D-Link DAS-3626 User Manual

Hide thumbs Also See for DAS-3626:
Table of Contents

Advertisement

User Manual

DAS-3626
Product Model:
VDSL2 Switch
Release 1.00
©Copyright 2009. All rights reserved

Advertisement

Table of Contents
loading

Summary of Contents for D-Link DAS-3626

  • Page 1: User Manual

    User Manual DAS-3626 Product Model: VDSL2 Switch Release 1.00 ©Copyright 2009. All rights reserved...
  • Page 2 © 2009 D-Link Corporation. All rights reserved. Reproduction in any manner whatsoever without the written permission of D-Link Corporation is strictly forbidden. Trademarks used in this text: D-Link and the D-LINK logo are trademarks of D-Link Corporation; Microsoft and Windows are registered trademarks of Microsoft Corporation.
  • Page 3: Table Of Contents

    DAS-3626 VDSL2 Switch User Manual Table of Contents Web-based Switch Configuration ............................ 6 System Configuration ..............................14 Switch Configuration ..............................26 VDSL Configuration ............................... 53 Multicasting ..................................59 Storm Control ................................74 QoS ....................................76 ACL ....................................84 VLAN ................................... 103 Security ..................................
  • Page 4 DAS-3626 VDSL2 Switch User Manual Preface The DAS-3626 User Manual is divided into sections that describe the system installation and operating instructions. Section 2 through Section 13 corresponds to a menu folder in the web management interface presented in the same order they appear in the web interface.
  • Page 5: Intended Readers

    DAS-3626 VDSL2 Switch User Manual Intended Readers The DAS-3626 User Manual Manual contains information for setup and management of the switch. This manual is intended for network managers familiar with network management concepts and terminology. Typographical Conventions Convention Description In a command line, square brackets indicate an optional entry. For example: [copy filename] means that optionally you can type copy followed by the name of the file.
  • Page 6: Web-Based Switch Configuration

    DAS-3626 VDSL2 Switch User Manual Section 1 Web-based Switch Configuration Introduction Out-of-Band Access to System Management Interface IP Settings for Switch Management Login to Web Manager Web-based User Interface Web Pages Introduction All software functions of the switch can be managed, configured and monitored via the embedded web-based (HTML) interface.
  • Page 7 Name and Password, there is no default user name or password, simply press the Enter at each prompt to obtain the administrator’s prompt DAS-3626:admin# as seen in the example below. The switch is not ready for configuration. Figure 2. Menus Command Prompt using out-of-band Telnet connection NOTE: Telnet can also be used in-band by connecting through port 25 or 26.
  • Page 8: Login To Web Manager

    DAS-3626 VDSL2 Switch User Manual Login to Web Manager To use the web-based management module for switch management, run the browser you have installed on your computer and point it to the IP address you have defined for the device. The URL in the address bar should read something like: http://123.123.123.123, where the numbers 123 represent the IP address of the switch;...
  • Page 9: Areas Of The User Interface

    Area 1 Select the folder or window to be displayed. The folder icons can be opened to display the hyper- linked window buttons and subfolders contained within them. Click the D-Link logo to go to the D- Link website. Area 2 Presents a graphical near real-time image of the front panel of the switch.
  • Page 10 DAS-3626 VDSL2 Switch User Manual System Save Menus The web interface for the switch includes two drop-down menus, the Save and Tools menus, located just above the menu folders. The Save menu includes options to save switch configuration settings and switch log.
  • Page 11: Upload Log File

    DAS-3626 VDSL2 Switch User Manual System Tools Menus The Tools drop-down menu includes links Configuration File Backup & Restore, Upload Log File, Reset, Download Firmware and Reboot System menus. Figure 7. Tools drop-down menu These menus are described below. Configuration File Backup & Restore The switch supports dual image storage for configuration file backup and restoration.
  • Page 12: Download Firmware

    DAS-3626 VDSL2 Switch User Manual Reset The Reset function has several options when resetting the switch. Some of the current configuration parameters can be retained while resetting all other configuration parameters to their factory defaults. NOTE: Only the Reset System option will enter the factory default parameters into the switch's non-volatile RAM, and then restart the switch.
  • Page 13 This window contains the main settings for all major functions on the switch and appears automatically when you log on. To return to the Device Information and Quick Configuration likns, click the DAS-3626 device name above the menu folders. The Device Information display shows the switch’s MAC Address (assigned by the factory and unchangeable), the Boot PROM Version, Firmware Version and Hardware Version as well as other information about different settings on the switch.
  • Page 14: System Configuration

    DAS-3626 VDSL2 Switch User Manual Section 2 System Configuration System Information IP Settings IPv6 Neighbor Settings Serial Port Settings Web Settings Telnet Setting Time Setting TimeZone Setting Users Setting System Log Setting System Log Server Configuration menus in the System Configuration folder are used to change general system settings sucha as IP settings for the two switch IP interfaces, system time settings and user account settings.This section describes the...
  • Page 15: System Information

    DAS-3626 VDSL2 Switch User Manual System Information Use the System Information menu to add name, location and administrator contact information. To view the menu, click System Configuration > System Information as shown below: Figure 14. System Information menu Interface Settings The Interface Settings menu is used to access the IP settings for the two IP interefaces of the switch.
  • Page 16 DAS-3626 VDSL2 Switch User Manual The following parameters can be configured: Parameter Description Interface Name Displays the interface being edited. VLAN Name Enter the name of the VLAN corresponding to the interface. (System interface only) Enter an alternative IPv4 address. Currently an interface can only have one IPv4 address defined.
  • Page 17: Ipv6 Neighbor Settings

    DAS-3626 VDSL2 Switch User Manual IPv6 Neighbor Settings This window allows the user to create and configure IPv6 Neighbor settings on the switch. The switch’s current IPv6 neighbor settings will be displayed in the table at the bottom of this window.
  • Page 18: Serial Port Setting

    DAS-3626 VDSL2 Switch User Manual Serial Port Setting Use the Serial Port Setting window to console serial port setting, config Baud Rate and Auto Logout setting. To view this window, click System Configuration > Serial Port Settings as shown below: Figure 19.
  • Page 19: Time Settings

    DAS-3626 VDSL2 Switch User Manual System Time and SNTP Settings Simple Network Time Protocol Settings used to set system time are configured in two menus, the Time Settings and Time Zone Settings menus. Time Settings This window is used to configure the time settings for the switch.
  • Page 20: Time Zone Settings

    DAS-3626 VDSL2 Switch User Manual Time Zone Settings The following window is used to configure time zones and Daylight Savings time settings for SNTP. To view this window, click System Configuration > TimeZone Settings as shown below: Figure 23. Time Zone and DST Settings menu...
  • Page 21 DAS-3626 VDSL2 Switch User Manual DST Repeating Settings Using repeating mode will enable DST seasonal time adjustment. Repeating mode requires that the DST beginning and ending date be specified using a formula. For example, specify to begin DST on Saturday during the second week of April and end DST on Sunday during the last week of October.
  • Page 22: User Account Settings

    DAS-3626 VDSL2 Switch User Manual User Account Settings The User Accounts menu is used to control user privileges, create new users and view existing User Accounts. To view the menu, click System Configuration > User Settings: Figure 24. User Accounts menu...
  • Page 23 Apply. NOTICE: In case of lost passwords or password corruption, please refer to the D-Link website and the White Paper entitled “Password Recovery Procedure”, which will guide you through the steps necessary to resolve this issue. Admin, Operator and User Privileges...
  • Page 24: System Log Configuration

    DAS-3626 VDSL2 Switch User Manual System Log Configuration This section contains information for configuring various attributes and properties for System Log Configurations, including System Log Settings and System Log Host. System Log Settings This window allows the user to enable or disable the System Log and specify the System Log Save Mode Settings.
  • Page 25 DAS-3626 VDSL2 Switch User Manual The following parameters can be set: Parameter Description Server ID Syslog server settings index (1-4). Server IP Address The IP address of the Syslog server. UDP Port Type the UDP port number used for sending Syslog messages. The default is 514.
  • Page 26: Switch Configuration

    DAS-3626 VDSL2 Switch User Manual Section 3 Switch Configuration MAC Address Aging Time Ethernet Settings Traffic Segmentation CLI Paging Port Mirror LACP Port Settings Loopback Detection Settings QinQ Settings GVRP DHCP/BOOTP Relay Settings Spanning Tree Settings Multiple Spanning Tree Settings...
  • Page 27: Mac Address Aging Time

    DAS-3626 VDSL2 Switch User Manual MAC Address Aging Time This table specifies the length of time a learned MAC Address will remain in the forwarding table without being accessed (that is, how long a learned MAC Address is allowed to remain idle). To change this, enter a value representing the MAC address age-out time in seconds.
  • Page 28 DAS-3626 VDSL2 Switch User Manual Use the MAC Address Table menu to view or clear entries from the switch's MAC address forwarding data base (FDB) To view this menu, click Switch Configuration > FDB as shown below: Figure 31. Forwarding Database entry table Search options include searching by Port number, VLAN Name or specific MAC Address.
  • Page 29: Traffic Segmentation

    DAS-3626 VDSL2 Switch User Manual Traffic Segmentation Traffic segmentation is used to limit traffic flow from a single port to a group of ports on either a single switch or a group of ports on another switch in a switch stack. This method of segmenting the flow of traffic is similar to using VLANs to limit traffic, but is more restrictive.
  • Page 30: Port Mirror

    DAS-3626 VDSL2 Switch User Manual Port Mirror The switch allows you to copy frames transmitted and received on a port and redirect the copies to another port. You can attach a monitoring device to the mirrored port, such as a sniffer or an RMON probe, to view details about the packets passing through the first port.
  • Page 31: Port Trunking

    Port trunk groups are used to combine a number of ports together to make a single high-bandwidth data pipeline. The DAS-3626 supports single trunk group for the two Gigabit Ethernet (ports Ports 25 and 26). A potential bit rate of 2000 Mbps can be achieved.
  • Page 32: Lacp Port Settings

    Parameter Description From Port / To Port Ports 25 and 26 are the only ports on the DAS-3626 available for LACP. Activity Active – Active LACP ports are capable of processing and sending LACP control frames. This allows LACP compliant devices to negotiate the aggregated link so the group may be changed dynamically as needs require.
  • Page 33: Loopback Detection Settings

    DAS-3626 VDSL2 Switch User Manual Loopback Detection Settings The Loopback Detection function is used to detect the loop created by a specific port. This feature is used to temporarily shutdown a port on the Switch when a loop detecting packet has been looped back to the switch. When the Switch detects that these packets are received from a port or a VLAN, it signifies a loop on the network.
  • Page 34 DAS-3626 VDSL2 Switch User Manual Q-in-Q Settings This function allows the user to enable or disable the Q-in-Q function. Q-in-Q is designed for service providers to carry traffic from multiple users across a network. Q-in-Q is used to maintain customer specific VLAN and Layer 2 protocol configurations even when the same VLAN ID is being used by different customers.
  • Page 35: Gvrp Global Settings

    DAS-3626 VDSL2 Switch User Manual GVRP Global Settings The GVRP allows interoperability with other switches, so the values of the GVRP timers can be configured. This table is used to set the GVRP Global Settings. To view this window, click Switch Configuration > GVRP Global Settings as shown below: Figure 39.
  • Page 36 DAS-3626 VDSL2 Switch User Manual Figure 40. GVRP Settings menu The following fields can be set: Parameter Description From Port / To Port These two fields allow you to specify the range of ports that will be included in the Port-based VLAN that you are creating using the 802.1Q Port Settings window.
  • Page 37: Dhcp Relay

    DAS-3626 VDSL2 Switch User Manual DHCP Relay The DHCP Relay folder contains six windows regarding the DHCP relay functions on the switch. The DHCP menus include DHCP Relay Global Settings, DHCP Relay Interface Settings, DHCP Relay Option 60 Default Settings, DHCP Relay Option 82 Settings Remote ID, DHCP Realy Option 82 Settings Circuit ID and DHCP Relay Option 82 Settings.
  • Page 38 DAS-3626 VDSL2 Switch User Manual Configure the following Option 82 settings in the DHCP/BOOTP Global Settins menu: Parameter Description DHCP Relay Option This field can be toggled between Enabled and Disabled using the pull-down menu. It is 82 State used to enable or disable the DHCP Agent Information Option 82 on the switch. The default is Disabled.
  • Page 39: Dhcp Relay Interface Settings

    DAS-3626 VDSL2 Switch User Manual DHCP Relay Interface Settings This window allows the user to set up a server, by IP address, for relaying DHCP information to the switch. The user may enter a previously configured IP interface on the switch that will be connected directly to the DHCP/BOOTP server using the following window.
  • Page 40: Spanning Tree

    Rapid STP and 802.1q-2005 MSTP. 802.1D STP will be familiar to most networking professionals. However, since 802.1w RSTP has been recently introduced to D-Link managed Ethernet switches, a brief introduction to the technology is provided below followed by a description of how to set up 802.1D STP and 802.1w RSTP.
  • Page 41: P2P Port

    DAS-3626 VDSL2 Switch User Manual P2P Port A P2P port is also capable of rapid transition. P2P ports may be used to connect to other bridges. Under RSTP, all ports operating in full-duplex mode are considered to be P2P ports, unless manually overridden through configuration.
  • Page 42 DAS-3626 VDSL2 Switch User Manual The following parameters can be set: Parameter Description STP State Use the radio buttons to enable or disable the STP Status. STP Version Use the pull-down menu to choose the desired version of STP to be implemented on the switch.
  • Page 43: Stp Port Settings

    DAS-3626 VDSL2 Switch User Manual STP Port Settings This window is used to configure the STP Port Settings on the Swtich. STP can be set up on a port per port basis. To view this window, click Switch Configuration > Spanning Tree > STP Port Settings as shown below: Figure 44.
  • Page 44: Mst Configuration Identification

    DAS-3626 VDSL2 Switch User Manual The following fields can be set: Parameter Description From Port / To Port A consecutive group of ports may be configured starting with the selected port. External Cost (0=Auto) The external cost defines a metric that indicates the relative cost of forwarding packets to the specified port list.
  • Page 45: Stp Instance Settings

    DAS-3626 VDSL2 Switch User Manual Figure 45. MST Configuration Identification menu The window above contains the following information: Parameter Description Configuration Name A previously configured name set on the switch to uniquely identify the MSTI (Multiple Spanning Tree Instance). If a configuration name is not set, this field will show the MAC address to the device running MSTP.
  • Page 46: Mstp Port Information

    DAS-3626 VDSL2 Switch User Manual Figure 46. STP Instance Settings menu The following information can be set: Parameter Description MSTI ID Displays the MSTI ID of the instance being modified. An entry of 0 in this field denotes the CIST (default MSTI).
  • Page 47 DAS-3626 VDSL2 Switch User Manual The following parameters can be viewed or set: Parameter Description Port Use the drop-down menu to select a port. Instance ID Displays the MSTI ID of the instance being configured. The range is from 0 to 15. An entry of 0 in this field denotes the CIST (default MSTI).
  • Page 48 DAS-3626 VDSL2 Switch User Manual Connectivity Fault Management (CFM) is defined by IEEE 802.1ag, which is a standard for detecting, isolating and reporting connectivity faults in a network. CFM is an end-to-end per-service-instance Ethernet layer operation, administration, and management (OAM) function. CFM functions include path discovery, fault detection and fault verification and isolation as defined by 802.1ag.
  • Page 49 DAS-3626 VDSL2 Switch User Manual CFM MD Settings This window is used to configure the CFM CCM PDU forwarding mode on the Switch. By default the CCM message is handled and forwarded by software. The software can handle the packet based on behaviour defined by the standard.
  • Page 50 DAS-3626 VDSL2 Switch User Manual CFM Mep Settings This window is used to display the CFM, maintenance intermediate point and continuity check message on the Switch. To view this window, click Switch Configuration > CFM > CFM Mep Settings as shown below: Figure 52.
  • Page 51: Cfm Loopback Settings

    DAS-3626 VDSL2 Switch User Manual CFM Loopback Settings This window is used to configure the CFM Loopback settings on the Switch. To view this window, click L2 Features > CFM > CFM Loopback Settings as shown below: Figure 54. CFM Loopback menu...
  • Page 52 DAS-3626 VDSL2 Switch User Manual Figure 55. CFM Linktrace menu The following parameters can be configured: Parameter Description MEP Name The name of the Maintenance End Point. MEP ID (1-8191) The ID for the Maintenance End Point between 1 and 8191.
  • Page 53: Vdsl Configuration

    DAS-3626 VDSL2 Switch User Manual Section 4 VDSL Configuration VDSL Profiles VDSL Ports VDSL Status The VDSL Configuration section will allow users to adjust the configuration settings for VDSL lines connected to the switch. This section has two divisions for configuration, VDSL Profiles, VDSL Ports and VDSL Status which are described below.
  • Page 54 DAS-3626 VDSL2 Switch User Manual Figure 57. VDSL Profile menu – Edit Parameter Description Profile Name Enter a name to define the profile configured here. This name is used for configuration profiles applied to individual ports in the VDSL Ports menu.
  • Page 55 DAS-3626 VDSL2 Switch User Manual Parameter Description Downstream/Upstream Configure the target amount of increased noise that tolerated while maintaining the Target SNR Margin designed BER (bit error rate). If the SNR Margin is increased, bit error rate performance will improve, but the data rate will decrease. Conversely, if the SNR Margin is decreased, bit error rate performance will decrease, but the data rate will increase.
  • Page 56 DAS-3626 VDSL2 Switch User Manual VDSL Ports The following window is used to attach profiles, configured in the VDSL Profiles section, with VDSL lines on the switch. Figure 58. VDSL Port table To attach a profile to a VDSL line, use the pull-down menu under the Profile heading, select a pre-configured profile and click the Attach button located under the Action heading.
  • Page 57 DAS-3626 VDSL2 Switch User Manual VDSL Ports Config The following window is used to config vdsl port status and action. Figure 60. VDSL Ports config table VDSL Loopback The following window is used to run vdsl port loopback function. Figure 61. VDSL loopback...
  • Page 58 DAS-3626 VDSL2 Switch User Manual VDSL Status Figure 62. VDSL Bitmap Status display...
  • Page 59: Multicasting

    DAS-3626 VDSL2 Switch User Manual Section 5 Multicasting IGMP Snooping Settings IPv4 Multicasting Settings IPv4 Limited Multicast Range Settings IPv4 Max Multicast Group Settings Multicasting Forwarding Multicast Filtering Mode...
  • Page 60 DAS-3626 VDSL2 Switch User Manual IGMP Snooping Settings Internet Group Management Protocol (IGMP) snooping allows the switch to recognize IGMP queries and reports sent between network stations or devices and an IGMP host. When enabled for IGMP snooping, the switch can open or close a port to a specific device based on IGMP messages passing through the switch.
  • Page 61 DAS-3626 VDSL2 Switch User Manual The following fields can be set: Parameter Description VLAN ID This is the VLAN ID that, along with the VLAN Name, identifies the VLAN for which the user wishes to modify the IGMP Snooping Settings.
  • Page 62: Igmp Snooping Rate Limit Settings

    DAS-3626 VDSL2 Switch User Manual IGMP Snooping Rate Limit Settings This table allows the user to configure the rate of IGMP snooping control packets that are allowed per port or VLAN. To view this window, click Switch Configuration > IGMP Snooping > IGMP Snooping Rate Limit Settings as shown below: Figure 66.
  • Page 63: Igmp Multicast Group Profile Settings

    DAS-3626 VDSL2 Switch User Manual IGMP Multicast Group Profile Settings This table allows the user to create igmp multicast group profiles and specify multicast address lists on the switch. To view this window, click Switch Configuration > IGMP Snooping > IGMP Multicast Group Profile Settings as shown below: Figure 68.
  • Page 64: Igmp Snooping Multicast Vlan Settings

    DAS-3626 VDSL2 Switch User Manual IGMP Snooping Multicast VLAN Settings This window is used to configure the IGMP Snooping Multicast VLAN settings on the switch. To view this window, click Switch Configuration > IGMP Snooping > IGMP Snooping Multicast VLAN Settings as shown below: Figure 70.IGMP Snooping Multicast VLAN Settings menu...
  • Page 65: Ipv4 Multicast Profile Settings

    DAS-3626 VDSL2 Switch User Manual IPv4 Multicast Profile Settings The IPv4 Multicast Profile Settings window allows the user to add a profile to which multicast IPv4 address(es) reports are to be received on specified ports or VLANs on the switch. This function will therefore limit the number of reports received and the number of multicast groups configured on the switch.
  • Page 66: Ipv4 Limited Multicast Range Settings

    DAS-3626 VDSL2 Switch User Manual IPv4 Limited Multicast Range Settings The IPv4 Limited Multicast Range Settings enables the user to configure the ports or VLANs on the switch that will be involved in the Limited IPv4 Multicast Range. The user can configure the range of IPv4 multicast addresses that will be accepted on the ports or VLANs.
  • Page 67: Mld Control Messages

    DAS-3626 VDSL2 Switch User Manual MLD Control Messages Three types of messages are transferred between devices using MLD snooping. These three messages are all defined by three ICMPv6 packet headers, labeled 130, 131 and 132. 1. Multicast Listener Query – Similar to the IGMPv2 Host Membership Query for IPv4, and labeled as 130 in the ICMPv6 packet header, this message is sent by the router to ask if any link is requesting multicast data.
  • Page 68 DAS-3626 VDSL2 Switch User Manual The following parameters may be viewed or modified: Parameter Description VLAN ID This is the VLAN ID that, along with the VLAN Name, identifies the VLAN for which to modify the MLD Snooping Settings. VLAN Name This is the VLAN Name that, along with the VLAN ID, identifies the VLAN for which to modify the MLD Snooping Settings.
  • Page 69: Mld Snooping Rate Limit Settings

    DAS-3626 VDSL2 Switch User Manual Figure 78. MLD Snooping Router IP Settings – Modify menu MLD Snooping Rate Limit Settings This window is used to configure the rate of MLD control packets that are allowed per port or per VLAN.
  • Page 70: Mld Snooping Static Group Settings

    DAS-3626 VDSL2 Switch User Manual Figure 80. MLD Snooping Rate Limit Settings – Edit menu Enter the new rate limit and click Apply. MLD Snooping Static Group Settings This window is used to configure the MLD Snooping static group information on the Swtich: To view this window, click Switch Configuration >...
  • Page 71: Mld Multicast Group Profile Settings

    DAS-3626 VDSL2 Switch User Manual MLD Multicast Group Profile Settings This table allows the user to create MLD multicast group profiles and specify multicast address lists on the switch. To view this window, click Switch Configuration > MLD Snooping > MLD Multicast Group Profile Settings as shown below: Figure 82.
  • Page 72: Multicast Forwarding

    DAS-3626 VDSL2 Switch User Manual The following fields can be set: Parameter Description VLAN Name This is the VLAN Name that, along with the VLAN ID, identifies the VLAN the user wishes to modify the MLD Snooping Settings for. VID (2-4094) This is the VLAN ID that, along with the VLAN Name, identifies the VLAN the user wishes to modify the MLD Snooping Settings for.
  • Page 73: Multicast Filtering Mode

    DAS-3626 VDSL2 Switch User Manual Multicast Filtering Mode This table is used to configure the Multicast Filtering settings on the switch. It allows users to configure the switch to forward or filter the Unregistered Groups per VLAN. To view this window, click Switch Configuration > Forwarding & Filtering > Multicast Filtering Mode as shown below: Figure 86.
  • Page 74: Storm Control

    DAS-3626 VDSL2 Switch User Manual Section 6 Storm Control On a computer network, packets such as Multicast packets and Broadcast packets continually flood the network as normal procedure. At times, this traffic may increase due to a malicious endstation on the network or a malfunctioning device, such as a faulty network card.
  • Page 75 DAS-3626 VDSL2 Switch User Manual The following parameters can be configured: Traffic Control Settings From Port / To Port A consecutive group of ports may be configured starting with the selected port. Select the method of traffic Control from the pull-down menu. The choices are: Drop –...
  • Page 76: Qos

    DAS-3626 VDSL2 Switch User Manual Section 7 HOL Blocking Pevention Bandwidth Control Traffic Control 802.1p Default Priority 802.1p User Priority QoS Scheduling Mechanism QoS Scheduling In Band Manage Settings SRED The following section discusses the implementation of 802.1p priority queuing as it is supported on the switch.
  • Page 77: Advantages Of Qos

    DAS-3626 VDSL2 Switch User Manual Advantages of QoS QoS is an implementation of the IEEE 802.1p standard that allows network administrators a method of reserving bandwidth for important functions that require a large bandwidth or have a high priority, such as VoIP (voice-over Internet Protocol), web browsing applications, file server applications or video conferencing.
  • Page 78: Bandwidth Control

    CoS until there are no more packets for this CoS. The other CoS queues that have been given a nonzero value, and depending upon the weight, will follow a common weighted round-robin scheme. Remember that the DAS-3626 has eight priority queues (and eight Classes of Service) for each port on the switch. Bandwidth Control The bandwidth control settings are used to place a ceiling on the transmitting and receiving data rates for any selected port.
  • Page 79: P Default Priority

    DAS-3626 VDSL2 Switch User Manual 802.1p Default Priority The switch allows the assignment of a default 802.1p priority to each port on the switch. To view this window, click QoS > 802.1p Default Priority as shown below: Figure 89. 802.1p Default Priority menu This window allows you to assign a default 802.1p priority to any given port on the switch.
  • Page 80: Qos Scheduling Mechanism

    DAS-3626 VDSL2 Switch User Manual QoS Scheduling Mechanism Changing the output scheduling used for the hardware queues in the switch can customize QoS. As with any changes to QoS implementation, careful consideration should be given to how network traffic in lower priority queues are affected.
  • Page 81 DAS-3626 VDSL2 Switch User Manual Figure 92. QoS Scheduling The following parameters can be configured: Parameter Description From Port / To Port Enter the port or port list you wish to configure. Class ID Select the Class ID, from 0-7, to configure for the QoS parameters.
  • Page 82: In Band Manage Settings

    DAS-3626 VDSL2 Switch User Manual In Band Manage Settings This window allows the user to specify a priority handling of untagged in-band management packets received by the switch. The priority value entered in this window will be used to determine which of the eight hardware priority queues the packet is forwarded to.
  • Page 83: P Map Settings

    DAS-3626 VDSL2 Switch User Manual The following parameters may be set: Parameter Description From port / To port A consecutive group of ports may be configured starting with the selected port. DSCP Map Use the drop-down menu to choose a DSCP Map, you can choose between DSCP Priority, DSCP DSCP and DSCP Color.
  • Page 84: Acl

    DAS-3626 VDSL2 Switch User Manual Section 8 ACL Configuration Wizard Access Profile List CPU Access Profile List ACL Finder ACL Flow Meter Access profiles allow you to establish criteria to determine whether or not the switch will forward packets based on the information contained in each packet's header.
  • Page 85 DAS-3626 VDSL2 Switch User Manual The following parameters can be configured. Parameter Description Type Select the type of ACL you wish to create, either normal or CPU. Profile Name Select a unique Profile Name for this profile set. Enter a unique identifier number for this profile set. This value can be set from 1 to 12.
  • Page 86 DAS-3626 VDSL2 Switch User Manual To add an ACL Profile, click the Add ACL Profile button, which, will display the window below. There are four Access Profile Configuration pages; one for Ethernet (or MAC address-based) profile configuration, one for IPv4 address- based profile configuration, one for the Packet Content and one for IPv6.
  • Page 87 DAS-3626 VDSL2 Switch User Manual The following parameters can be configured. Parameter Description Ethernet ACL To configure this profile select the Ethernet ACL, and use the drop down menu to choose between tagged or untagged. Source MAC Mask Enter a MAC address mask for the source MAC address.
  • Page 88 DAS-3626 VDSL2 Switch User Manual Figure 102. Access Profile Details (Ethernet) To return to the Access Profile List click Show All Profiles, to add a rule to a previously configured entry click on the corresponding Add/View Rules, which will reveal the following window.
  • Page 89 DAS-3626 VDSL2 Switch User Manual To set the Access Rule for Ethernet, adjust the following parameters and click Apply. Parameter Description Access ID (1-128) Type in a unique identifier number for this access. This value can be set from 1 to 128.
  • Page 90 DAS-3626 VDSL2 Switch User Manual Figure 104. Access Rule List (Ethernet) To view the configurations for previously configured rules click on the corresponding Show Details Button which will display the following Access Rule Details window. Figure 105. Access Rule Detail Information (Ethernet) To create an IPv4 ACL select IPv4, enter the Profile ID and Profile Name into the top half of the screen in the Add ACL Profile window and click Select the following window will appear.
  • Page 91 DAS-3626 VDSL2 Switch User Manual Parameter Description VLAN Selecting this option instructs the switch to examine the VLAN part of each packet header and use this as the, or part of the criterion for forwarding. DSCP Selecting this option instructs the switch to examine the DiffServ Code part of each packet header and use this as the, or part of the criterion for forwarding.
  • Page 92 DAS-3626 VDSL2 Switch User Manual Click Create to view the new Access Profile List entry in the Access Profile List table shown below. To add another Access Profile click Add ACL Profile. To delete a profile click the corresponding Delete button, to view the specific configurations for an entry click the Show Details button.
  • Page 93 DAS-3626 VDSL2 Switch User Manual The following parameters may be configured for the IP (IPv4) filter. Parameter Description Access ID (1-128) Type in a unique identifier number for this access. This value can be set from 1 to 128. Action Select Permit to specify that the packets that match the access profile are forwarded by the switch, according to any additional rule added (see below).
  • Page 94 DAS-3626 VDSL2 Switch User Manual Figure 111. Access Rule Detail Information To configure the IPv6 ACL select IPv6 in the Add ACL Profile window, enter the Profile ID and Profile Name into the top half of the screen in the Add ACL Profile window and click Select, the following window will appear.
  • Page 95 DAS-3626 VDSL2 Switch User Manual The following parameters can be set, for IPv6: Parameter Description IPv6 Class Ticking this check box will instruct the switch to examine the class field of the IPv6 header. This class field is a part of the packet header that is similar to the Type of Service (ToS) or Precedence bits field in IPv4.
  • Page 96 DAS-3626 VDSL2 Switch User Manual Figure 114. Access Profile Details (IPv6) To return to the CPU Access Profile List click Show All Profiles, to add a rule to a previously configured entry click on the corresponding Add/View Rules, which will reveal the following window.
  • Page 97 DAS-3626 VDSL2 Switch User Manual The following parameters may be configured for the IP (IPv6) filter. Parameter Description Access ID (1-128) Enter a unique identifier number for this access. This value can be set from 1 to 128. Class Specifies the IPv6 Class. Enter a value between 0 – 255.
  • Page 98 DAS-3626 VDSL2 Switch User Manual Figure 117. Access Rule Detail Inforamtion (IPv6) To configure the Packet Content ACL select Packet Content in the Add ACL Profile window, enter the Profile ID and Profile Name into the top half of the screen in the Add ACL Profile window and click Select, the following window will appear.
  • Page 99 With this advanced unique Packet Content Mask (also known as Packet Content Access Control List - ACL), the D-Link switch family can effectively mitigate some network attacks like the common ARP Spoofing attack that is wide spread today. This is why the Packet Content ACL is able to inspect any specified content of a packet in different protocol layers.
  • Page 100 DAS-3626 VDSL2 Switch User Manual Figure 120. Access Profile Details (Packet Content) To return to the CPU Access Profile List click Show All Profiles, to add a rule to a previously configured entry click on the corresponding Add/View Rules, which will reveal the following window:...
  • Page 101 DAS-3626 VDSL2 Switch User Manual The following parameters may be configured for the Packet Content filter. Parameter Description Access ID (1-128) Type in a unique identifier number for this access. This value can be set from 1 to 128. Action Select Permit to specify that the packets that match the access profile are forwarded by the switch, according to any additional rule added (see below).
  • Page 102: Acl Finder

    (MAC Address). However, ARP is vulnerable as it can be easily spoofed and utilized to attack a LAN. For a more detailed explanation on how ARP works and how to employ D-Link’s advanced unique Packet Content ACL to prevent ARP spoofing attack, please see Appendix B, at the end of this manual.
  • Page 103: Vlan

    DAS-3626 VDSL2 Switch User Manual Section 9 VLAN Management VLAN The 802.1Q VLAN window lists all previously configured VLANs by VLAN ID and VLAN Name. To view this window, click Switch Configuration > Management VLAN as shown below: Figure 125. Current 802.1Q Static VLANs Entries menu To create a new 802.1Q VLAN entry or edit an existing one, click the Add/Edit VLAN tab at the top of the 802.1Q...
  • Page 104 DAS-3626 VDSL2 Switch User Manual Figure 126. 802.1Q VLAN menu – Add/Edit VLAN Tab To return to the 802.1Q VLAN window, click the VLAN List Tab at the top of the window. To change an existing 802.1Q VLAN entry, click the corresponding Edit button. A new window will appear to configure the port settings and to assign a unique name and number to the new VLAN.
  • Page 105 DAS-3626 VDSL2 Switch User Manual Parameter Description Allows the entry of a VLAN ID, or displays the VLAN ID of an existing VLAN in the Edit window. VLANs can be identified by either the VID or the VLAN name. VLAN Name Allows the entry of a name for a new VLAN, or modifying the VLAN name in the Edit window.
  • Page 106 DAS-3626 VDSL2 Switch User Manual To create a VLAN Batch entry click the VLAN Batch Settings tab at the top of the screen which will display the following window. Figure 129. 802.1Q VLAN menu – VLAN Batch Settings menu The following fields can be set in the VLAN Batch Settings windows:...
  • Page 107: V Protocol Vlan

    DAS-3626 VDSL2 Switch User Manual 802.1v Protocol VLAN 802.1v Protocol Group Settings The table allows the user to create Protocol VLAN groups and add protocols to that group. The 802.1v Protocol VLAN Group Settings supports multiple VLANs for each protocol and allows the user to configure the untagged ports of different protocols on the same physical port.
  • Page 108 DAS-3626 VDSL2 Switch User Manual Figure 131. Protocol VLAN Settings menu The following fields can be set: Parameter Description Group ID Click the corresponding radio button to select a previously configured Group ID from the drop- down menu. Group Name Click the corresponding radio button to select a previously configured Group Name from the drop-down menu.
  • Page 109: Security

    DAS-3626 VDSL2 Switch User Manual Section 10 Security Safeguard Engine Trusted Host Port Security MAC Spoofing Access Authentication Control...
  • Page 110: Safeguard Engine

    DAS-3626 VDSL2 Switch User Manual Safeguard Engine Periodically, malicious hosts on the network will attack the switch by utilizing packet flooding (ARP Storm) or other methods. These attacks may increase the Safeguard Engine beyond its capability. To alleviate this problem, the Safeguard Engine function was added to the switch’s software.
  • Page 111: Trusted Host

    DAS-3626 VDSL2 Switch User Manual To view this window, click Security > Safeguard Engine as shown below: Figure 133. Safeguard Engine menu To configure the switch’s Safeguard Engine, change the State to Enabled when the Safeguard Engine is enabled a green light will show on the gray bar at the top of this window, next to Safeguard.
  • Page 112: Port Security

    DAS-3626 VDSL2 Switch User Manual Port Security Port Security Port Settings A given ports’ (or a range of ports') dynamic MAC address learning can be locked such that the current source MAC addresses entered into the MAC address forwarding table cannot be changed once the port lock is enabled. Setting the Admin State pull-down menu to Enabled, and clicking Apply can lock the port.
  • Page 113: Access Authentication Control

    DAS-3626 VDSL2 Switch User Manual Access Authentication Control The TACACS/XTACACS/TACACS+/RADIUS commands allow users to secure access to the switch using the TACACS/XTACACS/TACACS+/RADIUS protocols. When a user logs in to the switch or tries to access the administrator level privilege, he or she is prompted for a password. If TACACS/XTACACS/TACACS+/RADIUS authentication is enabled on the switch, it will contact a TACACS/XTACACS/TACACS+/RADIUS server to verify the user.
  • Page 114: Authentication Policy Settings

    DAS-3626 VDSL2 Switch User Manual Authentication Policy Settings This command will enable an administrator-defined authentication policy for users trying to access the switch. When enabled, the device will check the Login Method List and choose a technique for user authentication upon login.
  • Page 115: Authentication Server Group

    DAS-3626 VDSL2 Switch User Manual The following parameters can be set: Parameter Description Application Lists the configuration applications on the switch. The user may configure the Login Method List and Enable Method List for authentication for users utilizing the Console (Command Line Interface) application, the Telnet application, SSH, and the WEB (HTTP) application.
  • Page 116: Authentication Server

    DAS-3626 VDSL2 Switch User Manual Figure 139. Authentication Server Group Settings Edit menu To add an Authentication Server Host to the list, enter its IP address in the IP Address field, choose the protocol associated with the IP address of the Authentication Server Host and click Add to add this Authentication Server Host to the group.
  • Page 117: Login Method Lists

    DAS-3626 VDSL2 Switch User Manual Configure the following parameters to add an Authentication Server Host: Parameter Description IP Address The IP address of the remote server host the user wishes to add. Port (1-65535) Enter a number between 1 and 65535 to define the virtual port number of the authentication protocol on a server host.
  • Page 118: Enable Method Lists

    DAS-3626 VDSL2 Switch User Manual 5 - Login Method Lists menu The switch contains one Method List that is set and cannot be removed, yet can be modified. To delete a Login Method List defined by the user, click the corressponding Delete button. To modify a Login Method List, click on its corresponding Edit button.
  • Page 119 DAS-3626 VDSL2 Switch User Manual NOTE: To set the Local Enable Password, see the next section, entitled Local Enable Password. To view the following table, click Security > Access Authentication Control > Enable Method Lists as shown below: Figure 141. Enable Method List menu To delete an Enable Method List defined by the user, click the correspoinding Delete button.
  • Page 120: Local Enable Password Settings

    DAS-3626 VDSL2 Switch User Manual Local Enable Password Settings This window will configure the locally enabled password for the Enable Admin command. When a user chooses the "local_enable" method to promote user level privileges to administrator privileges, he or she will be prompted to enter the password configured here that is locally set on the switch.
  • Page 121: Radius Accounting Settings

    DAS-3626 VDSL2 Switch User Manual RADIUS Accounting Settings The Accounting feature of the switch uses a remote RADIUS server to collect information regarding events occurring on the switch. The following is a list of information that will be sent to the RADIUS server when an event triggers the switch to send these informational packets.
  • Page 122: Cpe Management

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Section 11 CPE Management CPE Basic Information CPE Advanced Information CPE PPPoE Settings CPE LAN Settings CPE Server Settings CPE VLAN Settings CPE ProtoVLAN Settings CPE QoS Settings CPE Firmware CPE Loopback The following menus are used for configuration of features for CPE (Customer Premises Equipment) devices connected to VDSL lines of the switch.
  • Page 123 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPE Basic Information To view the CPE Basic Information menu, click CPE Management > CPE Basic Information. Figure 144. CPE Basic Information menu Select the CPE unit to be configured with the pull-down line menu and click on the Display button. The status of the line is displayed along with basic device information including the model, firmware version, MAC address and VDSL firmware version.
  • Page 124 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPE Advanced Information To view the CPE Advanced Information menu, click CPE Management > CPE Advanced Information. Figure 145. CPE Advanced Information menu Select the CPE unit to be configured with the pull-down line menu and click on the Display button. The status of the line is displayed along with packet counters for the WAN, LAN and Wireless interfaces.
  • Page 125 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPE WAN Settings To view the CPE WAN Settings menu, click CPE Management > CPE WAN Settings. Figure 146. CPE WAN Settings Select the CPE unit to be configured with the pull-down line menu and click on the Display button. The status of the line is displayed.
  • Page 126 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPE PPPoE Settings To view the CPE PPPoE Settings menu, click CPE Management > CPE Advanced Information. Figure 147. CPE PPPoE Settings menu Select the CPE unit to be configured with the pull-down line menu and click on the Display button. The status of the line is displayed.
  • Page 127 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPE LAN Settings To view the CPE LAN Settings menu, click CPE Management > CPE LAN Settings. Figure 148. CPE LAN Port Settings Select the CPE unit to be configured with the pull-down line menu and click on the Display button. The status of the line is displayed.
  • Page 128 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPE VLAN Settings To view the CPE VLAN Settings menu, click CPE Management > CPE VLAN Settings. Figure 150. CPE VLAN Settings menu Select the CPE unit to be configured with the pull-down line menu and click on the Display button. The current VLAN configuration, if any, is didplayed in table form at the bottom of the menu.
  • Page 129 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPE ProtoVLAN Settings To view the CPE Protocol VLAN Settings menu, click CPE Management > CPE ProtoVLAN Settings. Any previous configuration for the CPE is listed in the table. To edit an existing configuration, click on the Edit button; to remove an existing configuration.
  • Page 130 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPE QoS Settings The following window will allow the user to configure the QoS settings for individual CPE devices attached to the VDSL switch. To view the CPE QoS Settings menu, click CPE Management > CPE QoS Settings. Figure 153.
  • Page 131 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPE Filter To view the CPE Filter menu, click CPE Management > CPE Filter. Figure 155. CPE Filter settings menu Select the CPE unit to be configured with the pull-down line menu and click on the Display button. The filter rule table lists existing filter rules.
  • Page 132 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPE FDB To view the CPE FDB Table, click CPE Management > CPE FDB. Figure 157. CPE FDB Table Select the CPE unit to be configured with the pull-down line menu and click on the Display button. The read-only table lists all dynamic MAC address entries in the CPE forwarding database with the VID and Port information.
  • Page 133 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPE SNMP To view the CPE SNMP menu, click CPE Management > CPE SNMP. Select the CPE unit to be configured with the pull-down line menu and click on the Display button. Use the menu to enable or disable an SNMP Agent on the CPE and click on Apply for the agent status.
  • Page 134 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPE Loopback The CPE Loopback menu is used to perform a CPE loopback test. To view the CPE Basic Information menu, click CPE Management > CPE Loopback. Figure 160. CPE Loopback menu Select the CPE unit to be configured with the pull-down line menu and click on the Display button.
  • Page 135: Status

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Section 12 Status Status menus are used for monitoring switch and network funtion status. VDSL Status Alarm View alarm status for each line. Figure 162. VDSL Alarms 15 Min ES/SES/UAS This status window allows you to display Downstream/Upstream information for either Error Second (ES), Severely Errored Second (SES), or Unavailable Second (UAS).
  • Page 136 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual 1 Day ES/SES/UAS This status window allows you to display Downstream/Upstream information for either Error Second (ES), Severely Errored Second (SES), or Unavailable Second (UAS). View ES/SES/UAS statistics for 1 Day interval. Figure 164.
  • Page 137: Cpu Utilization

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual CPU Utilization The CPU Utilization window displays the percentage of the CPU being used, expressed as an integer percentage and calculated as a simple average by time interval. To view this window, click Status > CPU Utilization as shown below: Figure 166.
  • Page 138: Port Utilization

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Port Utilization The Port Utilization window displays the percentage of the total available bandwidth being used on the port. To view this window, click Monitoring > Port Utilization as shown below: Figure 167.
  • Page 139: Packet Size

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Packet Ports The Web Manager allows various packet statistics to be viewed as either a line graph or a table. Three windows are offered in the Packets folder to view and configure these settings. Packet Size The Web Manager allows packets received by the switch, arranged in six groups and classed by size, to be viewed as either a line graph or a table.
  • Page 140 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual The following fields can be set or viewed: Parameter Description Port Use the drop-down menu to choose the port that will display statistics. Time Interval Select the desired setting between 1s and 60s, where "s" stands for seconds. The default value is one second.
  • Page 141 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Received (RX) This table displays the RX packets on the switch. To select a port to view these statistics for, select the port by using the Port pull-down menu. The user may also use the real-time graphic of the switch at the top of the web page by simply clicking on a port.
  • Page 142 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Time Interval Select the desired setting between 1s and 60s, where "s" stands for seconds. The default value is one second. Record Number Select number of times the switch will be polled between 20 and 200. The default value is 200.
  • Page 143 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual UMB_cast (RX) This table displays the UMB_cast RX Packets on the switch. To select a port to view these statistics for, select the port by using the Port pull-down menu. The user may also use the real-time graphic of the switch at the top of the web page by simply clicking on a port.
  • Page 144 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual The following fields may be set or viewed: Parameter Description Port Use the drop-down menu to choose the port that will display statistics. Time Interval Select the desired setting between 1s and 60s, where "s" stands for seconds. The default value is one second.
  • Page 145 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Transmitted (TX) To select a port to view these statistics for, select the port by using the Port pull-down menu. The user may also use the real-time graphic of the switch at the top of the web page by simply clicking on a port. To view this window, click Status >...
  • Page 146 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual The following fields may be set or viewed: Parameter Description Port Use the drop-down menu to choose the port that will display statistics. Time Interval Select the desired setting between 1s and 60s, where "s" stands for seconds. The default value is one second.
  • Page 147 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Error Ports The Web Manager allows port error statistics compiled by the switch's management agent to be viewed as either a line graph or a table. Four windows are offered. Received (RX) To select a port to view these statistics for, select the port by using the Port pull-down menu.
  • Page 148 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual The following fields can be set: Parameter Description Port Use the drop-down menu to choose the port that will display statistics. Time Interval Select the desired setting between 1s and 60s, where "s" stands for seconds. The default value is one second.
  • Page 149 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Transmitted (TX) To select a port to view these statistics for, select the port by using the Port pull-down menu. The user may also use the real-time graphic of the switch at the top of the web page by simply clicking on a port. To view this window, click Status >...
  • Page 150 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual The following fields may be set or viewed: Parameter Description Port Use the drop-down menu to choose the port that will display statistics. Time Interval Select the desired setting between 1s and 60s, where "s" stands for seconds. The default value is one second.
  • Page 151: Memory Utilization

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Utilization Memory Utilization This window is used to display the utilization of the CPU and memory on the switch. To view this window, click Status > Utilization > Memory Utilization as shown below: Figure 180.
  • Page 152: Ping Test

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Ping Test Ping is a small program that sends ICMP Echo packets to the IPv6 or IPv4 address you specify. The destination node then responds to or "echoes" the packets sent from the switch. This is very useful to verify connectivity between the switch and other nodes on the network.
  • Page 153: Firmware Information

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Firmware Information The following screen allows the user to view information about current firmware images stored on the switch. To view this menu, click the Firmware Information link in the Quick Configuration menu as shown below: Figure 182.
  • Page 154: Maintenance

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Section 13 Maintenance Firmware Upgrade Configuration File Backup & Restore Firmware Upgrade This screen is used to upgrade firmware from the Commander switch to the Member switch. Member switches will be listed in the table and will be specified by Port (port on the CS where the MS resides), MAC Address, Model Name and Version.
  • Page 155: Snmp Settings

    The DAS-3626 supports the SNMP versions 1, 2c, and 3. The default SNMP setting is disabled. You must enable SNMP. Once SNMP is enabled you can choose which version you want to use to monitor and control the switch. The three versions of SNMP vary in the level of security provided between the management station and the network device.
  • Page 156: Snmp Global State Settings

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual SNMP settings are configured using the menus located on the SNMP V3 folder of the web manager. Workstations on the network that are allowed SNMP privileged access to the switch can be restricted with the Management Station IP Address window.
  • Page 157: Snmp Group Table

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual SNMP Group Table An SNMP Group created with this table maps SNMP users (identified in the SNMP User Table) to the views created in the previous menu. To view this window, click Configuration > SNMP Settings > SNMP Group Table as shown below: Figure 187.
  • Page 158: Snmp User Table

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual SNMP User Table This window displays all of the SNMP User's currently configured on the switch and also allows you to add new users. To view this window, click Maintenance > SNMP Settings > SNMP User Table as shown below: Figure 188.
  • Page 159: Snmp Community Table

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual To implement changes made, click Apply. To delete an existing SNMP User Table entry, click the corresponding Delete button. SNMP Community Table Use this table to view existing SNMP Community Table configurations and to create a SNMP community string to define the relationship between the SNMP manager and an agent.
  • Page 160: Snmp Host Table

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual SNMP Host Table The SNMP Host Table window is used to set up SNMP trap recipients. To view this window, click Maintenance > SNMP Settings > SNMP Host Table as shown below: Figure 190.
  • Page 161: Snmp Engine Id

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual The following parameters can be configured: Parameter Description Host Ipv6 Address Enter the IPv6 host IP address to which the trap packet will be sent. User-based Security Used the drop down menu to select the user-based security model. Model SNMPv1 –...
  • Page 162: Snmp Trap Configuration

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual SNMP Trap Configuration The following window is used to enable and disable trap settings for the SNMP function on the switch. To view this window, click Maintenance > SNMP Settings > SNMP Trap Configuration as shown below: Figure 193.
  • Page 163: System Log Entries

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Appendix A System Log Entries The following table lists all possible entries and their corresponding meanings that will appear in the System Log of this switch. Category Event Description Log Information Severity System System started up...
  • Page 164 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual <username>) Interface Port link up Port <portNum> link up, <link state> Informational Port link down Port <portNum> link down Informational Console Successful login through Successful login through Console (Username: Informational Console <username>) Login failed through Console Login failed through Console (Username:...
  • Page 165 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Successful login through SSH Successful login through SSH (Username: Informational <username>, IP: <ipaddr>, MAC: <macaddr>) Login failed through SSH Login failed through SSH (Username: <username>, IP: Warning <ipaddr>, MAC: <macaddr>) Logout through SSH Logout through SSH (Username: <username>, IP: Informational <ipaddr>, MAC: <macaddr>)
  • Page 166 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Successful login through SSH Successful login through SSH from <userIP> Informational authenticated by AAA local authenticated by AAA local method (Username: method <username>, MAC: <macaddr>) Login failed through SSH Login failed through SSH from <userIP> authenticated Warning authenticated by AAA local by AAA local method (Username: <username>, MAC:...
  • Page 167 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual <username>, MAC: <macaddr>) Successful login through SSH Successful login through SSH from <userIP> Informational authenticated by AAA server authenticated by AAA server <serverIP> (Username: <username>, MAC: <macaddr>) Login failed through SSH Login failed through SSH from <userIP>...
  • Page 168 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Successful Enable Admin Successful Enable Admin through Console Informational through Console authenticated by AAA server <serverIP> (Username: authenticated by AAA server <username>) Enable Admin failed through Enable Admin failed through Console authenticated by Warning Console authenticated by AAA server <serverIP>...
  • Page 169 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Login failed through Telnet Login failed through Telnet from <userIP> due to AAA Warning from user due to AAA server server timeout or improper configuration (Username: timeout or improper <username>,MAC: <mac>) configuration.
  • Page 170 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Loop-back LBD loop occurred Port <portNum> LBD loop occurred. Port blocked Critical Detection LBD port recovered. Loop Port <portNum> LBD port recovered. Loop detection Informational detection restarted restarted LBD loop occurred. Packet Port <portNum>...
  • Page 171 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual Port %d SFP %s exceeded the %s warning threshold Warning IP and IP Address change activity Management IP address was changed by (Username: Informational Password <username>) Changed Password change activity Password was changed by (Username: <username>) Informational Dual Excution error encountered Configuration had <int>...
  • Page 172: Proprietary Trap List

    DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual MAC-AC host aged out (MAC: <macaddr>, port: Aged out Informational <portNum>, VID: <vlanID>) DAS-3626 Trap List Trap Name/OID Variable Bind Format MIB Name Severity coldStart None RFC1907 Critical 1.3.6.1.6.3.1.1.5.1 (SNMPv2-MIB) WarmStart...
  • Page 173 DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual 1.3.6.1.4.1.171.12.11.2.2.3.0.1 swFanRecover swFanRecoverSeverity EQUIPMENT- Warning 1.3.6.1.4.1.171.12.11.2.2.3.0.2 swMacBasedAuthLoggedSuccess swMacBasedAuthLoggedSucc MBA-MIB Warning 1.3.6.1.4.1.171.12.35.11.1.0.1 SwMacBasedAuthLoggedFail SwMacBasedAuthLoggedFail MBA-MIB Warning 1.3.6.1.4.1.171.12.35.11.1.0.2 SwMacBasedAuthAgesOut SwMacBasedAuthAgesOut MBA-MIB Warning 1.3.6.1.4.1.171.12.35.11.1.0.3 SwExternalAlarm swExternalAlarm EQUIPMENT- Warning 1.3.6.1.4.1.171.12.11.2.2.5.0.1 SwDdmAlarmTrap swDdmAlarmTrap DDM-MIB Warning 1.3.6.1.4.1.171.12.72.4.0.1 SwDdmWarningTrap swDdmWarningTrap DDM-MIB...
  • Page 174: Glossary

    Appendix B Glossary 1000BASE-SX: A short laser wavelength on multimode fiber optic cable for a maximum length of 500 meters 1000BASE-LX: A long wavelength for a "long haul" fiber optic cable for a maximum length of 10 kilometers 1000BASE-T: 1000Mbps Ethernet implementation over Category 5E cable. 100BASE-FX: 100Mbps Ethernet implementation over fiber.
  • Page 175 LAN - Local Area Network: A network of connected computing resources (such as PCs, printers, servers) covering a relatively small geographic area (usually not larger than a floor or building). Characterized by high data rates and low error rates. latency: The delay between the time a device receives a packet and the time the packet is forwarded out of the destination port. line speed: See baud rate.
  • Page 176: Password Recovery Procedure

    This section will explain how the Password Recovery feature can help network administrators reach this goal. The following steps explain how to use the Password Recovery feature on D-Link devices to easily recover passwords. Complete these steps to reset the password: For security reasons, the Password Recovery feature requires the user to physically access the device.
  • Page 177 Command Parameters show account The show account command displays all previously created accounts.

Table of Contents