Page 1
Order toll-free in the U.S.: 877-877-BBOX (outside U.S. call 724-746-5500) SUPPORT FREE technical support, 24 hours a day, 7 days a week: Call 724-746-5500 or fax 724-746-0746 Mail order: Black Box Corporation, 1000 Park Drive, Lawrence, PA 15055-1018 INFORMATION Web site: www.blackbox.com • E-mail: info@blackbox.com...
FEDERAL COMMUNICATIONS COMMISSION INDUSTRY CANADA RADIO FREQUENCY INTERFERENCE STATEMENTS This equipment generates, uses, and can radiate radio-frequency energy, and if not installed and used properly, that is, in strict accordance with the manufacturer’s instructions, may cause interference to radio communication. It has been tested and found to comply with the limits for a Class A computing device in accordance with the specifications in Subpart B of Part 15 of FCC rules, which are designed to provide reasonable protection against such interference when the equipment is operated in a commercial environment.
Page 3
Switch issues ICMP echo request (PING) packets from an internal Ethernet node to any user configurable IP address on the network. Then if the normal path connections go down for any reason, the SW1020A will no longer be able to PING the IP address specified during configuration, and will automatically disconnect the normal path connections and switch to the bypass/failover path connections.
Page 4
Save – this command saves any changes that are made to the configuration parameters for the next startup. If the Save command is not used, the SW1020A will revert back to the prior configuration settings the next time power is cycled, or after receiving a Reset command.
SW1020A are typically connected together with a short patch cable. The “NORMAL or B” ports on the SW1020A are connected to the IN/OUT ports on the IPS. And the “COMMON or C” ports on the SW1020A are used to provide the connections between the firewall and the SW1020A, and between the SW1020A and the first edge router/switch on the network.
Page 6
Switch are in the “BYPASS or A” to “COMMON or C” connection state, and the NORMAL (B) LED lights when both switching elements within the SW1020A are in the “NORMAL or B” to “COMMON or C” connection state. If one A/B switch element is in the “BYPASS or A” position and the other is in the “BORMAL or B”...
Page 7
This approach allows the network security manager to verify that when a problem occurs in the normal path thru the IPS (causing the SW1020A to switch to the bypass path), that any problems related to the IPS and the normal path are resolved before the IPS is reconnected to the network. Once these problems have been resolved, the network security manager can then issue a “set system B”...
(commonly abbreviated as 9600, 8, N, 1, NONE). When the SW1020A powers up, it will send a sign-on message followed by a prompt character “>” to your serial terminal device. After each command, and any associated response from the unit, it will again issue a prompt character.
RS232 serial interface. The SW1020A also includes a built in http server that allows all of the commands that are available via the RS232 serial port to be accessed via a web browser interface.
6. Network Setup To perform the initial setup of the SW1020A you can use a serial terminal capable of 9600 baud, no parity, 8 data bits, 1 stop bit, and no flow control. Connect this terminal to the DB9 console connector on the SW1020A using the pinout from table 6.1 below.
Displays the system status. This is the same as the status returned by the SNMP variable SW1020AGangPort. It will report “A” if either A/B switch element in the SW1020A is in the BYPASS (A) position, or “B” if both A/B switch elements are in the NORMAL (B) position.
Page 12
Displays the status of A/B switching element N (1-16). The response will be “A” for BYPASS or “B” for NORMAL. Note that the SW1020A Auto Bypass Switch uses ports 3 and 4. The other 14 port numbers have no physical connections associated with them and are not used.
Page 13
GET MONITORIP Set or display the IP address of the device that the SW1020A Auto Bypass Switch is to PING to determine whether or not the normal and/or bypass path is operational. Setting this to 0.0.0.0 disables the auto bypass and the auto recovery functions.
Page 14
GET ALERTTYPE Set or display the type of alert messages sent by the SW1020A Auto Bypass Switch when certain events such as a change in switch state occur. The SW1020A can be configured to issue either syslog messages, or SNMP traps. Note that at least one IP address must be entered using the “SET MANAGER N X.X.X.X”...
Page 15
SNMP trap messages or UDP syslog messages (depending on the ALERTTYPE setting) that are issued by the SW1020A Auto Bypass Switch. To remove an entry from the list, set the IP address to 0.0.0.0. Any change will not become permanent until a SAVE operation is performed.
Page 16
GET[SET] TELNETPORT [N] GET[SET] MONITORIP [X.X.X.X] (0.0.0.0 to disable) GET[SET] MONITORMAC [X X X X X X] (X = HEX CHARS) GET[SET] MONITORINTERVAL [N] (1/10 seconds, 0 to disable) GET[SET] MONITORFAILCOUNT [N] (0 to disable) GET[SET] MONITOROKCOUNT [N] (0 = no auto recover) GET[SET] AUTHENTICATIONTRAP [ON/OFF] GET[SET] ALERTTYPE [TRAP/SYSLOG] GET[SET] MANAGER N [X.X.X.X] (0.0.0.0 to disable an entry)
(or similar). Note: If using a pop up blocker on your web browser, be sure to allow pop ups from the IP address of the SW1020A Auto Bypass Switch, Other wise you could experience trouble receiving a response through the interface.
Page 18
Figure 8.3 Example Command Results Screen The network controller will allow only one web access session at a time. To free up a session without waiting for the web timeout, click “Logoff”. For this reason, the web timeout should be set to a workable time. Resetting the unit will clear any current web session.
9. Traps Summary The SW1020A Auto Bypass Switch can be configured to issue an SNMP trap when certain events occur. Use the “SET ALERTTYPE” command to enable traps, and use the “SET MANAGER N X.X.X.X” command to specify the IP addresses of up to 16 different NMS computers that you want to send these traps to (see section 7 for details regarding these commands).
Page 20
Listed below is each type of syslog message that the SW1020A can issue, followed by the actual syslog message that the SW1020A will send. power up cold start (or RESET command) Jan 1 00:00:00 192.168.1.151 Auto Bypass Switch: Switch has been reset.
Need help?
Do you have a question about the SW1020A and is the answer not in the manual?
Questions and answers