Power Connections ... 3-3 Startup and Normal Operation LED Displays ... 3-4 POST Error Beep Codes ... 3-5 First Time Startup... 3-7 3COM Security Switch 6200 Hardware and Software Users Guide Contents First Time Startup Interview... 1-3 Configuration Tool ... 1-3 Tools...
Page 4
Support from 3Com ... 7-3 Email Support ... 7-3 Telephone Support ... 7-3 Returning Products for Repair... 7-6 A Technical Specifications Physical Characteristics... A-1 Environmental Characteristics... A-1 Power Characteristics ... A-1 3COM Security Switch 6200 Hardware and Software Users Guide...
Page 5
CE marking for the EEA (European Economic Area) ... C-1 Safety ... C-1 Factory Approvals ... C-1 EMI Compliance ... C-2 Radio Frequency Interference ... C-2 VCCI Statement V-3/2000.04 ... C-2 Other EMI Approvals... C-2 Immunity Compliance ... C-2 3COM Security Switch 6200 Hardware and Software Users Guide...
This guide describes how to install and configure the 3COM Security Switch 6200 hardware and system software. The Security Switch 6200 is based on the 3COM system software and may be referred to as the system. Intended This guide is intended for system integrators and other qualified service...
Security Switch 6200 Product Release Notes Install Server Installation and Configuration Guide Security Switch 6200 Applications Guide Customer To obtain technical tips or support, refer to the Technical Support Support chapter of this guide. 3COM Security Switch 6200 Hardware and Software Users Guide...
The Security Switch 6200 is a high performance, turnkey security services switch that integrates best-in-class firewall, virtual private networks, intrusion detection, and content security engines. The system offers high port density, high availability, and simplicity of management in a compact, expandable form factor.
Figure 1-2 displays the rear panel components. NOTE: This figure is shown for reference only. The console connections should be made from the 6200 front panel, with the management connections taking place in the rear of the chassis. PCI Slots...
This tool supports adding, modifying, or deleting any of the system configuration parameters. For further information on this tool, refer to the Configuring the System chapter of this guide. 3COM Security Switch 6200 Hardware and Software Users Guide...
Before installing your system, be sure that the site’s environmental and space requirements allow optimal chassis access and operation. In addition, you need to verify that you have the equipment and the tools necessary to complete this installation. 3COM Security Switch 6200 Hardware and Software Users Guide Installation...
Shipment Check Using the packing slip as a reference, inspect package contents for missing or damaged items. If parts are missing or damaged, call your 3COM Systems Support Representative (Refer to Chapter 5, for contact information.). The following items, as a minimum, are included with your system: •...
Page 15
Installation NOTE: 3COM recommends that you save the shipping containers in the event you need to send back one or more components. 3COM Security Switch 6200 Hardware and Software Users Guide Figure 2-1 3COM Security Switch 6200 Shipping Contents...
Installation Additional • PC running RedHat Linux 6.2 or greater software. This software is used to support the Security Switch 6200 Graphical User Interface Equipment (GUI) and for hosting the Check Point™ FireWall-1 Server. • PC running WinNT4/Win2K software. This software is used for launching the Check Point FireWall-1 GUI and the system’s embedded...
Insert the appropriate screws through the brackets and tighten. If the rack holes are not threaded, use cage-nuts over them. Figure 2-2 shows a chassis installation example. 3COM Security Switch 6200 Hardware and Software Users Guide Front Mounting Bracket...
Peel backing off of the rubber feet and press them down firmly on the indents. Once the rubber feet are installed you can mount the system on a solid flat surface. Place rubber feet here. 3COM Security Switch 6200 Hardware and Software Users Guide...
Alternatively, you can connect to the system through telnet if you have the DHCP service in your network. By default, DHCP is enabled on your system, after your intital configuration you can disble the DHCP service. 3COM Security Switch 6200 Hardware and Software Users Guide Interface Connections and First Time Start-Up...
Set to VT-100 terminal emulation mode. 10/100 FIBER PACKET LINK Personal Computer Connecting a Laptop Computer to the system Front Serial Craft Port 3COM Security Switch 6200 Hardware and Software Users Guide 10/100/1000 FIBER MGMT1 CONSOLE PACKET MGMT2 LINK (max) 9800,8,N,1...
NOTE: Before applying power to the system, be sure you have connected a terminal or PC to the craft port. This allows you enter commands needed at startup. 3COM Security Switch 6200 Hardware and Software Users Guide Figure 3-2 Connecting to the System Remotely Primary Power...
Random Flash NIC activity present. Running with normal operation. Flashing Degraded. Critical or non-recoverable condition. Flashing Non-critical condition. Post/system stop. Random Flash Disk activity present. No hard disk activity detected. 3COM Security Switch 6200 Hardware and Software Users Guide Description...
Display memory read/write error ROM checksum error Shutdown register error Invalid BIOS 3COM Security Switch 6200 Hardware and Software Users Guide Code FRB failure (processor failure) Empty Processor No Processor Power fault: DC power unexpectedly lost (power control failures)
Page 24
Interface Connections and First Time Start-Up 3COM Security Switch 6200 Hardware and Software Users Guide...
Page 25
Debug port 80h Code error Codes 07h-odh 0F-FFh All other combinations. 3COM Security Switch 6200 Hardware and Software Users Guide Daignostic LED Decoder G=Green, R=Red, A=Amber Meanings No memory was found in the system Memory mixed type detected. EDO is not supported.
The current date and time on this system is Mon Mar 10 13:04:23 EST 2003 Would you like to modify System time <Y or N>[N]: y Welcome to the Configuration Interview 3COM Security Switch 6200 Hardware and Software Users Guide...
Page 28
The SNMP community string is the access string to permit access to the SNMP protocol. A read-only "ro" or read-write "rw" access may be specified. By default, SNMP community string permits read-only access. 3-10 3COM Security Switch 6200 Hardware and Software Users Guide...
Page 29
Host. The system has two management ports, two GigaBit Ethernet ports, and 16 10/100 ports. NOTE: At least one management port must be configured on the system. 3COM Security Switch 6200 Hardware and Software Users Guide Address Netmask 10.1.1.22 255.255.255.255...
Page 31
====================================================== Congratulations, you have finished the Interview. To activate your interview settings, you MUST reboot the system using the following command at the prompt: # reboot Exiting the Interview... ====================================================== 3COM Security Switch 6200 Hardware and Software Users Guide 3-13...
Page 32
Interface Connections and First Time Start-Up 3-14 3COM Security Switch 6200 Hardware and Software Users Guide...
Execute the file cos_config and execute the following command at the admin prompt: [admin@xxxxx bin]# ./cos_config Once the configuration tool is launched, you are presented with an interactive main menu. 3COM Security Switch 6200 Hardware and Software Users Guide Configuring the Security Switch 6200 System...
Time Zone Telnet Server FTP Server WEB Timeout Default Gateway 192.168.10.1 Would You Like to Modify the System Parameters <Y or N>[N]: helios Mon Apr 07 15:28:27 EDT 2003 enabled enabled 3COM Security Switch 6200 Hardware and Software Users Guide...
Page 36
Would You Like to Modify the System Parameters <Y or N>[N]: Enter y to make further changes or press the Enter key to return to the main menu. helios 3com.com Mon Apr 07 15:29:03 EDT 2003 America/New_York enabled enabled 3COM Security Switch 6200 Hardware and Software Users Guide...
Enter the desired option and make more changes or enter X to return to the main menu. Modify the User Accounts <Add, Delete, Modify or eXit>[eXit]: 3COM Security Switch 6200 Hardware and Software Users Guide Login Access Access Level enabled...
Modify the DNS Server List <Add, Delete or eXit>[eXit]: a DNS Server's IP Address [0.0.0.0]: 10.1.1.50 DNS Servers =========== 10.1.1.50 Modify the DNS Server List <Add, Delete or eXit>[eXit]: Domain Name Resolution Configuration ==================================== 1) DNS Servers 3COM Security Switch 6200 Hardware and Software Users Guide...
Would You Like to Modify the SNMP Configuration <Y or N>[N]: y Enable SNMP Network Management <disabled, enabled>[enabled]: Enter SNMP Contact [Root <root@localhost> (configure / 3COM Security Switch 6200 Hardware and Software Users Guide enabled Root <root@localhost> (configure /etc/snmp/ Unknown (edit /etc/snmp/snmpd.conf)
Page 40
Change the SNMP Communities <Add, Delete or eXit>[eXit]: a Enter Community Name []: foobar Enter IP Source Addresses [0.0.0.0/32]: 10.2.1.48/32 Enter Access Mode <read-only, read-write>[read-only]: read-write enabled lab@3com.com The Lab Address 3COM Security Switch 6200 Hardware and Software Users Guide Netmask Access...
Page 41
Enter Trap Destination [0.0.0.0]: 10.2.1.48 Enter Port Number [162]: Enter Trap Type <trap, inform>[trap]: Enter SNMP Version <SNMPv1, SNMPv2c, SNMPv3>[SNMPv1]: Enter Community []: foobar 3COM Security Switch 6200 Hardware and Software Users Guide Address Netmask 10.2.1.48 255.255.255.255 Address Netmask 10.2.1.48...
11 fastethernet 12 fastethernet 13 4-10 Port Type trap MAC Address (Configured) 00:03:47:f1:aa:52 (N) on 00:03:47:f1:aa:53 (N) on 3COM Security Switch 6200 Hardware and Software Users Guide Version Community SNMPv1 foobar Auto Duplex Speed half half (N) on half...
Page 43
9 fastethernet 10 fastethernet 11 fastethernet 12 fastethernet 13 fastethernet 14 fastethernet 15 fastethernet 16 gigabitethernet 17 3COM Security Switch 6200 Hardware and Software Users Guide MAC Address (Configured) Auto (N) on (N) on (N) on (N) on (N) on...
VLAN Interface <Y or N>[N]: y Enter VLAN ID <1 - 4095>: Interface State <disabled, enabled>[enabled]: Enter the IP Address [0.0.0.0/0]: 128.205.2.23/24 Broadcast Address [128.205.2.255]: MTU [1500]: 3COM Security Switch 6200 Hardware and Software Users Guide Address Netmask 192.168.10.6 255.255.255.0 192.168.10.255 1500 Address Netmask 192.168.10.6 255.255.255.0 192.168.10.25...
Page 47
Modify the IP Aliases <Add, Delete, Modify or eXit>[eXit]: Enter the desired option to add, delete, or modify additional IP aliases or enter x to return to the main menu. 3COM Security Switch 6200 Hardware and Software Users Guide IP Address Netmask 255.255.0.0 255.255.0.0...
Enter the desired option to add, delete, or modify additional static routes or enter x to return to the main menu. 4-16 Netmask Netmask Gateway 255.0.0.0 192.168.10.1 Netmask Gateway 255.0.0.0 192.168.10.1 3COM Security Switch 6200 Hardware and Software Users Guide Gateway Metric Metric Metric...
Modify the Static Hosts <Add, Delete, Modify or eXit>[eXit]: Enter the desired option to add, delete, or modify additional static ARP entries or enter x to return to the main menu. 3COM Security Switch 6200 Hardware and Software Users Guide MAC Address MAC Address 00:00:a2:00:00:02...
VRRP works only on LAN (Ethernet) interfaces, not on WAN interfaces. To configure VRRP: Select Option 12 from the main menu. VRRP Configuration ================== Virtual Router Redundancy Protocol can be defined, each with its own identifier. 4-18 3COM Security Switch 6200 Hardware and Software Users Guide...
Page 51
Priority Advertisement Interval (seconds) Group ID IP Addresses Modify the VRRP Configuration <Add, Delete, Modify or eXit>[eXit]: a 3COM Security Switch 6200 Hardware and Software Users Guide : disabled : fastethernet 1 : disabled : disabled : 100 : 30.0.0.10...
Page 52
VRRP Interface Enable VRRP MAC Preemption Priority Advertisement Interval (seconds) Group ID IP Addresses 4-20 3COM Security Switch 6200 Hardware and Software Users Guide : enabled : fastethernet 1 : disabled : disabled : 100 : 30.0.0.10 : disabled : fastethernet 1...
-h, --help - displays the configuration tool’s help system. -f, --file=STRING - displays the configuration output file. The default value is stdout. -d, --default - tells the Help system to include default values. 3COM Security Switch 6200 Hardware and Software Users Guide 4-25...
Page 58
Configuring the Security Switch 6200 System 4-26 3COM Security Switch 6200 Hardware and Software Users Guide...
This chapter describes how to update your 3COM Security Switch 6200 system software. Upgrading the If you are upgrading your system from a previously configured release, you do not need to use the full system software. Instead, you can use the software System upgrade patch.
Page 60
You may notice "Exec'ed Program Error" being displayed on your screen during the upgrade process if upgrading from a release prior to 2.1.3. Please ignore these error messages. Your system will still be upgraded properly Reboot your system. 3COM Security Switch 6200 Hardware and Software Users Guide...
Within the fdisk command, display a print(p) disk layout by entering the letter “p”. A display similar to the following displays: /dev/ataraid/d0p1 * 1 13 104422 83 Linux # /boot 3COM Security Switch 6200 Hardware and Software Users Guide Upgrading the System Software Using the Safe Upgrade and...
Page 62
The following displays: Usage: /usr/os/sbin/install-cos [OPTION]... <COS RPM DIR> Install a C30 release h, help p <id>, part of disk to install to, 1 or 2 3COM Security Switch 6200 Hardware and Software Users Guide partition /boot swap /opt /var...
The “other” value indicates the second part of the disk, which is your UP. Then reboot system. To go back to the original partition (RP) that was working properly, reboot the system. 3COM Security Switch 6200 Hardware and Software Users Guide...
Switch to the RP and upgrade the RP. If upgrades work correctly you are done. If, however, the upgrades fail, reboot the system. By default the system boots with the functional UP. 3COM Security Switch 6200 Hardware and Software Users Guide...
Information contained in this chapter is correct at time of publication. For the most recent information, 3Com recommends that you access the 3Com Corporation World Wide Web site. Online 3Com offers worldwide product support 24 hours a day, 7days a week, through the following online systems: Technical Services •...
3Com FTP Site Download drivers, patches, software, and MIBs across the Internet from the 3Com public FTP site. This service is available 24 hours a day, 7 days a week. To connect to the 3Com FTP site, enter the following information into your FTP client: Hostname: ftp.3com.com...
3Com technical support services at the location nearest you. Email Support Some 3Com regions offer an email support service. To access this service for your region, use the appropriate URL or email address from the list below. Asia, Pacific Rim From this region, email: apr_technical_support@3com.com...
Page 68
Luxembourg Netherlands Norway Poland Portugal South Africa Spain Sweden Switzerland U.K. 3COM Security Switch 6200 Hardware and Software Users Guide Country Telephone Number +44 (0)1442 435529 phone 01 7956 7124 070 700 000 070 700 770 7010 7289 01080 2783...
Page 69
Peru Puerto Rico Salvador Trinidad and Tobago Uruguay Venezuela Virgin Islands 3COM Security Switch 6200 Hardware and Software Users Guide Telephone Number Country North America 1 800 988 2112 0 810 444 3COM 1 800 998 2112 1 800 998 2112...
Technical Support Returning Before you send a product directly to 3Com for repair, you must first obtain an authorization number. Products sent to 3Com without authorization Products for numbers will be returned to the sender unopened, at the sender's expense.
Page 71
Jamiaca Martinique Mexico Nicaragua Panama Paraguay Peru Puerto Rico Salvador Trinidad and Tobago Uruguay Venezuela Virgin Islands 3COM Security Switch 6200 Hardware and Software Users Guide Country Telephone Number 1-800-988-2112 0-810-444-3COM 1-800-998-2112 1-800-998-2112 1-800-998-2112 52-5-201-0010 1-800-998-2112 1-800-998-2112 0800-13-3COM 1-800-998-2112 AT&T +800-998-2112 AT&T +800-998-2112...
Page 72
Technical Support 3COM Security Switch 6200 Hardware and Software Users Guide...
This appendix describes the craft port pin assignments: The Craft port, located on the front of the system, uses a DB- 9 connector with the following pin identifications and associated signals. DB-9 Connector 3COM Security Switch 6200 Hardware and Software Users Guide Pin Number Signal No Connection...
• VCCI Statement Regulatory Standards Compliance The following regulatory agencies have approved the 3COM Security Switch 6200 and have found it to be fully compliant with their environmental, safety, and emissions standards. CE marking for the EEA (European Economic Area) •...
3COM Corporation could void the user’s authority to operate this equipment. The 3COM Security Switch 6200 is designed for Class A use only. Do not attempt to use this equipment in a domestic environment, which requires Class B distinction.
Need help?
Do you have a question about the 6200 and is the answer not in the manual?
Questions and answers