NETGEAR GS748Tv4 Software Administration Manual

NETGEAR GS748Tv4 Software Administration Manual

Smart switch
Hide thumbs Also See for GS748Tv4:
Table of Contents

Advertisement

350 East Plumeria Drive
San Jose, CA 95134
USA
February 2011
202-10726-01
v1.0
GS748T Smart Switch
Sof t wa re Ad m in i stra tion M a nua l

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the GS748Tv4 and is the answer not in the manual?

Questions and answers

Summary of Contents for NETGEAR GS748Tv4

  • Page 1 GS748T Smart Switch Sof t wa re Ad m in i stra tion M a nua l 350 East Plumeria Drive San Jose, CA 95134 February 2011 202-10726-01 v1.0...
  • Page 2: Technical Support

    NETGEAR, Inc. Technical Support Thank you for choosing NETGEAR. To register your product, get the latest product updates, or get support online, visit us at http://support.netgear.com.
  • Page 3: Table Of Contents

    Table of Contents Chapter 1 Getting Started Getting Started with the GS748T Smart Switch ....10 Switch Management Interface ........11 Connecting the Switch to the Network.
  • Page 4 GS748T Smart Switch Software Administration Manual Services — DHCP Filtering ........71 DHCP Filtering Configuration .
  • Page 5 GS748T Smart Switch Software Administration Manual DSCP to Queue Mapping ........131 Differentiated Services .
  • Page 6 GS748T Smart Switch Software Administration Manual Chapter 6 Monitoring the System Ports ........... . .198 Switch Statistics .
  • Page 7 GS748T Smart Switch Software Administration Manual Appendix B Configuration Examples Virtual Local Area Networks (VLANs)......248 VLAN Example Configuration.
  • Page 8 GS748T Smart Switch Software Administration Manual Table of Contents...
  • Page 9: Chapter 1 Getting Started

    Getting Started ® The NETGEAR GS748T Smart Switch Software Administration Manual describes how to configure and operate the GS748T Smart Switch by using the Web-based graphical user interface (GUI). This manual describes the software configuration procedures and explains the options available within those procedures.
  • Page 10: Getting Started With The Gs748T Smart Switch

    GS748T Smart Switch Software Administration Manual Getting Started with the GS748T Smart Switch This chapter provides an overview of starting your NETGEAR GS748T Smart Switch and accessing the user interface. It also leads you through the steps to use the Smart Control Center utility.
  • Page 11: Switch Management Interface

    In addition to enabling NETGEAR switch discovery, the Smart Control Center provides several utilities to help you maintain the NETGEAR switches on your network, such as password management, firmware upgrade, and configuration file backup. For more...
  • Page 12: Connecting The Switch To The Network

    GS748T Smart Switch Software Administration Manual Connecting the Switch to the Network To enable remote management of the switch through a Web browser or SNMP, you must connect the switch to the network and configure it with network information (an IP address, subnet mask, and default gateway).
  • Page 13: Switch Discovery In A Network With A Dhcp Server

    GS748T Smart Switch Software Administration Manual Switch Discovery in a Network with a DHCP Server This section describes how to set up your switch in a network that has a DHCP server. The DHCP client on the switch is enabled by default. When you connect it to your network, the DHCP server will automatically assign an IP address to your switch.
  • Page 14 GS748T Smart Switch Software Administration Manual Make a note of the displayed IP address assigned by the DHCP server. You will need this value to access the switch directly from a Web browser (without using the Smart Control Center). Select your switch by clicking the line that displays the switch, then click the Web Browser Access button.
  • Page 15: Switch Discovery In A Network Without A Dhcp Server

    GS748T Smart Switch Software Administration Manual Switch Discovery in a Network without a DHCP Server This section describes how to use the Smart Control Center to set up your switch in a network without a DHCP server. If your network has no DHCP service, you must assign a static IP address to your switch.
  • Page 16: Configuring The Network Settings On The Administrative System

    GS748T Smart Switch Software Administration Manual Tip: You must enter the current password every time you use the Smart Control Center to update the switch setting. The default password is password . Click Apply to configure the switch with the network settings. Please ensure that your PC and the switch are in the same subnet.
  • Page 17 GS748T Smart Switch Software Administration Manual WARNING! When you change the IP address of your administrative system, you will loose your connection to the rest of the network. Be sure to write down your current network address settings before you change them.
  • Page 18: Web Access

    GS748T Smart Switch Software Administration Manual Web Access To access the GS748T management interface, use one of the following methods: • From the Smart Control Center, select the switch and click Web Browser Access. • Open a Web browser and enter the IP address of the switch in the address field. You must be able to ping the IP address of the GS748T management interface from your administrative system for Web access to be available.
  • Page 19: Smart Control Center Utilities

    GS748T Smart Switch Software Administration Manual Smart Control Center Utilities In addition to device discovery and network address assignment, the Smart Control Center includes several maintenance features. This section describes the following Smart Control Center utilities: • Network Utilities on page 19 Configuration Upload and Download •...
  • Page 20: Configuration Upload And Download

    GS748T Smart Switch Software Administration Manual Changing the Switch Password Select the switch. Click Change Password. Additional fields appear on the screen. Type the switch password in the Current Password field. The default password for the switch is password . Type the new password in the New Password and Confirm Password fields.
  • Page 21 GS748T Smart Switch Software Administration Manual Click OK. Enter the switch password and click Apply. The file is uploaded to the administrative computer as a *.cfg file. You can open it and view the contents with a text editor. To restore the configuration to a previously saved version: Click the Maintenance tab and select the device with the configuration to restore.
  • Page 22: Firmware Upgrade

    Run this FW after download option is clear. Note: NETGEAR recommends that you download the same image as the primary and secondary image for redundancy. 22 | Chapter 1: Getting Started...
  • Page 23 GS748T Smart Switch Software Administration Manual From the Select new firmware window that appears, navigate to and select the firmware image to download to the switch. Click Open. You can choose to schedule a later time to complete the download and installation by clearing the Run Now? option and selecting a date and time to perform the firmware download and installation.
  • Page 24: Viewing And Managing Tasks

    GS748T Smart Switch Software Administration Manual Viewing and Managing Tasks From the Tasks tab, you can view information about configuration downloads and firmware upgrades that have already occurred, are in progress, or are scheduled to take place at a later time. You can also delete or reschedule selected tasks. Figure 3 shows the Tasks page.
  • Page 25: Understanding The User Interfaces

    GS748T Smart Switch Software Administration Manual Understanding the User Interfaces The GS748T Smart Switch software includes a set of comprehensive management functions for configuring and monitoring the system by using one of the following methods: • Web user interface • Simple Network Management Protocol (SNMP) Each of the standards-based management methods allows you to configure and monitor the components of the GS748T Smart Switch software.
  • Page 26 GS748T Smart Switch Software Administration Manual Navigation Tab Feature Link Help Link Logout Button Help Page Page Menu Configuration Status and Options Figure 4. Administrative Page Layout Navigation Tabs, Feature Links, and Page Menu The navigation tabs along the top of the Web interface give you quick access to the various switch functions.
  • Page 27: Device View

    GS748T Smart Switch Software Administration Manual Page Link Configuration Pages Figure 5. Menu Hierarchy Configuration and Status Options The area directly under the feature links and to the right of the page menu displays the configuration information or status for the page you select. On pages that contain configuration options, you can input information into fields or select options from drop-down menus.
  • Page 28 GS748T Smart Switch Software Administration Manual The following image shows the Device View of the GS748T. Click the port you want to view or configure to see a menu that displays statistics and configuration options. Click the menu option to access the page that contains the configuration or monitoring options.
  • Page 29 GS748T Smart Switch Software Administration Manual If you click the graphic, but do not click a specific port, the main menu appears, as the following figure shows. This menu contains the same option as the navigation tabs at the top of the page.
  • Page 30: Using Snmp

    GS748T Smart Switch Software Administration Manual Using SNMP The GS748T Smart Switch software supports the configuration of SNMP groups and users that can manage traps that the SNMP agent generates. The GS748T Smart Switch uses both standard public MIBs for standard functionality and private MIBs that support additional switch functionality.
  • Page 31: Interface Naming Convention

    GS748T Smart Switch Software Administration Manual Interface Naming Convention The GS748T Smart Switch supports physical and logical interfaces. Interfaces are identified by their type and the interface number. All the physical ports 1–48 are Gigabit ports and the SFP Ports 47–50 support 1000M Speed fiber modules. Ports 47–48 are Combo ports and ports 49–50 will support dedicated SFP modules.
  • Page 32 GS748T Smart Switch Software Administration Manual 32 | Chapter 1: Getting Started...
  • Page 33: Chapter 2 Configuring System Information

    Configuring System Information Use the features in the System tab to define the switch’s relationship to its environment. The System tab contains links to the following features: • Management on page 34 SNMP • on page 52 • LLDP on page 58 •...
  • Page 34: Management

    GS748T Smart Switch Software Administration Manual Management This section describes how to display the switch status and specify some basic switch information, such as the management interface IP address, system clock settings, and DNS information. From the Management link, you can access the following pages: •...
  • Page 35: Ip Configuration

    GS748T Smart Switch Software Administration Manual To define system information: Open the System Information page. Define the following fields: • System Name. Enter the name you want to use to identify this switch. You may use up to 31 alphanumeric characters. The factory default is blank. •...
  • Page 36 GS748T Smart Switch Software Administration Manual To configure the network information for the management interface: Select the appropriate radio button to determine how to configure the network information for the switch management interface: • Dynamic IP Address (DHCP). Specifies that the switch must obtain the IP address through a DHCP server.
  • Page 37: Ipv6 Network Configuration

    GS748T Smart Switch Software Administration Manual port VLAN ID (PVID) of the port to be connected in that management VLAN be the same as the management VLAN ID. The management VLAN has the following requirements: • Only one management VLAN can be active at a time. •...
  • Page 38 GS748T Smart Switch Software Administration Manual To access the switch over a IPv6 network, you must initially configure the switch with IPv6 information (IPv6 prefix, prefix length, and default gateway). IPv6 can be configured using any of the following options: •...
  • Page 39: Ipv6 Network Neighbor

    GS748T Smart Switch Software Administration Manual IPv6 Prefix/Prefix Length. Add the IPv6 prefix and prefix to the IPv6 network interface. The address is in the global address format. EUI64. Specify whether format IPv6 address in EUI-64 format. The default value is False. Click Add to add a new IPv6 address in global format.
  • Page 40: Time

    GS748T Smart Switch Software Administration Manual • Reach. Positive confirmation was received within the last Reachable Time milliseconds that the forward path to the neighbor was functioning properly. While in REACH state, the device takes no special action as packets are sent. •...
  • Page 41: Time Configuration

    GS748T Smart Switch Software Administration Manual • T1: Time at which the original request was sent by the client. • T2: Time at which the original request was received by the server. • T3: Time at which the server sent a reply. •...
  • Page 42 GS748T Smart Switch Software Administration Manual In the Date field, enter the date in the DD/MM/YYYY format. In the Time field, enter the time in HH:MM:SS format. Note: If you do not enter a date and time, the switch will calculate the date and time using the CPU’s clock cycle.
  • Page 43: Sntp Server Configuration

    GS748T Smart Switch Software Administration Manual Field Description Last Attempt Status Specifies the status of the last SNTP request or unsolicited message for both unicast mode. If no message has been received from a server, a status of Other is displayed. These values are appropriate for all operational modes: •...
  • Page 44 GS748T Smart Switch Software Administration Manual To configure a new SNTP Server: Enter the appropriate SNTP server information in the available fields: • Server Type. Specifies whether the address for the SNTP server is an IP address (IPv4) or hostname (DNS). •...
  • Page 45: Denial Of Service

    GS748T Smart Switch Software Administration Manual The SNTP Server Status table displays status information about the SNTP servers configured on your switch. The following table describes the SNTP Global Status fields. Field Description Address Specifies all the existing Server Addresses. If no Server configuration exists, a message saying “No SNTP server exists”...
  • Page 46 GS748T Smart Switch Software Administration Manual • TCP Fragment: TCP Header size is smaller than the configured value. Enable or disable this option by selecting the corresponding line on the radio button. Enabling TCP Fragment DoS prevention causes the switch to drop packets that have a TCP header smaller than the configured Min TCP Hdr Size.
  • Page 47 GS748T Smart Switch Software Administration Manual • Enable. Auto-DoS is enabled. Click Apply to send the updated configuration to the switch. Configuration changes occur immediately. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch.
  • Page 48: Dns

    GS748T Smart Switch Software Administration Manual • Denial of Service TCP Fragment: TCP Header size is smaller than the configured value. Enable or disable this option by selecting the corresponding line on the radio button. Enabling TCP Fragment DoS prevention causes the switch to drop packets that have a TCP header smaller than the configured Min TCP Hdr Size.
  • Page 49: Host Configuration

    Enter the DNS default domain name to include in DNS queries. When the system is performing a lookup on an unqualified hostname, this field is provided as the domain name (for example, if default domain name is netgear.com and the user enters test, then test is changed to test.netgear.com to resolve the name).
  • Page 50 GS748T Smart Switch Software Administration Manual To add a static entry to the local DNS table: Specify the static host name to add. Enter up to 158 characters. Specify the IP address in standard IPv4 dot notation to associate with the hostname. Click Add.
  • Page 51: Green Ethernet Configuration

    GS748T Smart Switch Software Administration Manual Green Ethernet Configuration Use this page to configure Green Ethernet features. Using the Green Ethernet features allows for power consumption savings. To access this page, click System > Management > Green Ethernet Configuration. To configure the Green Ethernet feature: Enable or disable the Auto Power Down Mode.
  • Page 52: Snmp

    GS748T Smart Switch Software Administration Manual SNMP From SNMP link under the System tab, you can configure SNMP settings for SNMP V1/V2 and SNMPv3. From the SNMP link, you can access the following pages: • SNMPV1/V2 on page 52 • Trap Flags on page 55 SNMP v3 User Configuration...
  • Page 53 GS748T Smart Switch Software Administration Manual To configure SNMP communities: To add a new SNMP community, enter community information in the available fields described below, and then click Add. • Management Station IP. Specify the IP address of the management station.Together, the Management Station IP and the Management Station IP Mask denote a range of IP addresses from which SNMP clients may use that community to access this device.
  • Page 54: Trap Configuration

    GS748T Smart Switch Software Administration Manual To modify an existing community, select the check box next to the community, change the desired fields, and then click Apply. Configuration changes take effect immediately. To delete a community, select the check box next to the community and click Delete. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch.
  • Page 55: Trap Flags

    GS748T Smart Switch Software Administration Manual To modify information about an existing SNMP recipient, select the check box next to the recipient, change the desired fields, and then click Apply. Configuration changes take effect immediately. To delete a recipient, select the check box next to the recipient and click Delete. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch.
  • Page 56: Snmp V3 User Configuration

    GS748T Smart Switch Software Administration Manual If you make any changes to this page, click Apply to send the updated configuration to the switch. Configuration changes take effect immediately. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch.
  • Page 57 GS748T Smart Switch Software Administration Manual • None. Do not encrypt the contents of SNMPv3 packets transmitted from the switch. • DES. Encrypt SNMPv3 packets using the DES encryption protocol. If you selected DES in the Encryption Protocol field, enter the SNMPv3 Encryption Key here. Otherwise, this field is ignored.
  • Page 58: Lldp

    GS748T Smart Switch Software Administration Manual LLDP The IEEE 802.1AB-defined standard, Link Layer Discovery Protocol (LLDP), allows stations on an 802 LAN to advertise major capabilities and physical descriptions. This information is viewed by a network manager to identify system topology and detect bad configurations on the LAN.
  • Page 59: Lldp Port Settings

    GS748T Smart Switch Software Administration Manual To configure global LLDP settings: Configure the following LLDP properties. • TLV Advertised Interval. Specify the interval at which frames are transmitted. The default is 30 seconds, and the valid range is 1–32768 seconds. •...
  • Page 60 GS748T Smart Switch Software Administration Manual To display the LLDP Port Settings page, click System > LLDP > Advanced > LLDP Port Settings. To configure LLDP port settings: Change the LLDP port settings described below: • Interface. Specifies the port to be affected by these parameters. •...
  • Page 61: Lldp-Med Network Policy

    GS748T Smart Switch Software Administration Manual Management Ports Name, see on page 34. To configure the Port Description, see page 76. If you make any changes to the page, click Apply to apply the new settings to the system. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch.
  • Page 62: Lldp-Med Port Settings

    GS748T Smart Switch Software Administration Manual Field Description Network Policy Number Specifies the policy number. Application Specifies the media application type associated with the policy, which can be one of the following: • Unknown • Voice • Guest Voice • Guest Voice Signaling •...
  • Page 63 GS748T Smart Switch Software Administration Manual To configure LLDP-MED settings for a port: From the Port field, select the port to configure. From the LLDP-MED Status field, enable or disable the LLDP-MED mode for the selected interface. From the Notification field, specify whether the port should send a topology change notification if a device is connected or removed.
  • Page 64: Local Information

    GS748T Smart Switch Software Administration Manual Local Information Use the LLDP Local Information page to view the data that each port advertises through LLDP. To display the LLDP Local Device Information page, click System > Advanced > LLDP > Local Information. The following table describes the LLDP local information that displays for each port.
  • Page 65 GS748T Smart Switch Software Administration Manual The following table describes the detailed local information that displays for the selected port. Field Description Managed Address Address SubType Displays the type of address the management interface uses, such as an IPv4 address. Address Displays the address used to manage the device.
  • Page 66: Neighbors Information

    GS748T Smart Switch Software Administration Manual Field Description Current Capabilities Displays the TLVs advertised by the port. Device Class Network Connectivity indicates the device is a network connectivity device. Network Policies Application Type Specifies the media application type associated with the policy. VLAN ID Specifies the VLAN ID associated with the policy.
  • Page 67 GS748T Smart Switch Software Administration Manual The following table describes the information that displays for all LLDP neighbors that have been discovered. Field Description MSAP Entry Displays the Media Service Access Point (MSAP) entry number for the remote device. Local Port Displays the interface on the local system that received LLDP information from a remote system.
  • Page 68 GS748T Smart Switch Software Administration Manual Field Description Port Details Local Port Displays the interface on the local system that received LLDP information from a remote system. MSAP Entry Displays the Media Service Access Point (MSAP) entry number for the remote device.
  • Page 69 GS748T Smart Switch Software Administration Manual Field Description MED Details Capabilities Supported Specifies the supported capabilities that were received in MED TLV from the device. Current Capabilities Specifies the advertised capabilities that were received in MED TLV from the device. Device Class Displays the LLDP-MED endpoint device class.
  • Page 70 GS748T Smart Switch Software Administration Manual Field Description LLDP Unknown TLVs Type Displays the unknown TLV type field. Value Displays the unknown TLV value field. 70 | Chapter 2: Configuring System Information...
  • Page 71: Services - Dhcp Filtering

    GS748T Smart Switch Software Administration Manual Services — DHCP Filtering DHCP Filtering is a useful feature that can be employed as a security measure against unauthorized DHCP servers. A known attack is when an unauthorized DHCP server responds to a client that is requesting an IP address. The server configures the gateway for the client to be equal to the IP address of the server.
  • Page 72: Interface Configuration

    GS748T Smart Switch Software Administration Manual In the Admin Mode field, select Enable or Disable to turn the DHCP Filtering feature on or off. Click Apply to apply the change to the system. Configuration changes take effect immediately. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch.
  • Page 73 GS748T Smart Switch Software Administration Manual Choose the trust mode for the selected port(s) or LAG(s). • Enable: Any DHCP responses received on this port are forwarded. • Disable: Any DHCP (or BootP) responses received on this port are discarded. Click Apply to apply the change to the system.
  • Page 74 GS748T Smart Switch Software Administration Manual 74 | Chapter 2: Configuring System Information...
  • Page 75: Chapter 3 Configuring Switching Information

    Configuring Switching Information Use the features in the Switching tab to define Layer 2 features. The Switching tab contains links to the following features: • Ports on page 76 Link Aggregation Groups • on page 79 • VLANs on page 84 •...
  • Page 76: Ports

    GS748T Smart Switch Software Administration Manual Ports The pages on the Ports tab allow you to view and monitor the physical port information for the ports available on the switch. From the Ports link, you can access the following pages: •...
  • Page 77: Flow Control

    GS748T Smart Switch Software Administration Manual • Admin Mode. Use the menu to select the port control administration state, which can be one of the following: • Enable: The port can participate in the network (default). • Disable: The port is administratively down and does not participate in the network. •...
  • Page 78 GS748T Smart Switch Software Administration Manual higher speed switch refrains from sending packets. Transmissions are temporarily halted to prevent buffer overflows. To display the Flow Control page, click Switching > Ports, and then click the Flow Control link. To configure global flow control settings: From the Global Flow Control (IEEE 802.3x) Mode field, enable or disable IEEE 802.3x flow control on the system.
  • Page 79: Link Aggregation Groups

    GS748T Smart Switch Software Administration Manual It is possible to switch between the RJ-45 copper port and the SFP transceiver without a system reboot or reset. Link Aggregation Groups Link aggregation groups (LAGs), which are also known as port-channels, allow you to combine multiple full-duplex Ethernet links into a single logical link.
  • Page 80 GS748T Smart Switch Software Administration Manual To configure LAG settings: Select the check box next to the LAG to configure. You can select multiple LAGs to apply the same setting to the selected interfaces. Select the check box in the heading row to apply the same settings to all interfaces.
  • Page 81: Lag Membership

    GS748T Smart Switch Software Administration Manual Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch. If you make any changes to this page, click Apply to send the updated configuration to the switch.
  • Page 82: Lacp Configuration

    GS748T Smart Switch Software Administration Manual • Static Mode. When this field is enabled, the LAG is static and does not transmit or process received LAGPDUs. Click the orange bar to display the ports. Click the box below each port to include in the LAG. The following figure shows an example of how to configure LAG1 with ports g1–g4 as members.
  • Page 83: Lacp Port Configuration

    GS748T Smart Switch Software Administration Manual From the LACP System Priority field, specify the device’s link aggregation priority relative to the devices at the other ends of the links on which link aggregation is enabled. A higher value indicates a lower priority. You can change the value of the parameter globally by specifying a priority from 0–65535.
  • Page 84: Vlans

    GS748T Smart Switch Software Administration Manual Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch. If you make any changes to this page, click Apply to send the updated configuration to the switch.
  • Page 85: Vlan Membership Configuration

    GS748T Smart Switch Software Administration Manual To configure VLANs: To add a VLAN, configure the VLAN ID, name, and type, and then click Add. • VLAN ID. Specify the VLAN Identifier for the new VLAN. (You can enter data in this field only when you are creating a new VLAN.) The range of the VLAN ID is 1–4093.
  • Page 86 GS748T Smart Switch Software Administration Manual To display the VLAN Membership Configuration page, click Switching > VLAN > Advanced > VLAN Membership. To configure VLAN membership: From the VLAN ID field, select the VLAN to which you want to add ports. Click the orange bar below the VLAN Type field to display the physical ports on the switch.
  • Page 87: Port Vlan Id Configuration

    GS748T Smart Switch Software Administration Manual • Untag All: Select all the ports on which all frames transmitted from this VLAN will be untagged. All the ports will be included in the VLAN. • Tag All: Select the ports on which all frames transmitted for this VLAN will be tagged. All the ports will be included in the VLAN.
  • Page 88 GS748T Smart Switch Software Administration Manual To configure PVID settings for both physical ports and LAGs, click ALL. Select the check box next to the interfaces to configure. You can select multiple interfaces to apply the same setting to the selected interfaces. Select the check box in the heading row to apply the same settings to all interfaces.
  • Page 89: Voice Vlan

    GS748T Smart Switch Software Administration Manual Voice VLAN Configure the Voice VLAN settings for ports that carry traffic from IP phones. The Voice VLAN feature can help ensure that the sound quality of an IP phone is safeguarded from deteriorating when the data traffic on the port is high. From the VLAN link, you can access the following pages: •...
  • Page 90: Voice Vlan Port Setting

    GS748T Smart Switch Software Administration Manual From the Voice VLAN Aging Time field, specify the amount of time after the last IP phone’s OUI is aged out for a specific port. The port will age out after the bridge and voice aging time.
  • Page 91: Voice Vlan Oui

    GS748T Smart Switch Software Administration Manual Note: The Membership field displays whether the current operational status of the voice VLAN on the interface is active or not active. Voice VLAN OUI The Organizational Unique Identifier (OUI) identifies the IP phone manufacturer. The switch comes preconfigured with the following OUIs: •...
  • Page 92 GS748T Smart Switch Software Administration Manual To configure OUI settings: To add a new OUI prefix, type the VOIP OUI prefix in the Telephony OUI(s) field, provide a description of the prefix, and click Add. The OUI prefix must be in the format AA:BB:CC.
  • Page 93: Auto-Voip Configuration

    GS748T Smart Switch Software Administration Manual Auto-VoIP Configuration The Auto-VoIP automatically makes sure that time-sensitive voice traffic is given priority over data traffic on ports that have this feature enabled. Auto-VoIP checks for packets carrying the following VoIP protocols: • Session Initiation Protocol (SIP) •...
  • Page 94: Spanning Tree Protocol

    GS748T Smart Switch Software Administration Manual Spanning Tree Protocol The Spanning Tree Protocol (STP) provides a tree topology for any arrangement of bridges. STP also provides one path between end stations on a network, eliminating loops. Spanning tree versions supported include Common STP, Multiple STP, and Rapid STP. Classic STP provides a single path between end stations, avoiding and eliminating loops.
  • Page 95 GS748T Smart Switch Software Administration Manual To configure STP settings on the switch: From the Spanning Tree State field, specify whether to enable or disable Spanning Tree operation on the switch. From the STP Operation Mode field, Specifies the Force Protocol Version parameter for the switch.
  • Page 96: Cst Configuration

    GS748T Smart Switch Software Administration Manual The following table describes the STP Status information displayed on the screen. Field Description Bridge Identifier The bridge identifier for the CST. It is made up using the bridge priority and the base MAC address of the bridge. Time Since Topology Change The time in seconds since the topology of the CST last changed.
  • Page 97 GS748T Smart Switch Software Administration Manual To configure CST settings: Specify values for CST in the appropriate fields: • Bridge Priority. When switches or bridges are running STP, each is assigned a priority. After exchanging BPDUs, the switch with the lowest priority value becomes the root bridge.
  • Page 98: Cst Port Configuration

    GS748T Smart Switch Software Administration Manual If you make any configuration changes, click Apply to send the updated configuration to the switch. Configuration changes take place immediately. The following table describes the MSTP status information displayed on the Spanning Tree CST Configuration page.
  • Page 99: Cst Port Status

    GS748T Smart Switch Software Administration Manual To configure CST settings for both physical ports and LAGs, click ALL. Select the check box next to the port or LAG to configure. You can select multiple ports and LAGs to apply the same setting to the selected interfaces. Select the check box in the heading row to apply the same settings to all interfaces.
  • Page 100 GS748T Smart Switch Software Administration Manual The following table describes the CST Status information displayed on the screen. Field Description Interface Select a physical or port channel interface to configure. The port is associated with the VLAN(s) associated with the CST. Port Role Each MST Bridge Port that is enabled is assigned a Port Role for each spanning tree.
  • Page 101: Rapid Stp

    GS748T Smart Switch Software Administration Manual Rapid STP Use the Rapid STP page to view information about Rapid Spanning Tree (RSTP) port status. To display the Rapid STP page, click Switching > STP > Advanced > RSTP. The following table describes the Rapid STP Status information displayed on the screen. Field Description Interface...
  • Page 102 GS748T Smart Switch Software Administration Manual To configure an MST instance: To add an MST instance, configure the MST values and click Add: • MST ID. Specify the ID of the MST to create. Valid values for this are between 1 and 4094.
  • Page 103: Mst Port Configuration

    GS748T Smart Switch Software Administration Manual For each configured instance, the information described in the following table displays on the page. Field Description Bridge Identifier The bridge identifier for the selected MST instance. It is made up using the bridge priority and the base MAC address of the bridge.
  • Page 104 GS748T Smart Switch Software Administration Manual Note: If no MST instances have been configured on the switch, the page displays a “No MSTs Available” message. To configure MST port settings: To configure MST settings for a physical port, click PORTS. To configure MST settings for a Link Aggregation Group (LAG), click LAGS.
  • Page 105: Stp Statistics

    GS748T Smart Switch Software Administration Manual Field Description Port Forwarding State Indicates the current STP state of a port. If enabled, the port state determines what forwarding action is taken on traffic. Possible port states are: • Disabled: STP is currently disabled on the port. The port forwards traffic while learning MAC addresses.
  • Page 106 GS748T Smart Switch Software Administration Manual The following table describes the information available on the STP Statistics page. Field Description Interface Select a physical or port channel interface to view its statistics. STP BPDUs Received Number of STP BPDUs received at the selected port. STP BPDUs Transmitted Number of STP BPDUs transmitted from the selected port.
  • Page 107: Multicast

    GS748T Smart Switch Software Administration Manual Multicast Multicast IP traffic is traffic that is destined to a host group. Host groups are identified by class D IP addresses, which range from 224.0.0.0 to 239.255.255.255. From the Multicast link, you can access the following pages: Auto-Video Configuration •...
  • Page 108: Igmp Snooping Configuration

    GS748T Smart Switch Software Administration Manual to a host group. Host groups are identified by class D IP addresses, which range from 224.0.0.0 to 239.255.255.255. Based on the IGMP query and report messages, the switch forwards traffic only to the ports that request the multicast traffic. This prevents the switch from broadcasting the traffic to all ports and possibly affecting network performance.
  • Page 109 GS748T Smart Switch Software Administration Manual To configure IGMP Snooping: Enable or disable IGMP Snooping on the switch. • Enable. The switch snoops all IGMP packets it receives to determine which segments should receive packets directed to the group address. •...
  • Page 110: Igmp Snooping Interface Configuration

    GS748T Smart Switch Software Administration Manual The following table displays information about the global IGMP snooping status and statistics on the page. Field Description Multicast Control Frame Displays the number of multicast control frames that have been processed Count by the CPU. Interfaces Enabled for IGMP Lists the interfaces currently enabled for IGMP Snooping.
  • Page 111: Igmp Snooping Table

    GS748T Smart Switch Software Administration Manual To configure IGMP Snooping interface settings: To configure IGMP Snooping settings for a physical port, click PORTS. To configure IGMP Snooping settings for a Link Aggregation Group (LAG), click LAGS. To configure IGMP Snooping settings for both physical ports and LAGs, click ALL. Select the check box next to the port or LAG to configure.
  • Page 112 GS748T Smart Switch Software Administration Manual The following table describes the fields in the IGMP Snooping Table. Field Description MAC Address A multicast MAC address for which the switch has forwarding and/or filtering information. The format is 6 two-digit hexadecimal numbers that are separated by colons, for example, 01:00:5e:45:67:89.
  • Page 113 GS748T Smart Switch Software Administration Manual When a packet enters the switch, the destination MAC address is combined with the VLAN ID and a search is performed in the Layer 2 Multicast Forwarding Database. If no match is found, then the packet is either flooded to all ports in the VLAN or discarded, depending on the switch configuration.
  • Page 114: Mfdb Statistics

    GS748T Smart Switch Software Administration Manual Field Description Description The text description of this multicast table entry. Possible values are Management Configured, Network Configured, and Network Assisted. Interface The list of interfaces that are designated for forwarding (Fwd) and filtering (Flt) for the selected address.
  • Page 115: Igmp Snooping Vlan Configuration

    GS748T Smart Switch Software Administration Manual Field Description Most MFDB Entries The largest number of entries that have been present in the Multicast Forwarding Since Last Reset Database table since the system was last reset. This value is also known as the MFDB high-water mark.
  • Page 116: Igmp Snooping Querier

    GS748T Smart Switch Software Administration Manual • Host Timeout. Sets the value for group membership interval of IGMP snooping for the specified VLAN ID. The valid range is (Maximum Response Time + 1) to 3600 seconds. • Maximum Response Time. Enter the amount of time in seconds that a switch will wait after sending a query on the VLAN because it did not receive a report for a particular group in that interface.
  • Page 117: Igmp Snooping Querier Vlan Configuration

    GS748T Smart Switch Software Administration Manual To access this page, click Switching > Multicast > IGMP Snooping Querier > IGMP Snooping > Querier Configuration. To configure IGMP Snooping Querier settings: From the Querier Admin Mode field, enable or disable the administrative mode for IGMP Snooping Querier.
  • Page 118: Igmp Snooping Querier Vlan Status

    GS748T Smart Switch Software Administration Manual To configure Querier VLAN settings: To create a new VLAN ID for IGMP Snooping, select New Entry from the VLAN ID field and complete the following fields: • VLAN ID. Specifies the VLAN ID for which the IGMP Snooping Querier is to be enabled.
  • Page 119 GS748T Smart Switch Software Administration Manual To access this page, click Switching > Multicast > IGMP Snooping Querier > Querier VLAN Status. The following table describes the information available on the Querier VLAN Status page. Field Description VLAN ID Specifies the VLAN ID on which the IGMP Snooping Querier is administratively enabled and for which VLAN exists in the VLAN database.
  • Page 120: Forwarding Database

    GS748T Smart Switch Software Administration Manual Field Description Last Querier Version Displays the IGMP protocol version of the last querier from which a query was snooped on the VLAN. Operational Max Response Displays the maximum response time to be used in the queries that are sent Time by the snooping querier.
  • Page 121 GS748T Smart Switch Software Administration Manual To search for an entry in the MAC Address Table: Use the Search By field to search for MAC Addresses by MAC Address, VLAN ID, or Interface. • MAC Address: Select MAC Address from the menu and enter a six-byte hexadecimal MAC address in two-digit groups separated by colons, then click Go.
  • Page 122: Dynamic Address Configuration

    GS748T Smart Switch Software Administration Manual Field Description Interface The port where this address was learned: that is, this field displays the port through which the MAC address can be reached. Status The status of this entry. The possible values are: •...
  • Page 123: Static Mac Address

    GS748T Smart Switch Software Administration Manual Note: IEEE 802.1D recommends a default of 300 seconds, which is the factory default. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch. Click Apply to apply to send the updated configuration to the switch.
  • Page 124 GS748T Smart Switch Software Administration Manual To modify the settings for a static MAC address, select the check box next to the entry, update the desired values, and click Apply. Click Refresh to reload the page and display the latest MAC address learned on a specific port.
  • Page 125: Chapter 4 Configuring Quality Of Service

    Configuring Quality of Service Use the features in the QoS tab to configure Quality of Service (QoS) settings on the switch. The QoS tab contains links to the following features: Class of Service • on page 126 • Differentiated Services on page 133 In a typical switch, each physical port consists of one or more queues for transmitting packets on the attached network.
  • Page 126: Class Of Service

    GS748T Smart Switch Software Administration Manual Class of Service The Class of Service (CoS) queueing feature lets you directly configure certain aspects of switch queueing. This provides the desired QoS behavior for different types of network traffic when the complexities of DiffServ are not required. The priority of a packet arriving at an interface can be used to steer the packet to the appropriate outbound CoS queue through a mapping table.
  • Page 127: Cos Interface Configuration

    GS748T Smart Switch Software Administration Manual To configure global CoS settings: Select the Global radio button to configure the trust mode settings that apply to all interfaces. Alternatively, you can select the Interface radio button to apply trust mode settings to individual interfaces.
  • Page 128 GS748T Smart Switch Software Administration Manual To display the CoS Interface Configuration page, click the QoS > CoS tab, and then click the Advanced > CoS Interface Configuration link. To configure CoS settings for an interface: To configure CoS settings for a physical port, click PORTS. To configure CoS settings for a Link Aggregation Group (LAG), click LAGS.
  • Page 129: Interface Queue Configuration

    GS748T Smart Switch Software Administration Manual The expected shaping at egress interface is calculated as: frameSize*shaping*64/(64+20), where frameSize is configured frame size and shaping is configured traffic shaping. For example, when 64 Bytes frame size and 64 kbps shaping are configured, expected shaping will be approximately 3121 kbps.
  • Page 130: 802.1P To Queue Mapping

    GS748T Smart Switch Software Administration Manual To configure CoS queue settings for a Link Aggregation Group (LAG), click LAGS. To configure CoS queue settings for both physical ports and LAGs, click ALL. Select the check box next to the port or LAG to configure. You can select multiple ports and LAGs to apply the same setting to the selected interfaces.
  • Page 131: Dscp To Queue Mapping

    GS748T Smart Switch Software Administration Manual To map 802.1p priorities to queues: Select the Global radio button to apply the same 802.1p priority mapping to all CoS configurable interfaces or select the Interface radio button to apply 802.1p priority mapping to on a per-interface basis. If you map 802.1p priorities to individual interfaces, select the Interface radio button and then select the interface from the drop-down menu.
  • Page 132 GS748T Smart Switch Software Administration Manual To display the IP DSCP Mapping page, click QoS > CoS > Advanced > DSCP to Queue Mapping. To map DSCP values to queues: For each DSCP value, select a hardware queue to associate with the value. The traffic class is the hardware queue for a port.
  • Page 133: Differentiated Services

    GS748T Smart Switch Software Administration Manual Differentiated Services The QoS feature contains Differentiated Services (DiffServ) support that allows traffic to be classified into streams and given certain QoS treatment in accordance with defined per-hop behaviors. Standard IP-based networks are designed to provide “best effort” data delivery service. “Best effort”...
  • Page 134: Diffserv Configuration

    GS748T Smart Switch Software Administration Manual Diffserv Configuration Use the Diffserv Configuration page to display DiffServ General Status Group information, which includes the current administrative mode setting as well as the current and maximum number of rows in each of the main DiffServ private MIB tables. To display the page, click QoS >...
  • Page 135: Class Configuration

    GS748T Smart Switch Software Administration Manual Field Description Policy Instance Table Displays the current and maximum number of rows of the policy instance table. Policy Attributes Table Displays the current and maximum number of rows of the policy attributes table. Service Table Displays the current and maximum number of rows of the service table.
  • Page 136 GS748T Smart Switch Software Administration Manual Click Refresh to refresh the page with the most current data from the switch. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch. After creating a Class, click the class link to the Class page. To configure the class match criteria: Click the class name for an existing class.
  • Page 137 GS748T Smart Switch Software Administration Manual The class name is a hyperlink. The following figure shows the configuration fields for the class. Define the criteria to associate with a DiffServ class: • Reference Class. Selects a class to start referencing for criteria. A specified class can reference at most one other class of the same type.
  • Page 138: Policy Configuration

    GS748T Smart Switch Software Administration Manual you select Other, the screen refreshes and a Port ID field appears. Enter a user-defined Port ID by which packets are matched to the rule. • Destination IP Address. Requires a packet’s destination port IP address to match the address listed here.
  • Page 139 GS748T Smart Switch Software Administration Manual To configure a DiffServ policy: To create a new policy, enter a policy name in the Policy Selector field, select the existing DiffServ class to associate with the policy, and click Add. The available policy type is In, which indicates the type is specific to inbound traffic. This field is not configurable.
  • Page 140 GS748T Smart Switch Software Administration Manual To configure the policy attributes: Click the name of the policy. 140 | Chapter 4: Configuring Quality of Service...
  • Page 141 GS748T Smart Switch Software Administration Manual The policy name is a hyperlink. The following figure shows the configuration fields for the policy. Select the queue to which packets will of this policy-class will be assigned . Configure the policy attributes:. •...
  • Page 142 GS748T Smart Switch Software Administration Manual • Simple Policy. Use this attribute to establish the traffic policing style for the specified class. The simple form of the policy command uses a single data rate and burst size, resulting in two outcomes: confirm and violate. If you select the Simple Policy attribute, you can configure the following fields: •...
  • Page 143: Service Configuration

    GS748T Smart Switch Software Administration Manual • Mark IP DSCP. These packets are marked by DiffServ with the specified DSCP value before being presented to the system forwarding element. This selection requires that the DSCP value field be set. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch.
  • Page 144: Service Statistics

    GS748T Smart Switch Software Administration Manual To remove a policy from the selected interface(s) select None from the Policy In menu, and then click Apply. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch.
  • Page 145 GS748T Smart Switch Software Administration Manual Field Description Discarded Packets Displays the total number of packets discarded for all class instances in this service policy for any reason due to DiffServ treatment. This is the overall count per-interface, per-direction. Member Classes Selects the member class for which octet statistics are to display.
  • Page 146 GS748T Smart Switch Software Administration Manual 146 | Chapter 4: Configuring Quality of Service...
  • Page 147: Chapter 5 Managing Device Security

    Managing Device Security Use the features available from the Security tab to configure management security settings for port, user, and server security. The Security tab contains links to the following features: • Management Security Settings on page 148 Configuring Management Access •...
  • Page 148: Management Security Settings

    GS748T Smart Switch Software Administration Manual Management Security Settings From the Management Security Settings page, you can configure the login password, Remote Authorization Dial-In User Service (RADIUS) settings, Terminal Access Controller Access Control System (TACACS+) settings, and authentication lists. To display the page, click the Security > Management Security tab. The Management Security folder contains links to the following features: •...
  • Page 149: Radius Configuration

    GS748T Smart Switch Software Administration Manual Use the Reset Password field to reset the password to the default value. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch. If you make changes to the page, click Apply to apply the changes to the system.
  • Page 150 GS748T Smart Switch Software Administration Manual The Current Server IP Address field is blank if no servers are configured (see RADIUS Server Configuration on page 151). The switch supports up to three configured RADIUS servers. If more than one RADIUS servers are configured, the current server is the server configured as the primary server.
  • Page 151: Radius Server Configuration

    GS748T Smart Switch Software Administration Manual From the Accounting Mode menu, select whether the RADIUS accounting mode is enabled or disabled on the current server. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch.
  • Page 152 GS748T Smart Switch Software Administration Manual To modify settings for a RADIUS server that is already configured on the switch, select the check box next to the server address, update the desired fields, and click Apply. Click Refresh to update the page with the most current information. To delete a configured RADIUS server, select the check box next to the server address, and then click Delete.
  • Page 153 GS748T Smart Switch Software Administration Manual • Click Clear Counters to clear the authentication server and RADIUS statistics to their default values. • Click Refresh to refresh the page with the most current data from the switch. Accounting Server Configuration Use the RADIUS Accounting Server Configuration page to view and configure various settings for one or more RADIUS accounting servers on the network.
  • Page 154: Configuring Tacacs

    GS748T Smart Switch Software Administration Manual To delete a configured RADIUS Accounting server, click Delete. Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch. The following table describes RADIUS accounting server statistics available on the page. Field Description Accounting Server Address...
  • Page 155 GS748T Smart Switch Software Administration Manual • Authorization: Performed at login. When the authentication session is completed, an authorization session starts using the authenticated user name. The TACACS+ server checks the user privileges. The TACACS+ protocol ensures network security through encrypted protocol exchanges between the device and TACACS+ server.
  • Page 156 GS748T Smart Switch Software Administration Manual TACACS+ Server Configuration Use the TACACS+ Server Configuration page to configure up to five TACACS+ servers with which the switch can communicate. To display the TACACS+ Server Configuration page, click Security > Management Security, and then click the TACACS+ >...
  • Page 157: Authentication List Configuration

    GS748T Smart Switch Software Administration Manual In the Port field, specify the authentication port number through which the TACACS+ session occurs. The default is port 49, and the range is 0–65535. In the Key String field, specify the authentication and encryption key for TACACS+ communications between the GS748T and the TACACS+ server.
  • Page 158 GS748T Smart Switch Software Administration Manual Use the drop down menu in the 1 column to select the authentication method that should appear first in the selected authentication login list. If you select a method that does not time out as the first method, such as ‘local’, no other method will be tried, even if you have specified more than one method.
  • Page 159: Configuring Management Access

    GS748T Smart Switch Software Administration Manual Configuring Management Access From the Access page, you can configure HTTP and Secure HTTP access to the GS748T management interface. You can also configure Access Control Profiles and Access Rules. The Security > Access tab contains the following folders: HTTP Configuration •...
  • Page 160: Secure Http Configuration

    GS748T Smart Switch Software Administration Manual interface. A value of zero corresponds to an infinite timeout. The default value is 5 minutes. The currently configured value is shown when the Web page is displayed. In the HTTP Session Hard Timeout field, specify the hard timeout for HTTP sessions. This timeout is unaffected by the activity level of the session.
  • Page 161: Certificate Download

    GS748T Smart Switch Software Administration Manual Use the radio buttons in the HTTPS Admin Mode field to enable or disable the Administrative Mode of Secure HTTP. The currently configured value is shown when the Web page is displayed. The default value is Disable.
  • Page 162 GS748T Smart Switch Software Administration Manual • The file is in the correct format. • The switch has a path to the TFTP server. To configure the certificate download settings for HTTPS sessions: From the File Type menu, select the type of SSL certificate to download, which can be one of the following: •...
  • Page 163: Access Profile Configuration

    GS748T Smart Switch Software Administration Manual Access Profile Configuration Use the Access Profile Configuration page to configure settings that control management access to the switch. Access profile configuration requires three steps: Use the Access Profile Configuration page to create an access profile. To add rules to the profile, the access profile must be deactivated, which is the default setting.
  • Page 164: Access Rule Configuration

    GS748T Smart Switch Software Administration Manual The Profile Summary table shows the rules that are configured for the profile, as the following table describes. Field Description Rule Type Identifies the action the rule takes, which is either Permit or Deny. Service Type Displays the type of service to allow or prohibit from accessing the switch management interface:...
  • Page 165 GS748T Smart Switch Software Administration Manual Before you create access rules, make sure: • An access profile exists. • The access profile is deactivated. To configure access profile rules: To add an access profile rule, configure the following settings and click Add. •...
  • Page 166: Port Authentication

    GS748T Smart Switch Software Administration Manual Port Authentication In port-based authentication mode, when 802.1X is enabled globally and on the port, successful authentication of any one supplicant attached to the port results in all users being able to use the port without restrictions. At any given time, only one supplicant is allowed to attempt authentication on a port in this mode.
  • Page 167 GS748T Smart Switch Software Administration Manual To configure global 802.1X settings: Select the appropriate radio button in the Port Based Authentication State field to enable or disable 802.1X administrative mode on the switch. • Enable. Port-based authentication is permitted on the switch. Note: If 802.1X is enabled, authentication is performed by a RADIUS server.
  • Page 168: Port Authentication

    GS748T Smart Switch Software Administration Manual Port Authentication Use the Port Authentication page to enable and configure port access control on one or more ports. To access the Port Authentication page, click Security > Port Authentication, and then click the Advanced > Port Authentication link. Note: Use the horizontal scroll bar at the bottom of the browser to view all the fields on the Port Authentication page.
  • Page 169 GS748T Smart Switch Software Administration Manual To configure 802.1X settings for the port: Select the check box next to the port to configure. You can also select multiple check boxes to apply the same settings to the select ports, or select the check box in the heading row to apply the same settings to all ports.
  • Page 170 GS748T Smart Switch Software Administration Manual • Unauthorized: Denies the selected interface system access by moving the interface into unauthorized state. The switch cannot provide authentication services to the client through the interface. • Guest VLAN ID. This field allows the user to configure the Guest VLAN ID on the interface.
  • Page 171 GS748T Smart Switch Software Administration Manual • Protocol Version. This field displays the protocol version associated with the selected port. The only possible value is 1, corresponding to the first version of the 802.1X specification. This field is not configurable. •...
  • Page 172: Port Summary

    GS748T Smart Switch Software Administration Manual Port Summary Use the Port Summary page to view information about the port access control settings on a specific port. To access the Port Summary page, click Security > Port Authentication > Advanced > Port Summary.
  • Page 173: Traffic Control

    GS748T Smart Switch Software Administration Manual Field Description Reauthentication Enabled Displays if reauthentication is enabled on the selected port. This is a configurable field. The possible values are true and false . If the value is true , reauthentication will occur. Otherwise, reauthentication will not be allowed. Port Status This field displays the authorization status of the specified port.
  • Page 174 GS748T Smart Switch Software Administration Manual To configure MAC filter settings: To configure a new MAC filter: a. Select Create Filter from the MAC Filter menu. If no filters have been configured, this is the only option available. b. From the VLAN ID menu, select the VLAN to use with the MAC address to fully identify packets you want filtered.
  • Page 175: Mac Filter Summary

    GS748T Smart Switch Software Administration Manual If you make changes to the page, click Apply to apply the changes to the system. MAC Filter Summary Use the MAC Filter Summary page to view the MAC filters that are configured on the system. To display the MAC Filter Summary page, click Security >...
  • Page 176 GS748T Smart Switch Software Administration Manual The switch measures the incoming broadcast/multicast/unknown unicast packet rate per port and discards packets when the rate exceeds the defined value. Storm control is enabled per interface, by defining the packet type and the rate at which the packets are transmitted. To display the Storm Control page, click Security >...
  • Page 177: Port Security Configuration

    GS748T Smart Switch Software Administration Manual If you make changes to the page, click Apply to apply the changes to the system. Port Security Configuration Use the Port Security feature to lock one or more ports on the system. When a port is locked, only packets with an allowable source MAC addresses can be forwarded.
  • Page 178: Port Security Interface Configuration

    GS748T Smart Switch Software Administration Manual Click Refresh to refresh the page with the most current data from the switch. Port Security Interface Configuration A MAC address can be defined as allowable by one of two methods: dynamically or statically. Both methods are used concurrently when a port is locked.
  • Page 179: Security Mac Address

    GS748T Smart Switch Software Administration Manual • Port Security. Enable or Disable the port security feature for the selected port. • Max Allowed Dynamically Learned MAC. Sets the maximum number of dynamically learned MAC addresses on the selected interface. Valid range is 0–600. •...
  • Page 180: Protected Ports Membership

    GS748T Smart Switch Software Administration Manual Field Description VLAN ID Displays the VLAN ID corresponding to the Last Violation MAC address. MAC Address Displays the MAC addresses learned on a specific port. Click Refresh to refresh the page with the most current data from the switch. Protected Ports Membership If a port is configured as protected, it does not forward traffic to any other protected port on the switch, but it will forward traffic to unprotected ports.
  • Page 181: Configuring Access Control Lists

    GS748T Smart Switch Software Administration Manual Configuring Access Control Lists Access Control Lists (ACLs) ensure that only authorized users have access to specific resources while blocking off any unwarranted attempts to reach network resources. ACLs are used to provide traffic flow control, restrict contents of routing updates, decide which types of traffic are forwarded or blocked, and above all provide security for the network.
  • Page 182: Mac Acl

    GS748T Smart Switch Software Administration Manual When a packet meets the match criteria of a rule, the specified rule action (Permit or Deny) is taken and the additional rules are not checked for a match; configure as follows: • Select Devices Based on Source MAC Address. Permit and Deny options are used to configure devices based on source MAC address.
  • Page 183: Mac Rules

    GS748T Smart Switch Software Administration Manual To display the MAC ACL page, click Security > ACL. The MAC ACL page is under the Basic link. The MAC ACL table displays the number of ACLs currently configured in the switch and the maximum number of ACLs that can be configured.
  • Page 184 GS748T Smart Switch Software Administration Manual To configure MAC ACL rules: From the ACL Name field, specify the existing MAC ACL to which the rule will apply. To set up a new MAC ACL use the MAC ACL page. To add a new rule, enter an ID for the rule, configure the following settings, and click Add. •...
  • Page 185: Mac Binding Configuration

    GS748T Smart Switch Software Administration Manual • EtherType User Value. This field is configurable if you select User Value from the EtherType drop down menu. The value you enter specifies a customized Ethertype to compare against an Ethernet frame. The valid range of values is 0x0600–0xFFFF. •...
  • Page 186: Mac Binding Table

    GS748T Smart Switch Software Administration Manual To configure MAC ACL interface bindings: Select an existing MAC ACL from the ACL ID menu. The packet filtering direction for ACL is Inbound, which means the MAC ACL rules are applied to traffic entering the port. Specify an optional sequence number to indicate the order of this access list relative to other access lists already assigned to this interface and direction.
  • Page 187: Ip Acl

    GS748T Smart Switch Software Administration Manual The following table describes the information displayed in the MAC Binding Table. Field Description Interface Displays the interface to which the MAC ACL is bound. Direction Specifies the packet filtering direction for ACL. The only valid direction is Inbound, which means the MAC ACL rules are applied to traffic entering the port.
  • Page 188 GS748T Smart Switch Software Administration Manual To display the IP ACL page, click Security > ACL, then click the Advanced > IP ACL link. The IP ACL area shows the current size of the ACL table versus the maximum size of the ACL table.
  • Page 189: Ip Rules

    GS748T Smart Switch Software Administration Manual IP Rules Use the IP Rules page to define rules for IP-based standard ACLs. The access list definition includes rules that specify whether traffic matching the criteria is forwarded normally or discarded. Note: There is an implicit “deny all” rule at the end of an ACL list. This means that if an ACL is applied to a packet and if none of the explicit rules match, then the final implicit “deny all”...
  • Page 190: Ip Extended Rules

    GS748T Smart Switch Software Administration Manual • Match Every. Requires a packet to match the criteria of this ACL. Select True or False from the drop down menu. Match Every is exclusive to the other filtering rules, so if Match Every is True, the other rules on the screen are not available. •...
  • Page 191 GS748T Smart Switch Software Administration Manual To configure rules for an IP ACL: To add an IP ACL rule, select the ACL ID to add the rule to, select the check box in the Extended ACL Rule table, and click Add. The page displays the extended ACL Rule Configuration fields.
  • Page 192 GS748T Smart Switch Software Administration Manual Configure the new rule. • Rule ID. Specify a number from 1–10 to identify the IP ACL rule. You can create up to 10 rules for each ACL. • Action. Selects the ACL forwarding action, which is one of the following: •...
  • Page 193 GS748T Smart Switch Software Administration Manual • Dst L4 Port. Requires a packet’s TCP/UDP destination port to match the port listed here. Complete one of the following fields: • Destination L4 Keyword: Select the desired L4 keyword from a list of destination ports on which the rule can be based.
  • Page 194: Ip Binding Configuration

    GS748T Smart Switch Software Administration Manual IP Binding Configuration When an ACL is bound to an interface, all the rules that have been defined are applied to the selected interface. Use the IP Binding Configuration page to assign ACL lists to ACL Priorities and Interfaces.
  • Page 195: Ip Binding Table

    GS748T Smart Switch Software Administration Manual Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch. Click Apply to save any changes to the running configuration. IP Binding Table Use the IP Binding Table page to view or delete the IP ACL bindings.
  • Page 196 GS748T Smart Switch Software Administration Manual 196 | Chapter 5: Managing Device Security...
  • Page 197: Chapter 6 Monitoring The System

    Monitoring the System Use the features available from the Monitoring tab to view a variety of information about the switch and its ports and to configure how the switch monitors events. The Monitoring tab contains links to the following features: Ports •...
  • Page 198: Ports

    GS748T Smart Switch Software Administration Manual Ports The pages available from the Ports link contain a variety of information about the number and type of traffic transmitted from and received on the switch. From the Ports link, you can access the following pages: •...
  • Page 199 GS748T Smart Switch Software Administration Manual The following table describes the Switch Statistics displayed on the screen. Field Description ifIndex This object indicates the ifIndex of the interface table entry associated with the processor of this switch. Octets Received The total number of octets of data received by the processor (excluding framing bits, but including FCS octets).
  • Page 200: Port Statistics

    GS748T Smart Switch Software Administration Manual Field Description Most VLAN Entries Ever The largest number of VLANs that have been active on this switch since the Used last reboot. Static VLAN Entries The number of presently active VLAN entries on this switch that have been created statically.
  • Page 201: Port Detailed Statistics

    GS748T Smart Switch Software Administration Manual The following table describes the per-port statistics displayed on the screen. Field Description Interface Lists the ports on the system. Total Packets Received The total number of packets received that were without errors. Without Errors Packets Received With Error The number of inbound packets that contained errors preventing them from being deliverable to a higher layer protocol.
  • Page 202 GS748T Smart Switch Software Administration Manual The following table describes the detailed port information displayed on the screen. To view information about a different port, select the port number from the Interface menu. Field Description Interface Use the drop down menu to select the interface for which data is to be displayed or configured.
  • Page 203 GS748T Smart Switch Software Administration Manual Field Description STP Mode Displays the Spanning Tree Protocol (STP) Administrative Mode for the port or LAG. The possible values for this field are: • Enable Enables the Spanning Tree Protocol for this port. •...
  • Page 204 GS748T Smart Switch Software Administration Manual Field Description Packets RX and TX The total number of packets (including bad packets) received or transmitted 512-1023 Octets that were between 512 and 1023 octets in length inclusive (excluding framing bits but including FCS octets). Packets RX and TX The total number of packets (including bad packets) received or transmitted 1024-1518 Octets...
  • Page 205 GS748T Smart Switch Software Administration Manual Field Description Broadcast Packets The total number of good packets received that were directed to the broadcast Received address. This does not include multicast packets. Total Packets Received with The total number of inbound packets that contained errors preventing them MAC Errors from being deliverable to a higher-layer protocol.
  • Page 206 GS748T Smart Switch Software Administration Manual Field Description Upstream Threshold The number of frames discarded due to lack of cell descriptors available for that packet's priority level. Total Packets Transmitted The total number of octets of data (including those in bad packets) transmitted (Octets) on the network (excluding framing bits but including FCS octets).
  • Page 207 GS748T Smart Switch Software Administration Manual Field Description Tx Oversized The total number of frames that exceeded the max permitted frame size. This counter has a max increment rate of 815 counts per second at 10 Mb/s. Underrun Errors The total number of frames discarded because the transmit FIFO buffer became empty during frame transmission.
  • Page 208: Eap Statistics

    GS748T Smart Switch Software Administration Manual EAP Statistics Use the EAP Statistics page to display information about EAP packets received on a specific port. To display the EAP Statistics page, click the Monitoring > Ports tab, and then click the EAP Statistics link.
  • Page 209: Cable Test

    GS748T Smart Switch Software Administration Manual Field Description Response/ID Frames Received Displays the number of EAP Respond ID frames that have been received on the port. Response Frames Received Displays the number of valid EAP Response frames received on the port. Request/ID Frames Displays the number of EAP Requested ID frames transmitted through the Transmitted...
  • Page 210 GS748T Smart Switch Software Administration Manual The following table describes the cable information displayed on the screen. Field Description Interface Specifies the interface that has the connected cable. Cable Status Displays the cable status. • Normal: the cable is working correctly. •...
  • Page 211: System Logs

    GS748T Smart Switch Software Administration Manual System Logs The switch may generate messages in response to events, faults, or errors occurring on the platform as well as changes in configuration or other occurrences. These messages are stored locally and can be forwarded to one or more centralized points of collection for monitoring purposes or long term archival storage.
  • Page 212 GS748T Smart Switch Software Administration Manual To configure the Memory Log settings: Use the radio buttons in the Admin Status field to determine whether to log messages. • Enable: Enables system logging. • Disable: Prevents the system from logging messages. From the Behavior menu, specify the behavior of the log when it is full.
  • Page 213: Flash Log Configuration

    GS748T Smart Switch Software Administration Manual • Click Cancel to cancel the configuration on the screen and reset the data on the screen to the latest value of the switch. FLASH Log Configuration The FLASH log is a log that is stored in persistent storage, which means that the log messages are retained across a switch reboot.
  • Page 214: Server Log Configuration

    GS748T Smart Switch Software Administration Manual • Enable: Enables persistent logging. • Disable: Prevents the system from logging messages in persistent storage. From the Severity Filter field, specify the type of log messages to record. A log records messages equal to or above a configured severity threshold. For example, if you select Error, the logged messages include Error, Critical, Alert, and Emergency.
  • Page 215 GS748T Smart Switch Software Administration Manual To configure local log server settings: Use the radio buttons in the Admin Status field to determine whether to send log messages to the remote syslog hosts configured on the switch. • Enable: Messages will be sent to all configured hosts (syslog collectors or relays) using the values configured for each host.
  • Page 216: Trap Logs

    GS748T Smart Switch Software Administration Manual the host. For example, if you select Error, the logged messages include Error, Critical, Alert, and Emergency. The default severity level is Alert (1). The severity can be one of the following levels: • Emergency (0): The highest level warning level.
  • Page 217 GS748T Smart Switch Software Administration Manual The following table describes the Trap Log information displayed on the screen. Field Description Number of Traps Since The number of traps that have occurred since the switch last reboot. Last Reset Trap Log Capacity The maximum number of traps stored in the log.
  • Page 218: Event Logs

    GS748T Smart Switch Software Administration Manual Event Logs Use the Event Log page to display the event log, which is used to hold error messages for catastrophic events. After the event is logged and the updated log is saved in flash memory, the switch will be reset.
  • Page 219: Port Mirroring

    GS748T Smart Switch Software Administration Manual Use the buttons at the bottom of the page to perform the following actions: • Click Clear to clear the messages out of the Event Log. • Click Refresh to refresh the data on the screen and display the most current information. Port Mirroring The page under the Mirroring link allows you to view and configure port mirroring on the system.
  • Page 220 GS748T Smart Switch Software Administration Manual To access the Multiple Port Mirroring page, click Monitoring > Port Mirroring. To configure Port Mirroring: Select the check box next to a port to configure it as a source port. In the Destination Port field, specify the port to which port traffic is be copied. Use the g1, g2,...format to specify the port.
  • Page 221: Chapter 7 Maintenance

    Maintenance Use the features available from the Maintenance tab to help you manage the switch. The Maintenance tab contains links to the following features: • Reset on page 222 Upload File From Switch • on page 224 • Download File To Switch on page 227 •...
  • Page 222: Reset

    GS748T Smart Switch Software Administration Manual Reset The Reset menu contains links to the following options: • Device Reboot on page 222 • Factory Default on page 222 Device Reboot Use the Device Reboot page to reboot the GS748T. To access the Device Reboot page, click Maintenance > Reset > Device Reboot. To reboot the switch: Select the check box on the page.
  • Page 223 GS748T Smart Switch Software Administration Manual network connectivity after you reset the switch to the factory defaults, see Connecting the Switch to the Network on page 12. To access the Factory Defaults page, click Maintenance > Reset > Factory Default. To reset the switch to the factory default settings: Select the check box on the page.
  • Page 224: Upload File From Switch

    GS748T Smart Switch Software Administration Manual Upload File From Switch The switch supports system file uploads from the switch to a remote system by using either TFTP or HTTP. The Upload menu contains links to the following options: • TFTP File Upload on page 224 •...
  • Page 225: Http File Upload

    GS748T Smart Switch Software Administration Manual • Trap Log: Uploads the system trap records. If the file type is Code, specify whether to upload image1 or image2. This field is only visible when Code is selected as the File Type. From the Server Address Type filed, specify the format to use for the address you type in the TFTP Server Address field: •...
  • Page 226 GS748T Smart Switch Software Administration Manual To upload a file from the switch to another system by using HTTP: From the File Type menu, specify what type of file you want to upload from the switch: • Code: The code is the system software image, which is saved in one of two flash sectors called images (image1 and image2).
  • Page 227: Download File To Switch

    GS748T Smart Switch Software Administration Manual Download File To Switch The switch supports system file downloads from a remote system to the switch by using either TFTP or HTTP. The Download menu contains links to the following options: TFTP File Download •...
  • Page 228 GS748T Smart Switch Software Administration Manual To download a file to the switch from a TFTP server: From the File Type menu, Specify what type of file you want to download to the switch: • Code: The code is the system software image, which is saved in one of two flash sectors called images (image1 and image2).
  • Page 229: Http File Download

    GS748T Smart Switch Software Administration Manual Select the Start File Transfer check box to initiate the file upload. Click Apply to begin the file transfer. The last row of the table displays information about the progress of the file transfer. The page refreshes automatically until the file transfer completes or fails.
  • Page 230 GS748T Smart Switch Software Administration Manual upload a working configuration from a device, edit it offline to personalize it for another similar device (for example, change the device name, serial number, IP address), and download it to that device. • Boot Code: The boot code used to automatically boot the system.
  • Page 231: File Management

    GS748T Smart Switch Software Administration Manual File Management The system maintains two versions of the GS748T software in permanent storage. One image is the active image, and the second image is the backup image. The active image is loaded during subsequent switch restarts. This feature reduces switch down time when upgrading or downgrading the GS748T software.
  • Page 232: Dual Image Status

    GS748T Smart Switch Software Administration Manual The Current-active field displays the name of the active image. To configure a descriptive name for the selected software image, type the name in the Image Description field. To set the selected image as the active image, select the Active Image check box. Note: After activating an image, you must perform a system reset of the switch in order to run the new code.
  • Page 233 GS748T Smart Switch Software Administration Manual The following table describes the information on the Dual Image Status page. Field Description Unit The unit ID of the switch is always 1. Image1 Ver Displays the version of the image1 code file. Image2 Ver Displays the version of the image2 code file.
  • Page 234: Troubleshooting

    GS748T Smart Switch Software Administration Manual Troubleshooting The Troubleshooting menu contains links to the following options: • Ping on page 234 • Ping IPv6 on page 235 • Traceroute on page 236 Ping Use the Ping page to tell the switch to send a Ping request to a specified IP address. You can use this feature to check whether the switch can communicate with a particular network host.
  • Page 235: Ping Ipv6

    GS748T Smart Switch Software Administration Manual Click Cancel to cancel the operation on the screen and reset the data on the screen to the latest value of the switch. Click Apply to send the ping. The switch sends the number of pings specified in the Count field, and the results are displayed below the configurable data in the Ping area.
  • Page 236: Traceroute

    GS748T Smart Switch Software Administration Manual • Link Local Address. Enter the link local address of the station you want the switch to ping. The initial value is blank. The Link Local Address you enter is not retained across a power cycle. •...
  • Page 237 GS748T Smart Switch Software Administration Manual In the Hostname/IP Address field, specify the IP address or the hostname of the station you want the switch to ping. The initial value is blank. This information is not retained across a power cycle. Optionally, configure the following settings: •...
  • Page 238 GS748T Smart Switch Software Administration Manual 238 | Chapter 7: Maintenance...
  • Page 239: Chapter 8 Help

    • on page 240 Support Use the Support page to connect to the Online Support site at netgear.com. To access the Support page, click Help > Support. To connect to the NETGEAR support site for the GS748T, click Apply. Chapter 8: Help...
  • Page 240: User Guide

    User Guide Use the User Guide page to access the GS748T Smart Switch Software Administration Manual (the guide you are now reading) that is available on the NETGEAR Website. To access the User Guide page, click Help > User Guide.
  • Page 241 GS748T Smart Switch Software Administration Manual Chapter 8: Help | 241...
  • Page 242: Appendix A Hardware Specifications And Default Values

    Hardware Specifications and Default Values GS748T Smart Switch Specifications The GS748T Smart Switch conforms to the TCP/IP, UDP, HTTP, ICMP, TFTP, DHCP, IEEE 802.1D, IEEE 802.1p, and IEEE 802.1Q standards. Feature Value Interfaces 48 10/100/1000M Ethernet ports Two Dedicated SFP ports Two Gigabit/SFP Combo ports The 48 RJ-45 supports autosensing for 10/100/1000M speeds.
  • Page 243: Gs748T Switch Features And Defaults

    GS748T Smart Switch Software Administration Manual GS748T Switch Features and Defaults Feature Sets Supported Default Auto negotiation/static All ports Auto negotiation speed/duplex Auto MDI/MDIX Enabled 802.3x flow control/back pressure 1 (per system) Disabled Port mirroring Disabled Port trunking (aggregation) Pre-configured 802.1D spanning tree Disabled 802.1w RSTP...
  • Page 244 GS748T Smart Switch Software Administration Manual Feature Sets Supported Default 802.1X All ports Disabled MAC ACL 100 (Shared with IP ACL) All MAC addresses allowed IP access list 100 (shared with MACACL) All IP addresses allowed Password control access Idle timeout = 5 mins. Password = “password”...
  • Page 245 GS748T Smart Switch Software Administration Manual Feature Sets Supported Default Smart Control Center Enabled Statistics Feature Sets Supported Default IGMP snooping v1/v2/v3 All ports Disabled Configurations upload/download EAPoL flooding All ports Disabled BPDU flooding All ports Disabled Static multicast groups Disabled Filter multicast control Disabled...
  • Page 246 GS748T Smart Switch Software Administration Manual 246 | Appendix A: Hardware Specifications and Default Values...
  • Page 247: Appendix B Configuration Examples

    Configuration Examples This chapter contains information about how to configure the following features: • Virtual Local Area Networks (VLANs) on page 248 • Access Control Lists (ACLs) on page 250 • Differentiated Services (DiffServ) on page 253 • 802.1X on page 258 •...
  • Page 248: Virtual Local Area Networks (Vlans)

    GS748T Smart Switch Software Administration Manual Virtual Local Area Networks (VLANs) A local area network (LAN) can generally be defined as a broadcast domain. Hubs, bridges, or switches in the same physical segment or segments connect all end node devices. End nodes can communicate with each other without the need for a router.
  • Page 249: Vlan Example Configuration

    GS748T Smart Switch Software Administration Manual • Packets leaving the switch are either tagged or untagged, depending on the setting for that port’s VLAN membership properties. A U for a given port means that packets leaving the switch from that port are untagged. Inversely, a T for a given port means that packets leaving the switch from that port are tagged with the VLAN ID that is associated with the port.
  • Page 250: Access Control Lists (Acls)

    GS748T Smart Switch Software Administration Manual Access Control Lists (ACLs) ACLs ensure that only authorized users have access to specific resources while blocking off any unwarranted attempts to reach network resources. ACLs are used to provide traffic flow control, restrict contents of routing updates, decide which types of traffic are forwarded or blocked, and provide security for the network.
  • Page 251 GS748T Smart Switch Software Administration Manual • Destination MAC Mask: 00:00:00:00:FF:FF • Source MAC: 02:02:1A:BC:DE:EF • Source MAC Mask: 00:00:00:00:FF:FF • VLAN ID: 2 For detailed information about MAC ACL rules, see MAC Rules on page 183. From the MAC Binding Configuration screen, assign the Sales_ACL to Ethernet ports 6, 7, and 8, and then click Apply (See MAC Binding Configuration on page 185).
  • Page 252: Standard Ip Acl Example Configuration

    GS748T Smart Switch Software Administration Manual Standard IP ACL Example Configuration The following example shows how to create an IP-based ACL that prevents any IP traffic from the Finance department from being allowed on the ports that are associated with other departments.
  • Page 253: Differentiated Services (Diffserv)

    GS748T Smart Switch Software Administration Manual Differentiated Services (DiffServ) Standard IP-based networks are designed to provide best effort data delivery service. Best effort service implies that the network deliver the data in a timely fashion, although there is no guarantee that it will. During times of congestion, packets may be delayed, sent sporadically, or dropped.
  • Page 254: Diffserv Traffic Classes

    GS748T Smart Switch Software Administration Manual • Layer 4 source/destination ports • Source/destination IP address From a DiffServ point of view, there are two types of classes: • DiffServ traffic classes • DiffServ service levels/forwarding classes DiffServ Traffic Classes With DiffServ, you define which traffic classes to track on an ingress interface. You can define simple BA classifiers (DSCP) and a wide variety of multifield (MF) classifiers: •...
  • Page 255: Diffserv Example Configuration

    GS748T Smart Switch Software Administration Manual • Marking IP DSCP or IP Precedence: marking/re-marking the DiffServ code point in a packet with the DSCP value representing the service level associated with a particular DiffServ traffic class. Alternatively, the IP Precedence value of the packet can be marked/re-marked.
  • Page 256 GS748T Smart Switch Software Administration Manual • Class Type: All Class Configuration For more information about this screen, see on page 135. Click the Class1 hyperlink to view the DiffServ Class Configuration screen for this class. Configure the following settings for Class1: •...
  • Page 257 GS748T Smart Switch Software Administration Manual high-priority hardware queue. By default, data traffic uses hardware queue 0, which is designated as a best-effort queue. Also the confirmed action on this flow is to send the packets with a committed rate of 1,000,000 Kbps and burst size of 128 KB.
  • Page 258: 258

    GS748T Smart Switch Software Administration Manual 802.1X Local Area Networks (LANs) are often deployed in environments that permit unauthorized devices to be physically attached to the LAN infrastructure, or permit unauthorized users to attempt to access the LAN through equipment already attached. In such environments, it may be desirable to restrict access to the services offered by the LAN to those users and devices that are permitted to use those services.
  • Page 259: 802.1X Example Configuration

    GS748T Smart Switch Software Administration Manual A Port Access Entity (PAE) is able to adopt one of two distinct roles within an access control interaction: Authenticator: A Port that enforces authentication before allowing access to services available via that Port. Supplicant: A Port that attempts to access services offered by the Authenticator.
  • Page 260 GS748T Smart Switch Software Administration Manual In the Guest VLAN field for ports g1–g8, enter 150 to assign these ports to the guest VLAN. You can configure additional settings to control access to the network through the ports. Port Security Interface Configuration on page 178 for information about the settings.
  • Page 261: Mstp

    GS748T Smart Switch Software Administration Manual MSTP Spanning Tree Protocol (STP) runs on bridged networks to help eliminate loops. If a bridge loop occurs, the network can become flooded with traffic. IEEE 802.1s Multiple Spanning Tree Protocol (MSTP) supports multiple instances of Spanning Tree to efficiently channel VLAN traffic over different interfaces.
  • Page 262: Mstp Example Configuration

    GS748T Smart Switch Software Administration Manual An MST Region comprises of one or more MSTP Bridges with the same MST Configuration Identifier, using the same MSTIs, and which have no Bridges attached that cannot receive and transmit MSTP BPDUs. The MST Configuration Identifier has the following components: Configuration Identifier Format Selector Configuration Name Configuration Revision Level...
  • Page 263 GS748T Smart Switch Software Administration Manual Ports g1-g5 Ports g1-g5 Connected to Hosts Connected to Hosts Ports g6-g8 Connected to Switch 2 and 3 Switch 1 Root Bridge Switch 2 Ports g6-g8 Connected to Switch 1 and 2 Switch 3 Ports g1-g5 Connected to Hosts Perform the following procedures on each switch to configure MSTP:...
  • Page 264 GS748T Smart Switch Software Administration Manual Since the edge ports are not at risk for network loops, ports with Fast Link enabled transition directly to the Forwarding state. Click Apply. You can use the CST Port Status screen to view spanning tree information about each port.
  • Page 265 GS748T Smart Switch Software Administration Manual Appendix B: Configuration Examples | 265...
  • Page 266: Appendix C Notification Of Compliance

    Notification of Compliance N ETGE A R Wired P ro d uct s Certificate of the Manufacturer/Importer It is hereby certified that the ProSafe™ GS748T Smart Switch has been suppressed in accordance with the conditions set out in the BMPT-AmtsblVfg 243/1991 and Vfg 46/1992. The operation of some equipment (for example, test transmitters) in accordance with the regulations may, however, be subject to certain restrictions.
  • Page 267 English Hereby, NETGEAR Inc. , declares that this Radiolan is in compliance with the essential requirements and other relevant provisions of Directive 1999/5/EC. Por medio de la presente NETGEAR Inc. declara que el Radiolan cumple con los Español [Spanish] requisitos esenciales y cualesquiera otras disposiciones aplicables o exigibles de la Directiva 1999/5/CE.
  • Page 268 FCC Declaration Of Conformity We, NETGEAR, Inc., 350 East Plumeria Drive, Santa Clara, CA 95134, declare under our sole responsibility that the ProSafe™ GS748T Smart Switch complies with Part 15 of FCC Rules. Operation is subject to the following two conditions: •...
  • Page 269: Canadian Department Of Communications Radio Interference Regulations

    FCC Standards FOR HOME OR OFFICE USE PY306100037 Modifications made to the product, unless expressly approved by NETGEAR, Inc., could void the user's right to operate the equipment. Canadian Department of Communications Radio Interference Regulations This digital apparatus, (ProSafe™ GS748T Smart Switch), does not exceed the Class B limits for radio-noise emissions from digital apparatus as set out in the Radio Interference Regulations of the Canadian Department of Communications.
  • Page 270: Index

    Index Numerics IGMP Snooping LACP 802.1X LACP Port example configuration LLDP MAC Filter Management Access access control MST Port ACL example configuration Network Settings on the Administrative System ACLs password management interface Policy Wizard Port Security ACL Wizard Port VLAN ID RADIUS authentication Global...
  • Page 271 GS748T Smart Switch Software Administration Manual from a remote system Mapping software IPv6 Dual Image Status network interface IPv6 network configuration IPv6 Network Configuration IPv6 Network Interface IPv6 Neighbor Table EAPOL IPv6 Network Neighbor file management LACP port configuration firmware LAG VLAN firmware download LAGPDUs...
  • Page 272 GS748T Smart Switch Software Administration Manual Ping port TACACS+ authentication folder summary settings technical support Time configure through SNTP 802.1p to Queue Mapping time clock source levels local RADIUS zone server TraceRoute statistics trademarks reboot traffic control reset trap button flags configuration to defaults manager...
  • Page 273 GS748T Smart Switch Software Administration Manual Index | 273...

This manual is also suitable for:

Gs748t

Table of Contents