Security Features - Huawei S9300 Configuration Manual

Table of Contents

Advertisement

S9300&S9300E Terabit Routing Switch
Configuration Guide - Network Management
l
Incremental Configuration
In a cluster, some member switches may have the same configurations, such as creating a VLAN
and enabling a feature. The incremental configuration function is used to remotely control the
selected member switches in batches. With this mode, you only need to configure a control
command list on the administrator switch. Then, you can deliver the control command list to
member switches at a time and query the control command output on each member switch. The
member selection mode can be all, device type-based, member switch ID-based, or IP address-
based.
l
l
l
l
l
Configuration Synchronization
After a cluster is created and configured with basic functions, you can save the configuration
files of the cluster members to a specified FTP server through the configuration synchronization
command.
l

Security Features

After a cluster is created and configured with basic functions, you can close the network edge
of the cluster as required and then the topology of the cluster becomes stable. When plug and
play is enabled and the Product Adaptive File (PAF) is used to control devices configured with
HGMP functions to automatically enable NDP and NTDP on Layer 2 interfaces, a great number
of Layer 2 interfaces are automatically enabled with NDP and NTDP on member switches. NDP
and NTDP, however, are not required on interfaces unrelated to the cluster. Therefore, you need
to disable NDP or NTDP on unrelated interfaces. As a result, less packets are transmitted and
the topology of the cluster is stable.
l
l
l
l
Issue 01 (2012-03-15)
After receiving the batch restart command, member switches wait 1 second to guarantee
the pervasion of control packets throughout the cluster.
Incremental configuration can be performed only on the administrator switch.
Incremental configuration is applied to the scenario of configuring member switches in
batches and is performed once on selected switches.
After incremental configuration is performed, a result list is returned to report the command
output on each member switch. If an error occurs during the command execution, the faulty
command can be located according to the sequence number.
Latter execution results of the incremental configuration overwrite previous ones and only
the last result is saved.
You can edit a configuration command list in the incremental configuration view. The
command execution is closely related to specific views and its sequence is the same as that
on a device.
To perform configuration synchronization, you need to specify an FTP server in advance.
On the administrator switch, disable NDP or NDTP on unrelated interfaces in the cluster.
After you disable NDP on unrelated interfaces in the cluster, NDP packets of the interfaces
are not sent to the administrator switch.
After you disable NTDP on unrelated interfaces in the cluster, NTDP packets of the
interfaces are not sent to the administrator switch.
When the topology of the cluster becomes stable, the unrelated interfaces in the cluster are
defined as interfaces that have not NDP neighbors.
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
3 HGMP Configuration
84

Advertisement

Table of Contents
loading

This manual is also suitable for:

S9300e

Table of Contents