this effectively resets the switch to default configuration Please refer to Figure 4 9 1 8 shown below Figure 4 9 1 8 Configuration ...

Страница 433: ...tute an error Figure 4 9 1 9 Software Image Selection Page Screenshot The page includes the following fields Object Description Image The flash index name of the firmware image The name of primary preferred image is image the alternate image is named image bk Version The version of the firmware image Date The date when the firmware was produced Buttons Click to use the alternate image This button ...

Страница 434: ...he front panel for about 10 seconds After the device is rebooted you can log in the management Web interface within the same subnet of 192 168 0 xx 4 9 1 9 Configuration Download The Reboot page enables the device to be rebooted from a remote location Once the Reboot button is pressed user has to re log in the Web interface about 60 seconds later the System Reboot screen in Figure 4 9 1 11 appears...

Страница 435: ...g and IPv6 ping allow you to issue ICMP PING packets to troubleshoot IP connectivity issues The Industrial Managed Switch transmit ICMP packets and the sequence number and roundtrip time are displayed upon reception of a reply Cable Diagnostics The Cable Diagnostics performing tests on copper cables These functions have the ability to identify the cable length and operating conditions and to isola...

Страница 436: ...size of the ICMP packet Values range from 2 bytes to 1452 bytes Be sure the target IP Address is within the same network subnet of the Industrial Managed Switch or you had setup the correct gateway IP address Buttons Click to transmit ICMP packets Click to re start diagnostics with ping 4 9 2 2 IPv6 Ping This page allows you to issue ICMPv6 ping packets to troubleshoot IPv6 connectivity issues Aft...

Страница 437: ...to transmit ICMP packets Click to re start diagnostics with ping 4 9 2 3 Remote IP Ping Test This page allows you to issue ICMP ping packets to troubleshoot IP connectivity issues on special port After you press Test 5 ICMP packets are transmitted and the sequence number and roundtrip time are displayed upon reception of a reply The page refreshes automatically until responses to all packets are r...

Страница 438: ...ick to apply changes Click to undo any changes made locally and revert to previously saved values Clears the IP Address and the result of ping value 4 9 2 4 Cable Diagnostics This page is used for running the Cable Diagnostics Press to run the diagnostics This will take approximately 5 seconds If all ports are selected this can take approximately 15 seconds When completed the page refreshes automa...

Страница 439: ... 9 2 4 VeriPHY Cable Diagnostics Page Screenshot The page includes the following fields Object Description Port The port where you are requesting Cable Diagnostics Description Display per port description Cable Status Port Port number Pair The status of the cable pair OK Correctly terminated pair Open Open pair Short Shorted pair Short A Cross pair short to pair A Short B Cross pair short to pair ...

Страница 440: ...bnormal cross pair coupling with pair B Cross C Abnormal cross pair coupling with pair C Cross D Abnormal cross pair coupling with pair D Length The length in meters of the cable pair The resolution is 3 meters Buttons Click to run the diagnostics ...

Страница 441: ...t comes in then this packet will be filtered thereby increasing the network throughput and availability 5 4 Store and Forward Store and Forward is one type of packet forwarding techniques A Store and Forward Industrial Managed Switch stores the incoming frame in an internal buffer and do the complete error checking before transmission Therefore no error packets occur it is the best choice when a n...

Страница 442: ...the best possible bandwidth when a connection is established with another network device usually at Power On or Reset This is done by detecting the modes and speeds both connected devices are capable of Both 10BASE T and 100BASE TX devices can connect with the port in either half or full duplex mode 1000BASE T can be only connected in full duplex mode ...

Страница 443: ...eck the full duplex status of the Industrial Managed Switch If the Industrial Managed Switch is set to full duplex and the partner is set to half duplex then the performance will be poor Please also check the in out rate of the port Why the Switch doesn t connect to the network Solution 1 Check the LNK ACT LED on the switch 2 Try another port on the Switch 3 Make sure the cable is installed proper...

Страница 444: ...ulty 2 Check that the AC power cord is inserted correctly 3 Replace the power cord if the cord is inserted correctly check that the AC power source is working by connecting a different device in place of the switch 4 If that device works refer to the next step 5 If that device does not work check the AC power ...

Страница 445: ...0Mbps 10 100BASE TX When connecting your Switch to another Fast Ethernet switch a bridge or a hub a straight or crossover cable is necessary Each port of the Switch supports auto MDI MDI X detection That means you can directly connect the Switch to any Ethernet devices without making a crossover cable The following table and diagram show the standard RJ45 receptacle connector and their pin assignm...

Страница 446: ...hite Blue 6 Green 7 White Brown 8 Brown 1 White Amber 2 Amber 3 White Green 4 Blue 5 White Blue 6 Green 7 White Brown 8 Brown SIDE 2 Crossover Cable SIDE 1 SIDE 2 SIDE 1 1 White Amber 2 Amber 3 White Green 4 Blue 5 White Blue 6 Green 7 White Brown 8 Brown 1 White Green 2 Green 3 White Amber 4 Blue 5 White Blue 6 Amber 7 White Brown 8 Brown SIDE 2 Figure A 1 Straight through and Crossover Cable Ple...

Страница 447: ...page shows the ACEs in a prioritized way highest top to lowest bottom Default the table is empty An ingress frame will only get a hit on one ACE even though there are more matching ACEs The first matching ACE will take action permit deny on that frame and a counter associated with that ACE is incremented An ACE can be associated with a policy 1 ingress port or any ingress port the whole switch If ...

Страница 448: ...Aggregation Link Aggregation ARP ARP is an acronym for Address Resolution Protocol It is a protocol that used to convert an IP address into a physical address such as an Ethernet address ARP allows a host to communicate with other hosts when only the Internet address of its neighbors is known Before using IP the host sends a broadcast ARP request containing the Internet address of the desired dest...

Страница 449: ...ies network administration because the software keeps track of IP addresses rather than requiring an administrator to manage the task This means that a new computer can be added to a network without the hassle of manually assigning it a unique IP address DHCP Relay DHCP Relay is used to forward and to transfer DHCP messages between the clients and the server when they are not on the same subnet do...

Страница 450: ...ne accounts banking etc or other services that rely on the affected computer Dotted Decimal Notation Dotted Decimal Notation refers to a method of writing IP addresses using decimal numbers and dots as separators between octets An IPv4 dotted decimal address has the form x y z w where x y z and w are decimal numbers between 0 and 255 DSCP DSCP is an acronym for Differentiated Services Code Point I...

Страница 451: ...Web browser is an HTTP client sending requests to server machines An HTTP client initiates a request by establishing a Transmission Control Protocol TCP connection to a particular port on a remote host port 80 by default An HTTP server listening on that port waits for the client to send a request message HTTPS HTTPS is an acronym for Hypertext Transfer Protocol over Secure Socket Layer It is used ...

Страница 452: ...version 3 POP3 but offers additional and more complex features For example the IMAP4 protocol leaves your email messages on the server rather than downloading them to your computer If you wish to remove your messages from the server you must use your mail client to generate local folders copy messages to your local hard drive and then delete and expunge the messages from the server IP IP is an acr...

Страница 453: ...rd Management Information Base MIB making it possible for the information to be accessed by a Network Management System NMS using a management protocol such as the Simple Network Management Protocol SNMP LLDP MED LLDP MED is an extension of IEEE 802 1ab and is defined by the telecommunication industry association TIA 1057 LOC LOC is an acronym for Loss Of Connectivity and is detected by a MEP and ...

Страница 454: ...on for using MVR is to save bandwidth by preventing duplicate multicast streams being sent in the core network instead the stream s are received on the MVR VLAN and forwarded to the VLANs where hosts have requested it them Wikipedia N NAS NAS is an acronym for Network Access Server The NAS is meant to act as a gateway to guard access to a protected source A client connects to the NAS and the NAS c...

Страница 455: ...bally unique identifier assigned to a vendor by IEEE You can determine which vendor a device belongs to according to the OUI address which forms the first 24 bits of an MAC address P PCP PCP is an acronym for Priority Code Point It is a 3 bit field storing the priority level for the 802 1Q frame It is also known as User Priority PD PD is an acronym for Powered Device In a PoE system the power is d...

Страница 456: ... prevalent Internet standard protocols for e mail retrieval Virtually all modern e mail clients and servers support both PPPoE PPPoE is an acronym for Point to Point Protocol over Ethernet It is a network protocol for encapsulating Point to Point Protocol PPP frames inside Ethernet frames It is used mainly with ADSL services where individual users connect to the ADSL transceiver modem over Etherne...

Страница 457: ...r that specific QoS class There is a one to one mapping between QoS class queue and priority A QoS class of 0 zero has the lowest priority R RARP RARP is an acronym for Reverse Address Resolution Protocol It is a protocol that is used to obtain an IP address for a given hardware address such as an Ethernet address RARP is the complement of ARP RADIUS RADIUS is an acronym for Remote Authentication ...

Страница 458: ...ated after the ingress queues SMTP SMTP is an acronym for Simple Mail Transfer Protocol It is a text based protocol that uses the Transmission Control Protocol TCP and provides a mail service modeled on the FTP file transfer service SMTP transfers mail messages between systems and notifications regarding incoming mail SNAP The SubNetwork Access Protocol SNAP is a mechanism for multiplexing on netw...

Страница 459: ...yer 2 protocol which ensures a loop free topology for any bridged LAN The original STP protocol is now obsolete by RSTP SyncE SyncE Is an abbreviation for Synchronous Ethernet This functionality is used to make a network clock frequency synchronized Not to be confused with real time clock synchronized IEEE 1588 T TACACS TACACS is an acronym for Terminal Access Controller Access Control System Plus...

Страница 460: ...d as the IPv4 Toss priority control It is fully decoded to determine the priority from the 6 bit Toss field in the IP header The most significant 6 bits of the Toss field are fully decoded into 64 possibilities and the singular code that results is compared against the corresponding bit in the IPv4 ToS priority control bit 0 63 TLV TLV is an acronym for Type Length Value A LLDP frame can contain m...

Страница 461: ...rt VLAN tags VLAN aware switching This is based on the IEEE 802 1Q standard All ports are VLAN aware Ports connected to VLAN aware switches are members of multiple VLANs and transmit tagged frames Other ports are members of one VLAN set up with this Port VLAN ID and transmit untagged frames Provider switching This is also known as Q in Q switching Ports connected to subscribers are VLAN unaware me...

Страница 462: ...r Personal WPA utilizes less scalable pre shared key PSK mode where every allowed computer is given the same passphrase In PSK mode security depends on the strength and secrecy of the passphrase The design of WPA is based on a Draft 3 of the IEEE 802 11i standard Wikipedia WPA Radius WPA Radius is an acronym for Wi Fi Protected Access Radius 802 1X authentication server WPA was designed to enhance...

Страница 463: ...er s Manual of IGS 5225 series 463 WTR WTR is an acronym for Wait To Restore This is the time a fail on a resource has to be not active before restoration back to this previously failing resource is done ...

Отзывы: