NETGEAR GS728TS Admin Manual

NETGEAR GS728TS Admin Manual

Gigabit smart switches
Hide thumbs Also See for GS728TS:
Table of Contents

Advertisement

350 East Plumeria Drive
San Jose, CA 95134
USA
February 2012
202-10995-01
v1.0
GS728TS, GS728TPS,
GS752TS, and GS752TPS
Gigabit Smart Switches
Software Administration Manual

Advertisement

Table of Contents
loading

Summary of Contents for NETGEAR GS728TS

  • Page 1 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Software Administration Manual 350 East Plumeria Drive San Jose, CA 95134 February 2012 202-10995-01 v1.0...
  • Page 2: Technical Support

    NETGEAR, Inc. Technical Support Thank you for choosing NETGEAR. To register your product, get the latest product updates, get support online, or for more information about the topics covered in this manual, visit the Support website at http://support.netgear.com...
  • Page 3: Table Of Contents

    Contents Chapter 1 Getting Started Getting Started with the Smart Switches ......10 Switch Management Interface ........10 Connecting the Switch to the Network .
  • Page 4 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches PoE/PoE+ (GS728TPS and GS752TPS Only)..... . 70 PoE Configuration ......... 70 PoE Port Configuration.
  • Page 5 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Spanning Tree Protocol ........122 STP Switch Configuration.
  • Page 6 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches IPv6 Class Configuration ........189 Policy Configuration .
  • Page 7 Switch Specifications ........300 GS728TS Specifications........300 GS728TPS Specifications .
  • Page 8 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Switch Features and Defaults ....... . . 302 Traffic Control .
  • Page 9: Document Organization

    GS728TS, GS728TPS, GS752TS, and GS752TPS Smart Switch Software ® Administration Manual describes how to configure and operate the GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches by using the Web-based graphical user interface (GUI). This manual describes the software configuration procedures and explains the options available within those procedures.
  • Page 10: Getting Started With The Smart Switches

    Getting Started with the Smart Switches This chapter provides an overview of starting your GS728TS, GS728TPS, GS752TS, or GS752TPS Smart Switch and accessing the user interface. It also leads you through the steps to use the Smart Control Center utility. This chapter contains the following sections: •...
  • Page 11: Connecting The Switch To The Network

    In addition to enabling NETGEAR switch discovery, the Smart Control Center provides several utilities to help you maintain the NETGEAR switches on your network, such as password management, firmware upgrade, and configuration file backup. For more...
  • Page 12: Switch Discovery In A Network With A Dhcp Server

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Switch Discovery in a Network with a DHCP Server This section describes how to set up your switch in a network that has a DHCP server. The DHCP client on the switch is enabled by default. When you connect it to your network, the DHCP server will automatically assign an IP address to your switch.
  • Page 13 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Make a note of the displayed IP address assigned by the DHCP server. You will need this value to access the switch directly from a Web browser (without using the Smart Control Center).
  • Page 14: Switch Discovery In A Network Without A Dhcp Server

    Install the Smart Control Center on your computer. Start the Smart Control Center. Click Discover for the Smart Control Center to find your GS728TS, GS728TPS, GS752TS, or GS752TPS switch. The utility broadcasts Layer 2 discovery packets within the broadcast domain to discover the switch.You should see a screen similar to Figure 1 on page 12.
  • Page 15: Configuring The Network Settings On The Administrative System

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Choose the Disabled radio box to disable DHCP. Enter the static switch IP address, gateway IP address and subnet mask, and then type your password and click Apply. Tip: You must enter the current password every time you use the Smart Control Center to update the switch setting.
  • Page 16: Web Access

    Open a Web browser and enter the IP address of the switch in the address field. You must be able to ping the IP address of the GS728TS, GS728TPS, GS752TS, or GS752TPS management interface from your administrative system for Web access to be available.
  • Page 17: Smart Control Center Utilities

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Clicking Web Browser Access on the Smart Control Center or accessing the switch directly from your Web browser displays the login screen shown in the following figure. Figure 2. Login Screen Smart Control Center Utilities In addition to device discovery and network address assignment, the Smart Control Center includes several maintenance features.
  • Page 18: Configuring The Device

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Configuring the Device To modify switch information: Select the switch. Click Configure Device. Additional fields appear on the screen. To assign or update a static IP address, default gateway, or subnet mask, disable the DHCP client and enter the new information.
  • Page 19: Configuration Upload And Download

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Configuration Upload and Download When you make changes to the switch, the configuration information is stored in a file on the switch. You can backup the configuration by uploading the configuration file from the switch to an administrative system.
  • Page 20: Firmware Upgrade

    Click the Tasks tab to view status information about the configuration download. Firmware Upgrade The application software for the GS728TS, GS728TPS, GS752TS, and GS752TPS Smart Switches is upgradeable, enabling your switch to take advantage of improvements and additional features as they become available. The upgrade procedure and the required equipment are described in this section.
  • Page 21 Run this FW after download option is clear. Note: NETGEAR recommends that you download the same image as the primary and secondary image for redundancy. Click Apply. Enter the switch password to continue downloading the firmware.
  • Page 22: Viewing And Managing Tasks

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches WARNING: It is important that you do not power-off the administrative system or the switch while the firmware upgrade is in progress. Viewing and Managing Tasks From the Tasks tab, you can view information about configuration downloads and firmware upgrades that have already occurred, are in progress, or are scheduled to take place at a later time.
  • Page 23: Understanding The User Interfaces

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Understanding the User Interfaces The GS728TS, GS728TPS, GS752TS, and GS752TPS switches software includes a set of comprehensive management functions for configuring and monitoring the system by using one of the following methods: •...
  • Page 24 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Navigation Tab Feature Link Help Link Logout Button Help Page Page Menu Configuration Status and Options Figure 3. Administrative Page Layout Navigation Tabs, Feature Links, and Page Menu The navigation tabs along the top of the Web interface give you quick access to the various switch functions.
  • Page 25: Configuration And Monitoring Options

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Page Link Configuration Pages Figure 4. Menu Hierarchy Configuration and Monitoring Options The area directly under the feature links and to the right of the page menu displays the configuration information or status for the page you select. On pages that contain configuration options, you can input information into fields or select options from drop-down menus.
  • Page 26: Device View

    Gray is applicable for ports 27 and 28 on the GS728TS/GS728TPS and ports 51 and 52 on the GS752TS/GS752TPS and indicates that the port is working in stack mode. The LED of the port speed illuminates either green or yellow.
  • Page 27 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following figure shows the Device View of the GS728TS. The following figure shows the Device View of the GS728TPS. The following figure shows the Device View of the GS752TS. The following figure shows the Device View of the GS752TPS.
  • Page 28 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches If you click the graphic, but do not click a specific port, the main menu appears, as the following figure shows. This menu contains the same option as the navigation tabs at the top...
  • Page 29: Using Snmp

    < >| Using SNMP The GS728TS, GS728TPS, GS752TS, and GS752TPS switches software supports the configuration of SNMP groups and users that can manage traps that the SNMP agent generates. GS728TS, GS728TPS, GS752TS, and GS752TPS switches use both standard public MIBs for standard functionality and private MIBs that support additional switch functionality.
  • Page 30: Interface Naming Convention

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Interface Naming Convention The GS728TS, GS728TPS, GS752TS, and GS752TPS switches software supports physical and logical interfaces. Interfaces are identified by their type and the interface number. The physical ports are gigabit interfaces and are numbered on the front panel. You can configure the logical interfaces by using the software.
  • Page 31: Management

    Configuring System Information Use the features in the System tab to define the switch’s relationship to its environment. The System tab contains links to the following features: • Management on page 31 • Stacking on page 61 • PoE/PoE+ (GS728TPS and GS752TPS Only) on page 70 •...
  • Page 32: System Information

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches System Information After a successful login, the System Information page displays. Use this page to configure and view general device information. To display the System Information page, click System > Management > System Information.
  • Page 33: Slot Information

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Date & Time The current date and time. System Up Time Displays the number of days, hours, and minutes since the last system restart. Base MAC Address The universally assigned network address.
  • Page 34 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Click Refresh to refresh the screen with most recent data. The following table describes the status information the Slot Information displays. Field Description Slot Summary Slot Identifies the slot using the format unit/slot.
  • Page 35: Ip Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches IP Configuration Use the IP Configuration page to configure network information for the management interface, which is the logical interface used for in-band connectivity with the switch through any of the switch's front panel ports. The configuration parameters associated with the switch's network interface do not affect the configuration of the front panel ports through which traffic is switched or routed.
  • Page 36 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Specify the VLAN ID for the management VLAN. The management VLAN is used to establish an IP connection to the switch from a workstation that is connected to a port in the same VLAN. If not specified, the active management VLAN ID is 1 (default), which allows an IP connection to be established through any port.
  • Page 37: Ipv6 Network Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches IPv6 Network Configuration Use the IPv6 Network Configuration page to configure the IPv6 network interface, which is the logical interface used for in-band connectivity with the switch via all of the switch's front-panel ports.
  • Page 38: Ipv6 Network Neighbor

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure the network information for an IPv6 network: Admin Mode. Enable or disable the IPv6 network interface on the switch. The default value is Enable. IPv6 Address Auto Configuration Mode. The IPv6 address for the IPv6 network interface is set in auto configuration mode if this option is enabled.
  • Page 39 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Click Clear to delete all entries from the table. The table is repopulated as the IPv6 neighbors are discovered on the network. Click Refresh to refresh the screen with most recent data.
  • Page 40: Time

    Network Time Protocol (SNTP). You can also set the system time manually. SNTP assures accurate network device clock time synchronization up to the millisecond. Time synchronization is performed by a network SNTP server. The GS728TS, GS728TPS, GS752TS, and GS752TPS switches operate only as SNTP clients and cannot provide time services to other systems.
  • Page 41: Time Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Time Configuration Use the Time Configuration page to view and adjust date and time settings. To display the Time Configuration page, click System > Management > Time > SNTP Global Configuration. To configure the time by using the CPU clock cycle as the source: From the Clock Source field, select Local.
  • Page 42 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure the time through SNTP: From the Clock Source field, select SNTP. When the Clock Source is set to SNTP, the Date and Time fields are grayed out (disabled). The switch gets the date and time from the network.
  • Page 43: Sntp Server Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Address Type Specifies the address type of the SNTP Server address for the last received valid packet. Server Stratum Specifies the claimed stratum of the server for the last received valid packet.
  • Page 44 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure a new SNTP Server: Enter the appropriate SNTP server information in the available fields: • Server Type. Specifies whether the address for the SNTP server is an IP address (IPv4) or hostname (DNS).
  • Page 45: Denial Of Service

    Click Refresh to refresh the page with the most current data from the switch. Denial of Service Use the Denial of Service (DoS) page to configure DoS control. The GS728TS, GS728TPS, GS752TS, and GS752TPS switches provide support for classifying and blocking specific types of DoS attacks.
  • Page 46 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To access the Auto-DoS Configuration page, click System > Management > Denial of Service > Auto-DoS Configuration. To configure the Auto-DoS feature: Select a radio button to enable or disable Auto-DoS: •...
  • Page 47 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches DoS Configuration The DoS Configuration page lets you to select which types of DoS attacks for the switch to monitor and block. To access the DoS Configuration page, click System > Management > Denial of Service >...
  • Page 48 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Denial of Service Max ICMPv6 Packet Size. Specify the maximum allowed IPv6 ICMP packet size. If ICMPv6 DoS prevention is enabled, the switch will drop IPv6 ICMP ping packets that have a size greater than this configured maximum ICMPv6 packet size.
  • Page 49: Dns

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Denial of Service TCP SYN&FIN. Enable or disable this option by selecting the appropriate radio button. Enabling TCP SYN & FIN DoS prevention causes the switch to drop packets that have TCP Flags SYN and FIN set. The factory default is disabled.
  • Page 50: Host Configuration

    (for example, if default domain name is netgear.com and the user enters test, then test is changed to test.netgear.com to resolve the name). The name can contain 1–255 characters.
  • Page 51: Green Ethernet

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To remove an entry from the static DNS table, select the check box next to the entry and click Delete. To change the hostname or IP address in an entry, select the check box next to the entry and enter the new information in the appropriate field, and then click Apply.
  • Page 52 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure the Green Ethernet feature: Enable or disable the Auto Power-Down Mode. • Enable. When the port link is down, the PHY automatically goes down for a short period of time and then wakes up to check link pulses. This behavior saves power consumption when there is no link partner while still allowing the port to perform auto-negotiation if a link partner does become present.
  • Page 53 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Green Ethernet Interface Configuration Use this page to configure Green Ethernet features on a per-port basis. The Green Ethernet modes must be administratively enabled on the switch for the mode enabled on the port to take effect.
  • Page 54 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Enable or disable the EEE Mode: • Enable. The switch allows ports to transition to low-power mode during link idle conditions. Short cable mode and EEE mode cannot be enabled on the same port simultaneously.
  • Page 55 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure or view details about the Green Ethernet feature on a port: Within the Local Device Information, select the port to view or configure from the Interface menu. Enable or disable the Energy Detect, Short Reach, or EEE administrative modes on the interface.
  • Page 56 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Tx_dll_ready Data Link Layer ready: This variable indicates that the tx system initialization is complete and is ready to update/receive LLDP PDUs containing EEE TLV. Rx_dll_enabled Status of the EEE capability negotiation on the local system.
  • Page 57 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Green Ethernet Summary This page summarizes the Green Ethernet Summary settings currently in use.    To access this page, click System Management Green Ethernet Green Ethernet Summary. The following table describes the information available on the Green Mode Statistics Summary page.
  • Page 58 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Unit Identifies the stack member number. Green Features supported List of Green Features supported on the given unit which could be one or on this unit more of the following: •...
  • Page 59 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Green Ethernet LPI History Use this page to set the sampling interval for EEE LPI data and to specify the number of samples to keep. From this page, you can also view per-port EEE LPI data.
  • Page 60 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The page also provides the information shown in the following table: Field Description Percentage LPI time per Time spent in LPI mode since EEE counters are last cleared. Stack Sample No Sample index.
  • Page 61: Stacking

    Stacking on the GS728TS, GS728TPS, GS752TS, and GS752TPS switches supports the following: • Up to six switches per stack, which can be any combination of GS728TS, GS728TPS, GS752TS, or GS752TPS switches. • Single IP address management through a web browser or the SCC.
  • Page 62: Firmware Synchronization And Upgrade

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Firmware Synchronization and Upgrade All stack members must run the same software version to ensure compatibility within the stack. By default, if a unit is added to the stack and its software version is not the same as the stack master, that unit is not allowed to join the stack.
  • Page 63: Factory Defaults Reset Behavior

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches When the stack is powered up and completes the boot process or the original stack master becomes unavailable, the stack master is determined through an election process. The rules for stack master Election are as follows: •...
  • Page 64 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To select a new stack master: In the Management Unit Selected menu, select the unit ID of the stack member to become the stack master. A message indicating that moving stack management will unconfigure entire stack including all interfaces.
  • Page 65 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To change the settings for an existing stack member: Select the check box next to the stack member to configure. If desired, specify a new unit ID for the stack member in the Change to Switch ID field. The renumbering process causes the unit to reload.
  • Page 66: Stack Port Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table describes the Basic Stack Status fields. Field Description Unit ID The unit ID of the specific switch. Switch Description The description for the unit can be configured by the user.
  • Page 67 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure the mode of the stack ports: Select the check box associated with the unit and port to configure: From the Configured Stack Mode field, select the operating mode: • Stack. The port connects to the stack port on another stack member. This is the default value.
  • Page 68: Stack Port Diagnostics

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Stack Port Diagnostics This page displays the diagnostics for all the stackable interfaces in the given stack.    To display the Stack Port Diagnostics page, click System Stacking Advanced Stack Port Diagnostics.
  • Page 69: Stack Firmware Synchronization

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Stack Firmware Synchronization To display the stack firmware synchronization configurations from the Stack Firmware    Synchronization page, click System Stacking Advanced Stack Firmware Synchronization. A screen similar to the following is displayed.
  • Page 70: Poe/Poe+ (Gs728Tps And Gs752Tps Only)

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches PoE/PoE+ (GS728TPS and GS752TPS Only) Ports g1–g8 on the GS728TPS and GS752TPS are PoE+ (IEEE 802.3at) compliant ports. Each port is capable of delivering up to 30W of reliable, uninterrupted power to connected PoE-powered devices (PD).
  • Page 71 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure PoE trap settings: If you are managing a stack of switches, select the ID of the stack member to configure from the Unit menu. Specify the percentage of the threshold power that must be consumed before a trap is sent.
  • Page 72: Poe Port Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches PoE Port Configuration Use the PoE Port Configuration page to configure per-port PoE settings. To display the PoE Port Configuration page, click System > PoE > Advanced > PoE Port Configuration. To configure PoE Port settings: Select the check box next to the port to configure.
  • Page 73 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • High Power Mode. Select the power-up mode for the port • Disable: A port is powered in the IEEE 802.3af mode. (Default) • Legacy: A port is powered using high-inrush current, which is used by legacy powered devices (PDs) with a power requirement greater than 15W from power •...
  • Page 74 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Status. View the operational status of the port PD detection. • Disabled. Indicates no power is being delivered. • DeliveringPower. Indicates power is being drawn by a connected device. • Fault. Indicates a problem with the port.
  • Page 75: Snmp

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches SNMP From SNMP link under the System tab, you can configure SNMP settings for SNMPv1/v2 and SNMPv3. From the SNMP link, you can access the following pages: • SNMPv1/v2 on page 75 •...
  • Page 76 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure SNMP communities: To add a new SNMP community, enter community information in the available fields described below, and then click Add. • Management Station IP. Specify the IP address of the management station.Together,...
  • Page 77: Trap Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Trap Configuration This page displays an entry for every active Trap Receiver. To access this page, click System > SNMP > SNMP V1/V2 > Trap Configuration. To configure SNMP trap settings: To add a host that will receive SNMP traps, enter trap configuration information in the available fields described below, and then click Add.
  • Page 78: Trap Flags

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Trap Flags The pages in the Trap Manager folder allow you to view and configure information about SNMP traps the system generates. Use the Trap Flags page to enable or disable traps the switch can send to an SNMP manager.
  • Page 79: Snmp Supported Mibs

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches SNMP Supported MIBs The SNMP Supported MIBs page lists the MIBs available for management by using a SNMP-based network management system. To access the page, click System > SNMP > SNMP V1/V2 > Supported MIBs.
  • Page 80: Lldp

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The SNMPv3 Access Mode is a read-only field that shows the access privileges for the user account. The admin account always has Read/Write access, and all other accounts have Read Only access.
  • Page 81: Lldp Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches ports. The application is responsible for starting each transmit and receive state machine appropriately, based on the configured status and operational state of the port. The Link Layer Discovery Protocol-Media Endpoint Discovery (LLDP-MED) is an enhancement to LLDP with the following features: •...
  • Page 82: Lldp Port Settings

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • TLV Advertised Interval. Specify the interval at which frames are transmitted. The default is 30 seconds, and the valid range is 5–32768 seconds. • Hold Multiplier. Specify multiplier on the transmit interval to assign to Time-to-Live (TTL).
  • Page 83: Lldp-Med Network Policy

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure LLDP port settings: Change the LLDP port settings described below: • Interface. Specifies the port to be affected by these parameters. • Admin Status. Select the status for transmitting and receiving LLDP packets: •...
  • Page 84 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches From the Interface menu, select the interface with the information to view. The following table describes the LLDP-MED network policy information that displays on the screen. Field Description Device Information Chassis ID Subtype Identifies the type of data the local switch displays in the Chassis ID field.
  • Page 85: Lldp-Med Port Settings

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches LLDP-MED Port Settings Use this page to enable LLDP-MED mode on an interface and configure its properties. To display this page, click System > LLDP > Advanced > LLDP-MED Port Settings. To configure LLDP-MED settings for a port: From the Port field, select the port to configure.
  • Page 86: Local Information

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Local Information Use the LLDP Local Information page to view the data that each port advertises through LLDP. To display the LLDP Local Device Information page, click System > Advanced > LLDP >...
  • Page 87 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches A popup window displays information for the selected port. The following table describes the detailed local information that displays for the selected port. Field Description Managed Address Address SubType Displays the type of address the management interface uses, such as an IPv4 address.
  • Page 88: Neighbors Information

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description MED Details Capabilities Supported Displays the MED capabilities enabled on the port. Current Capabilities Displays the TLVs advertised by the port. Device Class Network Connectivity indicates the device is a network connectivity device.
  • Page 89 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table describes the information that displays for all LLDP neighbors that have been discovered. Field Description MSAP Entry Displays the Media Service Access Point (MSAP) entry number for the remote device.
  • Page 90 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches A popup window displays information for the selected port. The following table describes the fields in the popup window. Field Description Port Details Local Port Displays the interface on the local system that received LLDP information from a remote system.
  • Page 91 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description MED Details Capabilities Supported Specifies the supported capabilities that were received in MED TLV from the device. Current Capabilities Specifies the advertised capabilities that were received in MED TLV from the device.
  • Page 92: Services - Dhcp Snooping

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Network Policies Application Type Specifies the media application type associated with the policy advertised by the remote device. VLAN ID Specifies the VLAN ID associated with the policy. VLAN Type Specifies whether the VLAN associated with the policy is tagged or untagged.
  • Page 93: Dhcp Snooping Global Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches DHCP Snooping Global Configuration Use the DHCP Snooping Global Configuration page to enable or disable the DHCP Snooping feature on the switch. To access the DHCP Snooping Configuration page, click System> Services > DHCP Snooping >...
  • Page 94: Interface Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Interface Configuration Use the DHCP Snooping Interface Configuration page to view and configure each port or LAG as trusted or untrusted. Any DHCP responses received on a trusted port are forwarded. If a port is configured as untrusted, any DHCP (or BootP) responses received on that port are discarded.
  • Page 95: Binding Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Use the Rate Limit (pps) field to specify the rate limit value for DHCP Snooping purpose. If the incoming rate of DHCP packets exceeds the value of this object for consecutively burst interval seconds, the port will be shutdown.
  • Page 96 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure static DHCP bindings in the database: Select the interface to add a static binding to into the DHCP snooping database. Specify the MAC address for the binding to be added. This is the key to the binding database.
  • Page 97: Persistent Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Persistent Configuration Use the DHCP Snooping Persistent Configuration page to configure the persistent location of the DHCP snooping database. Bindings that are not written to the persistent file are lost when the system reboots.
  • Page 98: Statistics

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Statistics Use this page to view per-interface DHCP snooping statistics.    To access the DHCP Snooping Statistics page, click System Services DHCP Snooping Statistics. Use the DHCP Snooping Statistics page to view the DHCP Snooping statistics.
  • Page 99: Timer Schedule (Gs728Tps And Gs752Tps Only)

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Timer Schedule (GS728TPS and GS752TPS Only) Timers control when power can and cannot be delivered to the port. Use the following general steps to add a timer to a port: Create the timer on the Timer Global Configuration page.
  • Page 100: Timer Schedule Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To add a timer, enter a name in the Timer Schedule Name field, and click Add. To remove a timer, select the check box associated with the timer and click Delete. To enable or disable the timer feature, select the appropriate radio button and click Apply.
  • Page 101 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches If required, use the Recurrence Pattern and Daily Mode fields to customize the power shutdown schedule. These fields are available only if the scheduler type is periodic. Click Add to add the new entry to the selected timer schedule.
  • Page 102: Ports

    Configuring Switching Information Use the features in the Switching tab to define Layer 2 features. The Switching tab contains links to the following features: • Ports on page 102 • Link Aggregation Groups on page 105 • VLANs on page 110 •...
  • Page 103 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure port settings: To configure settings for a physical port, click the unit ID of the stack member with the ports to configure. To configure settings for a Link Aggregation Group (LAG), click LAGS.
  • Page 104: Flow Control

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Link Status. Indicates whether the Link is up or down. • Link Trap. This object determines whether or not to send a trap when link status changes. The factory default is Enable.
  • Page 105: Link Aggregation Groups

    When a port is added to a LAG as a static member, it neither transmits nor receives LACP PDUs. The GS728TS, GS728TPS, GS752TS, and GS752TPS Smart Switches each support four LAGs.
  • Page 106 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure LAG settings: Select the check box next to the LAG to configure. You can select multiple LAGs to apply the same setting to the selected interfaces. Select the check box in the heading row to apply the same settings to all interfaces.
  • Page 107: Lag Membership

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches LAG Membership Use the LAG Membership page to select two or more full-duplex Ethernet links to be aggregated together to form a link aggregation group (LAG), which is also known as a port-channel.
  • Page 108: Lacp Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches LACP Configuration To display the LACP Configuration page, click Switching> LAG > Advanced > LACP Configuration. To configure LACP: From the LACP System Priority field, specify the device’s link aggregation priority relative to the devices at the other ends of the links on which link aggregation is enabled.
  • Page 109: Lacp Port Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches LACP Port Configuration To display the LACP Port Configuration page, click Switching> LAG > Advanced > LACP Port Configuration. To configure LACP port priority settings: Select the check box next to the port to configure. You can select multiple ports to apply the same setting to all selected ports.
  • Page 110: Vlans

    116 VLAN Configuration Use the VLAN Configuration page to define VLAN groups stored in the VLAN membership table. The GS728TS, GS728TPS, GS752TS, and GS752TPS each support up to 256 VLANs. Three VLANs are created by default: • VLAN 1 is the default VLAN of which all ports are members.
  • Page 111 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure VLANs: To add a VLAN, configure the VLAN ID, name, and type, and then click Add. • VLAN ID. Specify the VLAN Identifier for the new VLAN. (You can only enter data in this field when you are creating a new VLAN.) The range of the VLAN ID is 1–4093.
  • Page 112: Vlan Membership Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches VLAN Membership Configuration Use this page to configure VLAN Port Membership for a particular VLAN. You can select the Group operation through this page. To display the VLAN Membership Configuration page, click Switching> VLAN > Advanced >...
  • Page 113: Port Vlan Id Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Use the Group Operations field to select all the ports and configure them. Possible values are: • Untag All: Select all the ports on which all frames transmitted from this VLAN will be untagged.
  • Page 114: Mac Based Vlan

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure PVID settings for both physical ports and LAGs, click ALL. Select the check box next to the interfaces to configure. You can select multiple interfaces to apply the same setting to the selected interfaces. Select the check box in the heading row to apply the same settings to all interfaces.
  • Page 115: Protocol Based Vlan Group Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure a MAC-based VLAN: In the MAC Address field, specify the valid MAC Address to be bound to a VLAN ID. This field is configurable only when a MAC Based VLAN is created. Select this entry.
  • Page 116: Protocol Based Vlan Group Membership

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches    To access the Protocol Based VLAN page, click Switching VLAN Advanced Protocol Based VLAN Group Configuration. To configure a Protocol Based VLAN Group: Enter a number used to identify the group created by the user. Group IDs should be assigned when a group is created by the user.
  • Page 117 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To set up Protocol Based VLAN Group Membership: Select the protocol-based VLAN Group ID for which you want to display or configure data in the Group ID drop-down menu. The Group Name field identifies the name for the protocol-based VLAN you selected.
  • Page 118: Voice Vlan

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Voice VLAN Configure the Voice VLAN settings for ports that carry traffic from IP phones. The Voice VLAN feature can help ensure that the sound quality of an IP phone is safeguarded from deteriorating when the data traffic on the port is high.
  • Page 119: Voice Vlan Port Setting

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Voice VLAN Port Setting To display the Voice VLAN Port Setting page, click Switching> Voice VLAN > Advanced > Port Setting. To configure Voice VLAN port settings: Select the check box next to the port to configure. You can select multiple check boxes to apply the same setting to all selected ports.
  • Page 120: Voice Vlan Oui

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Voice VLAN OUI The Organizational Unique Identifier (OUI) identifies the IP phone manufacturer. The switch comes preconfigured with the following OUIs: • 00:01:E3: SIEMENS • 00:03:6B: CISCO1 • 00:12:43: CISCO2 • 00:0F:E2: H3C •...
  • Page 121: Auto-Voip

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To modify information for an entry in the OUI list, select the check box next to the OUI prefix, update the OUI prefix or description, and then click Apply. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch.
  • Page 122: Spanning Tree Protocol

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Select the check box next to the port or LAG to configure. You can select multiple ports and LAGs to apply the same setting to the selected interfaces. Select the check box in the heading row to apply the same settings to all interfaces.
  • Page 123: Stp Switch Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • MST Configuration on page 130 • MST Port Configuration on page 131 • STP Statistics on page 134 STP Switch Configuration The Spanning Tree Switch Configuration/Status page contains fields for enabling STP on the switch.
  • Page 124 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Specify the configuration name and revision level. • Configuration Name. Name used to identify the configuration currently being used. It may be up to 32 alphanumeric characters. • Configuration Revision Level. Number used to identify the configuration currently being used.
  • Page 125: Cst Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches CST Configuration Use the Spanning Tree CST Configuration page to configure Common Spanning Tree (CST) and Internal Spanning Tree on the switch. To display the Spanning Tree CST Configuration page, click Switching > STP > Advanced >...
  • Page 126: Cst Port Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches state before forwarding packets. The value must be greater or equal to (Bridge Max Age / 2) + 1. The time range is from 4 seconds to 30 seconds. The default value is 15.
  • Page 127 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure CST port settings: To configure CST settings for a physical port, click the unit ID of the stack member with the ports to configure. To configure CST settings for a Link Aggregation Group (LAG), click LAGS.
  • Page 128: Cst Port Status

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches CST Port Status Use the Spanning Tree CST Port Status page to display Common Spanning Tree (CST) and Internal Spanning Tree on a specific port on the switch. To display the Spanning Tree CST Port Status page, click Switching > STP > Advanced >...
  • Page 129: Rapid Stp

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description CST Regional Root Displays the bridge priority and base MAC address of the CST Regional Root. CST Path Cost Displays the path Cost to the CST tree Regional Root. Port Forwarding State Displays the Forwarding State of this port.
  • Page 130: Mst Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches MST Configuration Use the Spanning Tree MST Configuration page to configure Multiple Spanning Tree (MST) on the switch. To display the Spanning Tree MST Configuration page, click Switching > STP > Advanced >...
  • Page 131: Mst Port Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches For each configured instance, the information described in the following table displays on the page. Field Description Bridge Identifier The bridge identifier for the selected MST instance. It is made up using the bridge priority and the base MAC address of the bridge.
  • Page 132 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Note: If no MST instances have been configured on the switch, the page displays a “No MSTs Available” message and does not display any fields. To configure MST port settings: To configure MST settings for a physical port, click the unit ID of the stack member with the ports to configure.
  • Page 133 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches 0. If you specify a number between 16 and 31, the priority is set to 16. It takes a value in the range of 0–240. • Port Path Cost. Set the Path Cost to a new value for the specified port in the selected MST instance.
  • Page 134: Stp Statistics

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Click Refresh to update the screen with the latest MST information. STP Statistics Use the Spanning Tree Statistics page to view information about the number and type of bridge protocol data units (BPDUs) transmitted and received on each port.
  • Page 135: Multicast

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Multicast Multicast IP traffic is traffic that is destined to a host group. Host groups are identified by class D IP addresses, which range from 224.0.0.0 to 239.255.255.255. From the Multicast link, you can access the following pages: •...
  • Page 136: Mfdb Statistics

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table describes the fields in the MFDB Table. Field Description MAC Address The MAC Address to which the multicast MAC address is related. To search by MAC address, enter the address with the MFDB table entry you want displayed.
  • Page 137: Auto-Video Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table describes the information available on the MFDB Statistics page: Field Description Max MFDB Table Entries Displays the maximum number of entries that the Multicast Forwarding Database table can hold.
  • Page 138: Igmp Snooping

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches IGMP Snooping Internet Group Management Protocol (IGMP) Snooping is a feature that allows a switch to forward multicast traffic intelligently on the switch. Multicast IP traffic is traffic that is destined to a host group. Host groups are identified by class D IP addresses, which range from 224.0.0.0 to 239.255.255.255.
  • Page 139 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure IGMP Snooping: Enable or disable IGMP Snooping on the switch. • Enable. The switch snoops all IGMP packets it receives to determine which segments should receive packets directed to the group address.
  • Page 140: Igmp Snooping Interface Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table displays information about the global IGMP snooping status and statistics on the page. Field Description Multicast Control Frame Displays the number of multicast control frames that have been processed Count by the CPU.
  • Page 141: Igmp Snooping Table

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure IGMP Snooping settings for both physical ports and LAGs, click ALL. Select the check box next to the port or LAG to configure. You can select multiple ports and LAGs to apply the same setting to the selected interfaces. Select the check box in the heading row to apply the same settings to all interfaces.
  • Page 142: Igmp Snooping Vlan Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table describes the fields in the IGMP Snooping Table. Field Description MAC Address A multicast MAC address for which the switch has forwarding and/or filtering information. The format is 6 two-digit hexadecimal numbers that are separated by colons, for example, 01:00:5e:45:67:89.
  • Page 143 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure IGMP snooping settings for VLANs: To enable IGMP snooping on a VLAN, enter the VLAN ID in the appropriate field and configure the IGMP Snooping values: • Fast Leave Admin Mode. Enable or disable the IGMP Snooping Fast Leave Mode for the specified VLAN ID.
  • Page 144: Igmp Snooping Querier

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To disable IGMP snooping on a VLAN and remove it from the list, select the check box next to the VLAN ID and click Delete. To modify IGMP snooping settings for a VLAN, select the check box next to the VLAN ID, update the desired values, and click Apply.
  • Page 145: Igmp Snooping Querier Vlan Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure IGMP Snooping Querier settings: From the Querier Admin Mode field, enable or disable the administrative mode for IGMP Snooping Querier. In the Snooping Querier Address field, specify the IP address to be used as source address in periodic IGMP queries.
  • Page 146: Igmp Snooping Querier Vlan Status

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure Querier VLAN settings: To create a new VLAN ID for IGMP Snooping, select New Entry from the VLAN ID field and complete the following fields: • VLAN ID. Specifies the VLAN ID for which the IGMP Snooping Querier is to be enabled.
  • Page 147: Mld Snooping

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table describes the information available on the Querier VLAN Status page. Field Description VLAN ID Specifies the VLAN ID on which the IGMP Snooping Querier is administratively enabled and for which VLAN exists in the VLAN database.
  • Page 148 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches that want to receive the data, instead of being flooded to all ports in a VLAN. This list is constructed by snooping IPv6 multicast control packets.   To access the MLD Snooping Configuration page, click Switching...
  • Page 149 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches MLD Interface Configuration MLD snooping can be enabled on the interfaces (physical and lag).   To access the MLD Snooping Configuration page, click Switching Multicast  Snooping Interface Configuration. To configure the MLD interface: To configure MLD Snooping settings for a physical port, click the unit ID of the stack member with the ports to configure.
  • Page 150: Mld Vlan Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Use the Fast Leave Admin Mode field to select the Fast Leave mode for a particular interface from the menu. The default is Disable. Click Apply to apply the new settings to the switch. Configuration changes take effect...
  • Page 151: Multicast Router Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Use the Multicast Router Expiry Time field to set the value for multicast router expiry time of MLD Snooping for the specified VLAN ID. Valid range is 0 to 3600. Click Add to enable MLD Snooping on the specified VLAN.
  • Page 152: Multicast Router Vlan Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure the Multicast Router: To configure multicast router settings for a physical port, click the unit ID of the stack member with the ports to configure. To configure multicast router settings for a Link Aggregation Group (LAG), click LAGS.
  • Page 153 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure the Multicast Router VLAN: Use the Interface menu to select the interface to configure. Enter the VLAN ID in the VLAN ID field for which the Multicast Router Mode is to be Enabled or Disabled.
  • Page 154 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches In the Query Interval field, specify the time interval in seconds between periodic queries sent by the snooping querier. The Query Interval must be a value in the range of 1–1800 seconds. The default value is 60.
  • Page 155 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Querier VLAN Address Specify the Snooping Querier Address to be used as source address in periodic MLD queries sent on the specified VLAN. Operational State Specifies the operational state of the IGMP Snooping Querier on a VLAN: •...
  • Page 156: Forwarding Database

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Forwarding Database The forwarding database maintains a list of MAC addresses after having received a packet from this MAC address. The transparent bridging function uses the forwarding database entries to determine how to forward a received frame.
  • Page 157 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To search for an entry in the MAC Address Table: Use the Search By field to search for MAC Addresses by MAC Address, VLAN ID, or Interface. • MAC Address: Select MAC Address from the menu and enter a six-byte hexadecimal MAC address in two-digit groups separated by colons, then click Go.
  • Page 158: Dynamic Address Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Dynamic Address Configuration Use the Dynamic Addresses page to set the amount of time to keep a learned MAC address entry in the forwarding database. The forwarding database contains static entries, which are never aged out, and dynamically learned entries, which are removed if they are not updated within a given time.
  • Page 159: Static Mac Address

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Static MAC Address Use the Static MAC Address Configuration page to configure and view static MAC addresses on an interface. To access the Static MAC Address Configuration page, click Switching> Address Table >...
  • Page 160: Configuring Ip Settings

    Configuring Routing The GS728TS, GS728TPS, GS752TS, and GS752TPS switches support IP routing. Use the links in the Routing menu to manage and monitor routing on the system. This section contains the following information: • Configuring IP Settings on page 160 •...
  • Page 161: Ip Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches IP Configuration Use the IP Configuration page to enable routing on the switch and to view global routing settings.  To access the IP Configuration page click Routing IP, then click the IP Configuration link.
  • Page 162: Ip Statistics

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches IP Statistics The statistics reported on the IP Statistics page are as specified in RFC 1213.  To access the page click Routing IP, then click the Statistics link.The following image shows some, but not all, of the fields the page displays.
  • Page 163 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description IpInUnknownProtos The number of locally-addressed datagrams received successfully but discarded because of an unknown or unsupported protocol. IpInDiscards The number of input IP datagrams for which no problems were encountered to prevent their continued processing, but which were discarded (e.g., for lack of buffer space).
  • Page 164 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description IcmpInMsgs The total number of ICMP messages which the entity received. Note that this counter includes all those counted by icmpInErrors. IcmpInErrors The number of ICMP messages which the entity received but determined as having ICMP-specific errors (bad ICMP checksums, bad length, etc.).
  • Page 165: Configuring Vlan Routing

    Click Refresh to update the page with the most current data. Configuring VLAN Routing You can configure GS728TS, GS728TPS, GS752TS, and GS752TPS switches software with some ports supporting VLANs and some supporting routing. You can also configure the software to allow traffic on a VLAN to be treated as if the VLAN were a router port.
  • Page 166 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Exclude ports not selected from the VLAN. • Enable routing on the VLAN using the IP address and subnet mask entered.  To display the page, click Routing VLAN, and then click the VLAN Routing Wizard link.
  • Page 167: Vlan Routing Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches VLAN Routing Configuration Use the VLAN Routing Configuration page to view information about the VLAN routing interfaces configured on the system or to assign an IP address and subnet mask to VLANs on the system.
  • Page 168: Configuring Router Discovery

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Configuring Router Discovery The Router Discovery protocol is used by hosts to identify operational routers on the subnet. Router Discovery messages are of two types: Router Advertisements and Router Solicitations. The protocol mandates that every router periodically advertise the IP Addresses it is associated with.
  • Page 169: Configuring And Viewing Routes

    Configuration changes take effect immediately. Configuring and Viewing Routes From the Routing Table page, you can configure static and default routes and view the routes that the GS728TS, GS728TPS, GS752TS, and GS752TPS has already learned.  To display the page click the Routing Routing Table link.
  • Page 170 To add a route, enter the route information into the appropriate fields and click Add. To delete a route, select the check box next to the route and click Delete. The Route Status table provides information about the routes the GS728TS, GS728TPS, GS752TS, and GS752TPS already has in its routing table.
  • Page 171: Configuring Arp

    ARP cache. Newer information always replaces existing content in the ARP cache. The GS728TS, GS728TPS, GS752TS, and GS752TPS switches support 1024 ARP entries, which includes dynamic and static ARP entries. Devices can be moved in a network, which means the IP address that was at one time associated with a certain MAC address is now found using a different MAC, or may have disappeared from the network altogether (i.e., it has been reconfigured, disconnected, or...
  • Page 172: Arp Cache

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches ARP Cache Use the ARP Cache page to view entries in the ARP table, a table of the remote connections most recently seen by this switch.   To display the page, click the Routing ARP, then click the Basic ARP Cache link.
  • Page 173: Arp Create

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Type The type of the ARP entry. Possible values are: • Local. An ARP entry associated with one of the switch’s routing interface’s MAC addresses. • Gateway. A dynamic ARP entry whose IP address is that of a router.
  • Page 174: Global Arp Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The Routing VLANs ARP Cache table displays the following information: Field Description Interface The routing interface associated with the ARP entry. IP Address The IP address of a device on a subnet attached to one of the switch's routing interfaces.
  • Page 175: Arp Entry Management

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure the global ARP settings: In the Age Time field, enter the value you want the switch to use for the ARP entry ageout time. You must enter a valid integer, which represents the number of seconds it will take for an ARP entry to age out.
  • Page 176 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To manage the ARP entries: To move certain type of entries, select the type of entries to remove from the Remove From Table menu. The choices listed specify the type of ARP Entry to be deleted: •...
  • Page 177: Chapter 5 Configuring Quality Of Service

    Configuring Quality of Service Use the features in the QoS tab to configure Quality of Service (QoS) settings on the switch. The QoS tab contains links to the following features: • Class of Service on page 177 • Differentiated Services on page 184 In a typical switch, each physical port consists of one or more queues for transmitting packets on the attached network.
  • Page 178: Basic Cos Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches From the Class of Service link under the QoS tab, you can access the following pages: • Basic CoS Configuration on page 178 • CoS Interface Configuration on page 179 • Interface Queue Configuration on page 180 •...
  • Page 179: Cos Interface Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure global CoS settings: Select the Global radio button to configure the trust mode settings that apply to all interfaces. Alternatively, you can select the Interface radio button to apply trust mode settings to individual interfaces.
  • Page 180: Interface Queue Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure CoS settings for an interface: To configure CoS settings for a physical port, click the unit ID of the stack member with the ports to configure. To configure CoS settings for a Link Aggregation Group (LAG), click LAGS.
  • Page 181 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To display the Interface Queue Configuration page, click the QoS > CoS tab, and then click the Advanced > Interface Queue Configuration link. To configure CoS queue settings for an interface: To configure CoS queue settings for a physical port, click the unit ID of the stack member with the ports to configure.
  • Page 182: 802.1P To Queue Mapping

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches 802.1p to Queue Mapping The 802.1p to Queue Mapping page also displays the Current 802.1p Priority Mapping table. To display the 801.p to Queue Mapping page, click QoS > CoS > Advanced > 802.1p to Queue Mapping.
  • Page 183: Dscp To Queue Mapping

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches DSCP to Queue Mapping Use the DSCP to Queue Mapping page to specify which internal traffic class to map the corresponding DSCP value. To display the IP DSCP Mapping page, click QoS > CoS > Advanced > DSCP to Queue Mapping.
  • Page 184: Differentiated Services

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Differentiated Services The QoS feature contains Differentiated Services (DiffServ) support that allows traffic to be classified into streams and given certain QoS treatment in accordance with defined per-hop behaviors. Standard IP-based networks are designed to provide “best effort” data delivery service. “Best effort”...
  • Page 185: Diffserv Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To display the page, click QoS > DiffServ. The Differentiated Services menu page contains links to the following features: • Diffserv Configuration on page 185 • Class Configuration on page 186 •...
  • Page 186: Class Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table describes the information displayed in the Status table on the DiffServ Configuration page: Field Description Class Table Displays the current and maximum number of rows of the class table.
  • Page 187 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure a DiffServ class: To create a new class, enter a class name, select the class type, and click Add. The switch supports only the Class Type value All, which means all the various match criteria defined for the class should be satisfied for a packet match.
  • Page 188 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Class of Service. Select the field and enter a class of service 802.1p user priority value to be matched for the packets. The valid range is 0–7. • VLAN. Select the field and enter a VLAN ID to be matched for packets. The VLAN ID range is 1–4093.
  • Page 189: Ipv6 Class Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • IP DSCP. Matches the packet’s DSCP to the class criteria’s when selected. Select the DSCP type from the menu or enter a DSCP value to match. If you select Other, enter a custom value in the DSCP Value field that appears.
  • Page 190 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure an IPv6 DiffServ class: To create a new class, enter a class name, select the class type, and click Add. The switch supports only the Class Type value All, which means all the various match criteria defined for the class should be satisfied for a packet match.
  • Page 191: Policy Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Source IP Address. Requires a packet’s source port IP address to match the address listed here. In the IP Address field, enter a valid source IP address in dotted decimal format.
  • Page 192 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure a DiffServ policy: To create a new policy, enter a policy name in the Policy Selector field, select the existing DiffServ class to associate with the policy, and click Add.
  • Page 193 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Select the queue to which packets of this policy-class will be assigned. Configure the policy attributes:. • Drop. Select this option to drop packets for this policy-class. • Mark CoS. Enter the specified Class of Service queue number to mark all packets for the associated traffic stream with the specified class of service value in the priority field of the 802.1p header.
  • Page 194 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Conform Action. Determines what happens to packets that are considered conforming (below the police rate). Select one of the following actions: • Send. (default) These packets are presented unmodified by DiffServ to the system forwarding element.
  • Page 195: Service Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Service Configuration Use the Service Configuration page to activate a policy on an interface. To display the page, click QoS > DiffServ > Advanced > Service Configuration. To configure DiffServ policy settings on an interface: To configure DiffServ policy settings for a physical port, click the unit ID of the stack member with the ports to configure.
  • Page 196: Service Statistics

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Service Statistics Use the Service Statistics page to display service-level statistical information about all interfaces that have DiffServ policies attached. To display the page, click the QoS > DiffServ tab and then click the Advanced > Service Statistics link.
  • Page 197: Management Security Settings

    Managing Device Security Use the features available from the Security tab to configure management security settings for port, user, and server security. The Security tab contains links to the following features: • Management Security Settings on page 197 • Configuring Management Access on page 210 •...
  • Page 198: Change Password

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Change Password Use the page to change the login password. To display the page, click Security > Management Security > User Configuration > Change Password. To change the login password for the management interface: Specify the current password in the Old Password.
  • Page 199: Radius Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches RADIUS Configuration RADIUS servers provide additional security for networks. The RADIUS server maintains a user database, which contains per-user authentication information. The switch passes information to the configured RADIUS server, which can authenticate a user name and password before authorizing use of the network.
  • Page 200 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure global RADIUS server settings: In the Max Number of Retransmits field, specify the value of the maximum number of times a request packet is retransmitted to the RADIUS server. Consideration to maximum delay time should be given when configuring RADIUS max retransmit and RADIUS timeout.
  • Page 201: Radius Server Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches RADIUS Server Configuration Use the RADIUS Server Configuration page to view and configure various settings for the current RADIUS server configured on the system. To access the RADIUS Server Configuration page, click Security > Management Security, and then click the RADIUS >...
  • Page 202 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch. The following table describes the RADIUS server statistics available on the page.
  • Page 203 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Accounting Server Configuration Use the RADIUS Accounting Server Configuration page to view and configure various settings for one or more RADIUS accounting servers on the network. To access the RADIUS Accounting Server Configuration page, click Security >...
  • Page 204: Configuring Tacacs

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table describes RADIUS accounting server statistics available on the page. Field Description Accounting Server Address Displays the IP address of the supported RADIUS accounting server. Round Trip Time (secs) Displays the time interval, in hundredths of a second, between the most recent Accounting-Response and the Accounting-Request that matched it from this RADIUS accounting server.
  • Page 205 TACACS+ server. In the Connection Timeout field, specify the maximum number of seconds allowed to establish a TCP connection between the GS728TS, GS728TPS, GS752TS, or GS752TPS and the TACACS+ server. The valid range is 1–30 seconds. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch.
  • Page 206 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches TACACS+ Server Configuration Use the TACACS+ Server Configuration page to configure up to five TACACS+ servers with which the switch can communicate. To display the TACACS+ Server Configuration page, click Security > Management Security, and then click the TACACS+ >...
  • Page 207: Authentication List Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Authentication List Configuration From the Authentication List pages, you can configure the login lists for HTTP, HTTPS, or IEEE 802.1X authentication. A login list specifies one or more authentication methods to validate switch or port access.
  • Page 208 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Use the menu in the 2 column to select the authentication method, if any, that should appear second in the selected authentication login list. This is the method that will be used if the first method times out.
  • Page 209 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • RADIUS: The user's ID and password will be authenticated using the RADIUS server. If you select RADIUS or TACACS+ as the first method and an error occurs during the authentication, the switch uses Method 2 to authenticate the user.
  • Page 210: Configuring Management Access

    If you make changes to the page, click Apply to apply the changes to the system. Configuring Management Access From the Access page, you can configure HTTP and Secure HTTP access to the GS728TS, GS728TPS, GS752TS, or GS752TPS management interface. You can also configure Access Control Profiles and Access Rules.
  • Page 211: Http Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches HTTP Configuration Use the HTTP Configuration page to configure the HTTP server settings on the system. To access the HTTP Configuration page, click Security > Access, and then click the HTTP >...
  • Page 212: Secure Http Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Secure HTTP Configuration Secure HTTP enables the transmission of HTTP over an encrypted Secure Sockets Layer (SSL) or Transport Layer Security (TLS) connection. When you manage the switch by using a Web interface, secure HTTP can help ensure that communication between the management system and the switch is protected from eavesdroppers and man-in-the-middle attacks.
  • Page 213: Certificate Management

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches After the session is inactive for the configured amount of time, the administrator is automatically logged out and must re-enter the password to access the management interface. A value of zero corresponds to an infinite timeout. The default value is 5 minutes.
  • Page 214: Certificate Download

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch. Certificate Download For the Web server on the switch to accept HTTPS connections from a management station, the Web server needs a public key certificate.
  • Page 215: Access Profile Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches In the TFTP Server IP field, specify the address of the TFTP server. The address can be an IP address in standard x.x.x.x format or a hostname. The hostname must start with a letter of the alphabet.
  • Page 216 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure an Access Profile: In the Access Profile Name field, specify the name of the access profile to be added. The maximum length is 32 characters. To activate an access profile, select the Activate Profile check box. You cannot add rules to an active profile.
  • Page 217: Access Rule Configuration

    To configure access profile rules: To add an access profile rule, configure the following settings and click Add. • Rule Type: Specify whether the rule permits or denies access to the GS728TS, GS728TPS, GS752TS, or GS752TPS management interface. • Select Permit to allow access to the management interface for traffic that meets the criteria you configure for the rule.
  • Page 218: Port Authentication

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Source IP Address. Specify the IP Address of the client originating the management traffic. • Mask. Specify the subnet mask associated with the IP address. The subnet mask is a standard subnet mask, and not an inverse (wildcard) mask that you use with IP ACLs.
  • Page 219: 802.1X Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches 802.1X Configuration Use the 802.1X Configuration page to enable or disable port access control on the system. To display the 802.1X Configuration page, click Security > Port Authentication > Basic > 802.1X Configuration.
  • Page 220: Port Authentication

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Enable or disable Dynamic VLAN Creation Mode: • Enable. If the RADIUS assigned VLAN does not exist on the switch, allow the switch to dynamically create the assigned VLAN. • Disable. The switch will not create a RADIUS-assigned VLAN for a client if it does not already exist.
  • Page 221 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure 802.1X settings for the port: Select the check box next to the port to configure. You can also select multiple check boxes to apply the same settings to the select ports, or select the check box in the heading row to apply the same settings to all ports.
  • Page 222 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Periodic Reauthentication. Use this field to enable or disable reauthentication of the supplicant for the specified port. Select Enable and Disable. If the value is Enable, reauthentication will occur. Otherwise, reauthentication will not be allowed. The default value is Disable.
  • Page 223 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Authenticator PAE State. This field displays the current state of the authenticator PAE state machine. Possible values are as follows: • Initialize • Disconnected • Connecting • Authenticating • Authenticated •...
  • Page 224: Port Summary

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Port Summary Use the Port Summary page to view information about the port access control settings on a specific port. To access the Port Summary page, click Security > Port Authentication > Advanced > Port Summary.
  • Page 225: Traffic Control

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Reauthentication Displays if reauthentication is enabled on the selected port. This is a Enabled configurable field. The possible values are true and false. If the value is true, reauthentication will occur. Otherwise, reauthentication will not be allowed.
  • Page 226 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure MAC filter settings: To configure a new MAC filter: a. Select Create Filter from the MAC Filter menu. If no filters have been configured, this is the only option available.
  • Page 227: Mac Filter Summary

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches e. Click the orange bar to display the available ports and select the port(s) you to include in the outbound filter. Packets with the MAC address and VLAN ID you selected will be transmitted only out of ports that are in the list. Destination ports can be included only in the Multicast filter.
  • Page 228: Storm Control

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table describes the information displayed on the page: Field Description MAC Address Identifies the MAC address that is filtered. VLAN ID The VLAN ID used with the MAC address to fully identify packets you want filtered.
  • Page 229 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure storm control settings: Select the check box next to the port to configure. Select multiple check boxes to apply the same setting to all selected ports. Select the check box in the heading row to apply the same settings to all ports.
  • Page 230: Port Security Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Port Security Configuration Use the Port Security feature to lock one or more ports on the system. When a port is locked, only packets with an allowable source MAC addresses can be forwarded. All other packets are discarded.
  • Page 231: Port Security Interface Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Port Security Interface Configuration A MAC address can be defined as allowable by one of two methods: dynamically or statically. Both methods are used concurrently when a port is locked. Dynamic locking implements a first arrival mechanism for Port Security. You specify how many addresses can be learned on the locked port.
  • Page 232: Security Mac Address

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Specify the following settings: • Port Security. Enable or Disable the port security feature for the selected port. • Max Allowed Dynamically Learned MAC. Sets the maximum number of dynamically learned MAC addresses on the selected interface. Valid range is 0–600.
  • Page 233: Protected Ports Membership

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The Dynamic MAC Address Table shows the MAC addresses and their associated VLANs learned on the selected port. Use the Port List menu to select the interface for which you want to display data.
  • Page 234: Configuring Access Control Lists

    The GS728TS, GS728TPS, GS752TS, and GS752TPS switches software supports IPv4, IPv6, and MAC ACLs.
  • Page 235: Acl Wizard

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches ACL Wizard The ACL Wizard helps you to create a simple ACL and apply to the selected ports easily and quickly. You can select an ACL type from a list of common ACLs. The ACL rule fields available on the page change based on the type of ACL you select.
  • Page 236 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • ACL Based on Source IPv4 - Use this to create a ACL based on the source IPv4 address and IPv4 address mask. • ACL Based on Destination IPv6 - Use this to create a ACL based on the destination IPv6 prefix and IPv6 prefix length.
  • Page 237: Mac Acl

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches MAC ACL A MAC ACL consists of a set of rules which are matched sequentially against a packet. When a packet meets the match criteria of a rule, the specified rule action (Permit/Deny) is taken and the additional rules are not checked for a match.
  • Page 238: Mac Rules

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches MAC Rules Use the MAC Rules page to define rules for MAC-based ACLs. The access list definition includes rules that specify whether traffic matching the criteria is forwarded normally or discarded. A default 'deny all' rule is the last rule of every list.
  • Page 239 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches MAC addresses with aa:bb:xx:xx:xx:xx result in a match (where x is any hexadecimal number). A MAC mask of 00:00:00:00:00:00 matches a single MAC address. • EtherType Key. Requires a packet’s EtherType to match the EtherType you select.
  • Page 240: Mac Binding Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches MAC Binding Configuration When an ACL is bound to an interface, all the rules that have been defined are applied to the selected interface. Use the MAC Binding Configuration page to assign MAC ACL lists to ACL Priorities and Interfaces.
  • Page 241: Mac Binding Table

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches In the following figure, the MAC ACL named mac-acl2 is being applied to ports g13 and g20-g22. As the Interface Binding Status table indicates, these ports also have a MAC ACL named mac-acl applied in the inbound direction.
  • Page 242: Ip Acl

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table describes the information displayed in the MAC Binding Table. Field Description Interface Displays the interface to which the MAC ACL is bound. Direction Specifies the packet filtering direction for ACL. The only valid direction is Inbound, which means the MAC ACL rules are applied to traffic entering the port.
  • Page 243: Ip Rules

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The IP ACL area shows the current size of the ACL table versus the maximum size of the ACL table. The current size is equal to the number of configured IPv4 plus the number of configured MAC ACLs.
  • Page 244 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure rules for an IP ACL: To add an IP ACL rule, select the ACL ID to add the rule to and click Add. The page refreshes and shows the available rules to configure.
  • Page 245: Ip Extended Rule

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Match Every. Requires a packet to match the criteria of this ACL. Select True or False from the drop down menu. Match Every is exclusive to the other filtering rules, so if Match Every is True, the other rules on the screen are not available.
  • Page 246 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure rules for an IP ACL: To add an IP ACL rule, select the ACL ID to add the rule to and click Add. The page displays the extended ACL Rule Configuration fields, as the following figure shows.
  • Page 247 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches time period. If the Access List Trap Flag is also enabled, this will cause periodic traps to be generated indicating the number of times this rule was hit during the current report interval. A fixed five-minute report interval is used for the entire system. A trap is not issued if the ACL rule hit count is zero for the current interval.
  • Page 248: Ipv6 Acl

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Service Type. Choose one of the Service Type match conditions for the extended IP ACL rule. The possible values are IP DSCP, IP precedence, and IP TOS, which are alternative ways of specifying a match criterion for the same Service Type field in the IP header, however each uses a different user notation.
  • Page 249: Ipv6 Rules

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The current number of the IP ACLs configured on the switch is displayed in the Current Number of ACL area. The maximum number of IP ACL that can be configured on the switch is displayed in the Maximum ACL field, depending on the hardware.
  • Page 250 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure the IPv6 rules, select the following: To add an IPv6 rule, use the pull-down list in the ACL Name field to select the IP ACL for which to create or update a rule. Complete the fields described in the following list, and click Add.
  • Page 251 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches is not issued if the ACL rule hit count is zero for the current interval. This field is only supported for a Deny action. • Mirror Interface: Specifies the specific egress interface where the matching traffic stream is copied in addition to being forwarded normally by the device.
  • Page 252: Ip Binding Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Flow Label: Flow label is 20-bit number that is unique to an IPv6 packet, used by end stations to signify quality-of-service handling in routers. Flow label can be specified within the range (0 to 1048575).
  • Page 253 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Specify an optional sequence number to indicate the order of this access list relative to other access lists already assigned to this interface and direction. A low number indicates high precedence order. If a sequence number is already in use for this interface and direction, the specified access list replaces the currently attached access list using that sequence number.
  • Page 254: Ip Binding Table

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches IP Binding Table Use the IP Binding Table page to view or delete the IP ACL bindings. To display the IP Binding Table, click Security > ACL > Advanced > Binding Table.
  • Page 255: Vlan Binding Table

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches VLAN Binding Table Use the VLAN Binding Table page to associate configured ACLs with VLANs.   To display the VLAN Binding Table page, click Security ACL > Advanced Vlan Binding Table.
  • Page 256: Ports

    Monitoring the System Use the features available from the Monitoring tab to view a variety of information about the switch and its ports and to configure how the switch monitors events. The Monitoring tab contains links to the following features: •...
  • Page 257 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table describes the Switch Statistics displayed on the screen. Field Description ifIndex This object indicates the ifIndex of the interface table entry associated with the processor of this switch. Octets Received The total number of octets of data received by the processor (excluding framing bits, but including FCS octets).
  • Page 258 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Packets Transmitted Without The total number of packets transmitted out of the interface. Errors Unicast Packets Transmitted The total number of packets that higher level protocols requested be transmitted to a subnetwork-unicast address, including those that were discarded or not sent.
  • Page 259: Port Statistics

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Port Statistics The Port Statistics page displays a summary of per-port traffic statistics on the switch. To access the Port Summary page, click Monitoring > Ports, and then click the Port Statistics link.
  • Page 260: Port Detailed Statistics

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Transmit Packet Errors The number of outbound packets that could not be transmitted because of errors. Collision Frames The best estimate of the total number of collisions on this Ethernet segment.
  • Page 261 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table describes the detailed port information displayed on the screen. To view information about a different port, select the port number from the Interface menu. Field Description Interface Use the drop down menu to select the interface for which data is to be displayed or configured.
  • Page 262 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description LACP Mode Selects the Link Aggregation Control Protocol administration state: • Enable: Specifies that the port is allowed to participate in a port channel (LAG), which is the default mode.
  • Page 263 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Packets Received 65-127 The total number of packets (including bad packets) received that were Octets between 65 and 127 octets in length inclusive (excluding framing bits but including FCS octets).
  • Page 264 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Alignment Errors The total number of packets received that had a length (excluding framing bits, but including FCS octets) of between 64 and 1518 octets, inclusive, but had a bad Frame Check Sequence (FCS) with a non-integral number of octets.
  • Page 265 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Packets Transmitted The total number of packets (including bad packets) transmitted that were 256-511 Octets between 256 and 511 octets in length inclusive (excluding framing bits but including FCS octets).
  • Page 266: Eap Statistics

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Excessive Collision Frames A count of frames for which transmission on a particular interface fails due to excessive collisions. Port Membership Discards The number of frames discarded on egress for this port due to egress filtering being enabled.
  • Page 267 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To view EAP statistics: To view statistics for a physical port, click the unit ID of the stack member with the ports to view. To view statistics for a Link Aggregation Group (LAG), click LAGS.
  • Page 268: Cable Test

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Field Description Response/ID Frames Received Displays the number of EAP Respond ID frames that have been received on the port. Response Frames Received Displays the number of valid EAP Response frames received on the port.
  • Page 269 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The following table shows the information the Cable Test page shows: Field Description Cable Status Displays the cable status. • Normal: the cable is working correctly. • Open: the cable is disconnected or there is a faulty connector.
  • Page 270: System Logs

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches System Logs The switch may generate messages in response to events, faults, or errors occurring on the platform as well as changes in configuration or other occurrences. These messages are stored locally and can be forwarded to one or more centralized points of collection for monitoring purposes or long term archival storage.
  • Page 271 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure the Memory Log settings: Use the radio buttons in the Admin Status field to determine whether to log messages. • Enable: Enables system logging. • Disable: Prevents the system from logging messages.
  • Page 272: Flash Log Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch. FLASH Log Configuration The FLASH log is a log that is stored in persistent storage, which means that the log messages are retained across a switch reboot.
  • Page 273 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches From the Severity Filter field, specify the type of log messages to record. A log records messages equal to or above a configured severity threshold. For example, if you select Error, the logged messages include Error, Critical, Alert, and Emergency. The default severity level is Alert(1).
  • Page 274: Server Log Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Server Log Configuration Use the Server Log Configuration page to allow the switch to send log messages to the remote logging hosts configured on the system. To access the Server Log Configuration page, click the Monitoring > Logs tab, and then click the Server Log link.
  • Page 275 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure a remote log server To add a remote syslog host (log server), specify the settings in the following list and click Add. • Host Address. Specify the IP address or hostname of the host configured for syslog.
  • Page 276: Trap Logs

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Trap Logs Use the Trap Logs page to view information about the SNMP traps generated on the switch. To access the Trap Logs page, click the Monitoring > Logs tab, and then click the Trap Logs link.
  • Page 277: Event Logs

    The number of the entry within the event log. The most recent entry is first. Type Specifies the type of entry. Filename The GS728TS, GS728TPS, GS752TS, or GS752TPS source code filename identifying the code that detected the event. Line The line number within the source file of the code that detected the event.
  • Page 278: Port Mirroring

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Port Mirroring The page under the Mirroring link allows you to view and configure port mirroring on the system. Multiple Port Mirroring Port mirroring selects the network traffic for analysis by a network analyzer. This is done for specific ports of the switch.
  • Page 279 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Alternatively, to configure settings for a specific interface, enter the interface ID in the Go To Interface and click Go. Select the check box next to a port or LAG to configure it as a source port.
  • Page 280: Reset

    Maintaining the System Use the features available from the Maintenance tab to help you manage the switch. The Maintenance tab contains links to the following features: • Reset on page 280 • Upload File From Switch on page 282 • Download File To Switch on page 284 •...
  • Page 281: Factory Default

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To reboot the switch: Select the Unit ID of the stack member to reboot, or select All to reboot all units in the stack. Select the check box on the page. Click Apply to reset the switch immediately, or click Cancel to abandon the reset request.
  • Page 282: Upload File From Switch

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Upload File From Switch The switch supports system file uploads from the switch to a remote system by using either TFTP or HTTP. The Upload menu contains links to the following options: •...
  • Page 283: Http File Upload

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches From the Server Address Type filed, specify the format to use for the address you type in the TFTP Server Address field: • IPv4. Indicates the TFTP server address is an IP address in dotted-decimal format.
  • Page 284: Download File To Switch

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To upload a file from the switch to an administrative system by using HTTP: From the File Type menu, Specify what type of file you want to download to the switch: •...
  • Page 285: Tftp File Download

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches TFTP File Download Use the Download File to Switch page to download device software, the image file, the configuration files and SSL files from a TFTP server to the switch. You can also download files via HTTP. See...
  • Page 286 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches • SSL DH Weak Encryption Parameter PEM File: SSL Diffie-Hellman Weak Encryption Parameter File (PEM Encoded). • SSL DH Strong Encryption Parameter PEM File: SSL Diffie-Hellman Strong Encryption Parameter File (PEM Encoded).
  • Page 287: Http File Download

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches HTTP File Download Use the HTTP File Download page to download files of various types to the switch using an HTTP session (for example, via your Web browser). To display this page, click Maintenance > Download > HTTP File Download.
  • Page 288: File Management

    This indicates that the file transfer is done. File Management The system maintains two versions of the GS728TS, GS728TPS, GS752TS, or GS752TPS software in permanent storage. One image is the active image, and the second image is the backup image. The active image is loaded during subsequent switch restarts. This feature reduces switch down time when upgrading or downgrading the GS728TS, GS728TPS, GS752TS, or GS752TPS software.
  • Page 289: Dual Image Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To copy an image: Use the Source Image field to select the image on the stack master to use as the source. The source image overwrites the destination image, if it exists.
  • Page 290 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure Dual Image settings: Select the ID of the stack member to configure, or select All to configure all units in the stack with the same dual image settings. Select the image to configure.
  • Page 291: Dual Image Status

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Dual Image Status You can use the Dual Image Status page to view information about the system images on the device. To display the Dual Image Status page, click Maintenance > File Management > Dual Image >...
  • Page 292: Troubleshooting

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Troubleshooting The Troubleshooting menu contains links to the following options: • Ping on page 292 • Ping IPv6 on page 293 • Traceroute on page 294 Ping Use the Ping page to tell the switch to send a Ping request to a specified IP address. You can use this feature to check whether the switch can communicate with a particular network host.
  • Page 293: Ping Ipv6

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Click Apply to send the ping. The switch sends the number of pings specified in the Count field, and the results are displayed below the configurable data in the Ping area. •...
  • Page 294: Traceroute

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure the settings and ping a host on the network: In the Ping field, select either Global or Link Global to select either the global IPv6 Address/Hostname or Link Local Address to ping.
  • Page 295 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches To configure the Traceroute settings and send probe packets to discover the route to a host on the network: In the Hostname/IP Address field, specify the IP address or the hostname of the station you want the switch to ping.
  • Page 296: Chapter 9 Accessing Help

    Use the Support page to connect to the Online Support site at netgear.com. To access the Support page, click Help > Online Help > Support. To connect to the NETGEAR support site for the GS728TS, GS728TPS, GS752TS, or GS752TPS, click Apply.
  • Page 297: User Guide

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches User Guide Use the User Guide page to access the GS728TS, GS728TPS, GS752TS, and GS752TPS Smart Switch Software Administration Manual (the guide you are now reading) that is available on the NETGEAR Website.
  • Page 298: Registration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Registration Use the Registration page to register your GS728TS, GS728TPS, GS752TS, or GS752TPS switch. Completing the registration confirms your email address, lowers technical support resolution time, and ensures your shipping address accuracy. NETGEAR, Inc. would also like to incorporate your feedback into future product development.
  • Page 299 • REMIND ME LATER. The pop-up window is closed without taking any action, and the registration reminder pop-up appears on next successful login. • REGISTER NOW. The NETGEAR Registration Server is contacted to initiate the registration process.
  • Page 300: Appendix A Hardware Specifications And Default Values

    Hardware Specifications and Default Values Switch Specifications The GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches conform to the TCP/IP, UDP, HTTP, ICMP, TFTP, DHCP, IEEE 802.1D, IEEE 802.1p, and IEEE 802.1Q standards. GS728TS Specifications Feature Value Interfaces 24 copper 10/100/1000M Ethernet ports...
  • Page 301: Gs752Ts Specifications

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches GS752TS Specifications Feature Value Interfaces 48 copper 10/100/1000M Ethernet ports 2 combo ports: 10/100/1000M copper or 1G/100M optical 2 SFP 1G optical ports (port 49 and 50) 2 SFP ports (port 51 and 52) for 1G optical uplink or 2.5G optical stacking...
  • Page 302: Switch Features And Defaults

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Switch Features and Defaults Port Characteristics Feature Sets Supported Default Auto negotiation/static All ports Auto negotiation speed/duplex Auto MDI/MDIX Enabled 802.3x flow control/back pressure 1 (per system) Disabled Port mirroring Disabled Port trunking (aggregation) Pre-configured 802.1D spanning tree...
  • Page 303: Quality Of Service

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Quality of Service Feature Sets Supported Default Number of queues Port based 802.1p Enabled DSCP Disabled Rate limiting All ports Disabled Auto-QoS All ports Disabled Security Feature Sets Supported Default 802.1X All ports...
  • Page 304: System Setup And Maintenance

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches System Setup and Maintenance Feature Sets Supported Default Boot code update DHCP/manual IP DHCP enabled/192.168.0.239 Default gateway 192.168.0.254 System name configuration NULL Configuration save/restore Firmware upgrade Restore defaults 1 (Web and front-panel button)
  • Page 305: Other Features

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Other Features Feature Sets Supported Default IGMP snooping v1/v2/v3 All ports Disabled Configurations upload/download EAPoL flooding All ports Disabled BPDU flooding All ports Disabled Static multicast groups Disabled Filter multicast control Disabled...
  • Page 306: Appendix B Configuration Examples

    Configuration Examples This chapter contains information about how to configure the following features: • Virtual Local Area Networks (VLANs) on page 306 • Access Control Lists (ACLs) on page 308 • Differentiated Services (DiffServ) on page 311 • 802.1X on page 315 •...
  • Page 307: Vlan Example Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches VLANs have a number of advantages: • It is easy to do network segmentation. Users that communicate most frequently with each other can be grouped into common VLANs, regardless of physical location. Each group’s traffic is contained largely within the VLAN, reducing extraneous traffic and improving the efficiency of the whole network.
  • Page 308: Access Control Lists (Acls)

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches In the VLAN Membership screen (see VLAN Membership Configuration on page 112) specify the VLAN membership as follows: • For the default VLAN with VLAN ID 1, specify the following members: port 7 (U) and port 8 (U).
  • Page 309: Mac Acl Example Configuration

    Apply the access list to an interface in the inbound direction. GS728TS, GS728TPS, GS752TS, and GS752TPS Smart Switches allow ACLs to be bound to physical ports and LAGs.The switch software supports MAC ACLs and IP ACLs.
  • Page 310: Standard Ip Acl Example Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches 2, which is the Sales department VLAN. The CoS value of the frame must be 0, which is the default value for Ethernet frames. Frames that match this criteria are permitted on interfaces 6, 7, and 8 and are assigned to the hardware egress queue 0, which is the default queue.
  • Page 311: Differentiated Services (Diffserv)

    Differentiated Services: network resources are apportioned based on traffic classification and priority, giving preferential treatment to data with strict timing requirements. The GS728TS, GS728TPS, GS752TS, and GS752TPS switches support DiffServ. The DiffServ feature contains a number of conceptual QoS building blocks you can use to construct a differentiated service network.
  • Page 312: Class

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Class You can classify incoming packets at layers 2, 3 and 4 by inspecting the following information for a packet: • Source/destination MAC address • EtherType • Class of Service (802.1p priority) value (first/only VLAN tag) •...
  • Page 313: Creating Policies

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Creating Policies Use DiffServ policies to associate a collection of classes that you configure with one or more QoS policy statements. The result of this association is referred to as a policy.
  • Page 314: Diffserv Example Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Precedence fields designating the incoming color value to be used as the conforming color. The color of exceeding traffic may be optionally specified as well. • Counting: updating octet and packet statistics to keep track of data handling along traffic paths within DiffServ.
  • Page 315: 315

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Configure the Policy attributes as follows: • Assign Queue: 3 • Policy Attribute: Simple Policy • Color Mode: Color Blind • Committed Rate: 1000000 Kbps • Committed Burst Size: 128 KB •...
  • Page 316 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches The GS728TS, GS728TPS, GS752TS, and GS752TPS switches support a guest VLAN, which allows unauthenticated users to have limited access to the network resources. Note: You can use QoS features to provide rate limiting on the guest VLAN to limit the network resources the guest VLAN provides.
  • Page 317: 802.1X Example Configuration

    GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Authenticator Supplicant Switch Authentication Server (RADIUS) 192.168.10.23 Supplicant 802.1X Example Configuration This example shows how to configure the switch so that 802.1X-based authentication is required on the ports in a corporate conference room (5–8). These ports are available to visitors and need to be authenticated before granting access to the network.
  • Page 318: Mstp

    Authentication List Configuration on page 207). This example enables 802.1X-based port security on the GS728TS, GS728TPS, GS752TS, or GS752TPS switch and prompts the hosts connected on ports 5–8 for an 802.1X-based authentication. The switch passes the authentication information to the configured RADIUS server.
  • Page 319 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches though frames belonging to different VLANs can take different paths within any Region, per IEEE DRAFT P802.1s/D13. All bridges, whether they use STP, RSTP or MSTP, send information in configuration messages via Bridge Protocol Data Units (BPDUs) to assign port roles that determine each port’s participation in a fully and simply connected active topology based on one or more...
  • Page 320: Mstp Example Configuration

    In the Configuration Name field on the STP Configuration page, configure the name so that it is the same on each switch, for example netgear-stp. By default, the Configuration Name is the switch MAC address which means that it is unique for each switch.
  • Page 321 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Note: Bridge priority values are multiples of 4096. If you do not specify a root bridge and all switches have the same Bridge Priority value, the switch with the lowest MAC address is elected as the root bridge (see Configuration on page 125).
  • Page 322: Configuring Vlan Routing

    VLANs divide broadcast domains in a LAN environment. Whenever hosts in one VLAN need to communicate with hosts in another VLAN, the traffic must be routed between them. This is known as inter-VLAN routing. On NETGEAR GS728TS, GS728TPS, GS752TS, and GS752TPS switches, it is accomplished by creating Layer 3 interfaces (Switch virtual interfaces (SVI)).
  • Page 323: Appendix C Notification Of Compliance

    Notification of Compliance NETGEAR Wired Products Regulatory Compliance Information This section includes user requirements for operating this product in accordance with National laws for usage of radio spectrum and operation of radio devices. Failure of the end-user to comply with the applicable requirements may result in unlawful operation and adverse action against the end-user by the applicable National regulatory authority.
  • Page 324 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches FCC Declaration Of Conformity We, NETGEAR, Inc., 350 East Plumeria Drive, San Jose, CA 95134, declare under our sole responsibility that the GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches complies with Part 15 of FCC Rules.
  • Page 325 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches European Union The GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches complies with essential requirements of EU EMC Directive 2004/108/EC and Low Voltage Directive 2006/95/EC as supported by applying the following test methods and standards: •...
  • Page 326: Index

    Index Numerics Differentiated Services DiffServ 802.1X example configuration Dual Image Dynamic Address Dynamic Host Global access control Green Ethernet ACL example configuration HTTP ACLs IGMP Snooping management interface LACP LACP Port Cache LLDP configuring MAC Filter Entry configuration Management Access Entry Management MST Port Global ARP configuration...
  • Page 327 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches Filtering Interface Configuration logical refreshing the client naming convention physical DiffServ queue configuration IP address administrative system download switch a file IP DSCP files via HTTP Mapping from a remote system IPv6...
  • Page 328 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches using v1, v2 SNTP Global Status global status password server configuration change server status login specifications Persistent Configuration Ping Statistics storm control port authentication example configuration summary Status product registration Stratum 802.1p to Queue Mapping...
  • Page 329 GS728TS, GS728TPS, GS752TS, and GS752TPS Gigabit Smart Switches VLAN example configuration guest management managing Port VLAN ID PVID voice Voice VLAN OUI VoIP Web interface panel...

This manual is also suitable for:

Gs752tpsGs752tsGs728tps

Table of Contents