D-Link xStack DGS-3420 Series Reference Manual

D-Link xStack DGS-3420 Series Reference Manual

Xstack dgs-3420 series layer 2 managed stackable gigabit switch web ui reference guide
Hide thumbs Also See for xStack DGS-3420 Series:
Table of Contents

Advertisement

Advertisement

Table of Contents
loading

Summary of Contents for D-Link xStack DGS-3420 Series

  • Page 2 Reproduction of this document in any manner whatsoever without the written permission of D-Link Corporation is strictly forbidden. Trademarks used in this text: D-Link and the D-LINK logo are trademarks of D-Link Corporation; Microsoft and Windows are registered trademarks of Microsoft Corporation.
  • Page 3: Table Of Contents

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Table of Contents Intended Readers ................................1 Typographical Conventions ............................. 1 Notes, Notices and Cautions............................1 Safety Instructions ................................1 Safety Cautions ................................2 General Precautions for Rack-Mountable Products......................3 Protecting Against Electrostatic Discharge ........................
  • Page 4 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Gratuitous ARP Global Settings ..........................31 Gratuitous ARP Settings ............................31 IPv6 Neighbor Settings ..............................32 IP Interface ..................................33 System IP Address Settings ............................33 Interface Settings ............................... 35 Loopback Interface Settings ............................
  • Page 5 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Layer 2 Protocol Tunneling Settings ..........................87 Spanning Tree ................................88 STP Bridge Global Settings ............................90 STP Port Settings ..............................91 MST Configuration Identification ..........................93 STP Instance Settings ...............................
  • Page 6 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide IP Tunnel Settings ..............................163 IP Tunnel GRE Settings ............................164 RIP ....................................167 RIP Settings ................................168 RIPng ..................................170 Chapter 6 QoS ........................172 802.1p Settings ................................173 802.1p Default Priority Settings ..........................
  • Page 7 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide RADIUS ..................................247 Authentication RADIUS Server Settings ......................... 247 RADIUS Accounting Settings ..........................248 RADIUS Authentication ............................248 RADIUS Account Client ............................250 IP-MAC-Port Binding (IMPB) ............................251 IMPB Global Settings ..............................
  • Page 8 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Authentication Server Settings ..........................290 Login Method Lists Settings ............................ 291 Enable Method Lists Settings ..........................292 Local Enable Password Settings ..........................294 SSL Settings................................294 SSH ..................................... 297 SSH Settings ................................
  • Page 9 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide DULD Settings................................351 Cable Diagnostics ............................... 351 Chapter 11 Monitoring ......................353 Utilization ..................................353 CPU Utilization ................................ 353 DRAM & Flash Utilization ............................354 Port Utilization ................................. 354 Statistics ..................................
  • Page 10 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Appendix Section ........................390 Appendix A Mitigating ARP Spoofing Attacks Using Packet Content ACL ............390 How Address Resolution Protocol works ........................ 390 How ARP Spoofing Attacks a Network ........................393 Prevent ARP Spoofing using Packet Content ACL ....................
  • Page 11: Intended Readers

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Intended Readers Typographical Conventions Notes, Notices and Cautions Safety Instructions General Precautions for Rack-Mountable Products Protecting Against Electrostatic Discharge The DGS-3420 Series Web UI Reference Guide contains information for setup and management of the Switch. This manual is intended for network managers familiar with network management concepts and terminology.
  • Page 12: Safety Cautions

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Safety Cautions To reduce the risk of bodily injury, electrical shock, fire, and damage to the equipment observe the following precautions: • Observe and follow service markings. Do not service any product except as explained in the system documentation.
  • Page 13: General Precautions For Rack-Mountable Products

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Install the power supply before connecting the power cable to the power supply. Unplug the power cable before removing the power supply. If the system has multiple sources of power, disconnect power from the system by unplugging all power cables from the power supplies.
  • Page 14: Protecting Against Electrostatic Discharge

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Protecting Against Electrostatic Discharge Static electricity can harm delicate components inside the system. To prevent static damage, discharge static electricity from your body before touching any of the electronic components, such as the microprocessor. This can be done by periodically touching an unpainted metal surface on the chassis.
  • Page 15: Chapter 1 Web-Based Switch Configuration

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Chapter 1 Web-based Switch Configuration Introduction Login to the Web Manager Web-based User Interface Web Pages Introduction All software functions of the DGS-3420 Series switches can be managed, configured and monitored via the embedded web-based (HTML) interface.
  • Page 16: Web-Based User Interface

    Select the menu or window to display. Open folders and click the hyperlinked menu buttons Area 1 and subfolders contained within them to display menus. Click the D-Link logo to go to the D- Link website. Presents a graphical near real-time image of the front panel of the Switch. This area displays the Switch's ports, console and management port, showing port activity.
  • Page 17: Web Pages

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide NOTE: Any changes made to the Switch configuration during the current session must be saved in the Save Configuration / Log window or use the command line interface (CLI) command save. Web Pages When connecting to the management mode of the Switch with a web browser, a login screen is displayed.
  • Page 18: Chapter 2 System Configuration

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Chapter 2 System Configuration Device Information System Information Settings Port Configuration Serial Port Settings Warning Temperature Settings System Log configuration Time Range Settings Port Group Settings Time Settings User Accounts Settings Command Logging Settings Stacking...
  • Page 19: System Information Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 2-1 Device Information window Click the Settings link to navigate to the appropriate feature page for configuration. System Information Settings The user can enter a System Name, System Location, and System Contact to aid in defining the Switch. To view the following window, click System Configuration >...
  • Page 20: Port Configuration

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide System Contact Enter a contact name for the Switch, if so desired. Click the Apply button to implement changes made. Port Configuration Port Settings This page used to configure the details of the switch ports. To view the following window, click System Configuration >...
  • Page 21: Port Description Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Speed/Duplex Use the drop-down menu to select the speed in Auto, 10M Half, 10M Full, 100M Half, 100M Full, 1000M Full_Master and 1000M Full_Slave. Auto denotes auto-negotiation among 10, 100 and 1000 Mbps devices, in full- or half-duplex (except 1000 Mbps which is always full duplex).
  • Page 22: Port Error Disabled

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 2-4 Port Description Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Select the appropriate port range used for the configuration here.
  • Page 23: Port Auto Negotiation Information

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Reason Describe the reason why the port has been error-disabled, such as it has become a shutdown port for storm control. Port Auto Negotiation Information The following window displays the detailed auto negotiation information. To view the following window, click System Configuration >...
  • Page 24: Poe

    Devices (PDs) over Category 5 or Category 3 UTP Ethernet cables. The Switch follows the standard PSE (Power Sourcing Equipment) pinout Alternative A, whereby power is sent out over pins 1, 2, 3 and 6. The Switches work with all D-Link 802.3af capable devices. The Switch includes the following PoE features: •...
  • Page 25: Poe System Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide 12.95W 16.2W 29.5W User Define 31.2W To configure the PoE features on the Switch, click System Configuration > PoE. The PoE System Settings window is used to assign a power limit and power disconnect method for the whole PoE system. To configure the Power Limit for the PoE system, enter a value between 1W and 370W for the Switch in the Power Limit field.
  • Page 26: Poe Port Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Deny Next Port, the system cannot utilize out of its maximum power capacity. The maximum unused watt is 19W. Deny Low Priority Port – After the power limit has been exceeded, the next port attempting to power up causes the port with the lowest priority to shut down so as to allow the high-priority and critical priority ports to power up.
  • Page 27: Serial Port Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Class 1 – 4200mW Class 2 – 7400mW Class 3 – 16200mW User Define – 35000mW Click Apply to implement changes made. The port status of all PoE configured ports is displayed in the table in the bottom half of the screen shown above.
  • Page 28: System Log Configuration

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 2-11 Warning Temperature Settings window The fields that can be configured are described below: Parameter Description Traps State Use the drop-down menu to enable or disable the traps state option of the warning temperature setting.
  • Page 29: System Log Server Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Switch will save the log files, in the box adjacent to this configuration field. The user may set a time between 1 and 65535 minutes. Log Trigger – Users who choose this method will have log files saved to the Switch every time a log event occurs on the Switch.
  • Page 30: System Log & Trap Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 2-14 System Log window The Switch can record event information in its own log. Click Go to go to the next page of the System Log window. The fields that can be configured or displayed are described below: Parameter Description...
  • Page 31: System Severity Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 2-15 System Log & Trap Settings window The fields that can be configured are described below: Parameter Description Interface Name Enter the IP interface name used. IPv4 Address Enter the IPv4 address used.
  • Page 32: Time Range Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide options are Emergency (0), Alert (1), Critical (2), Error (3), Warning (4), Notice (5), Information (6) and Debug (7). Click the Apply button to accept the changes made. Time Range Settings Time range is a time period that the respective function will take an effect on, such as ACL.
  • Page 33: Time Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 2-18 Port Group Settings window The fields that can be configured are described below: Parameter Description Group Name Enter the name of a port group. Group ID (1-64) Enter the ID of a port group Port List Enter a port or list of ports.
  • Page 34 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 2-20 User Accounts Settings window To add a new user, type in a User Name and New Password and retype the same password in the Confirm New Password field.
  • Page 35: Command Logging Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide NOTE: User Name should be less than 16 characters. Password should be less than 16 or 35 characters. Command Logging Settings This window is used to enable or disable the command logging settings. To view this window, click System Configuration >...
  • Page 36 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Within each of these topologies, each switch plays a role in the Switch stack. These roles can be set by the user per individual Switch, or if desired, can be automatically determined by the Switch stack. Three possible roles exist when stacking with the Switch.
  • Page 37: Stacking Device Table

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide If the Backup Master has been hot removed, a new Backup Master will be chosen through the election process previously described. Switches in the stack will clear the configurations of the unit removed, and dynamically learned databases, such as ARP, will be cleared as well.
  • Page 38 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Stacking Mode The stacking mode is disabled by default. Force Master Use the radio buttons to enable or disable the function. It is used to ensure the master role Role is unchanged when adding a new device to the current stacking topology.
  • Page 39: Chapter 3 Management

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Chapter 3 Management Gratuitous ARP IPv6 Neighbor Settings IP Interface Management Settings Out of Band Management Settings Session Table Single IP Management SNMP Settings Telnet Settings Web Settings Power Saving Settings Static ARP Settings The Address Resolution Protocol is a TCP/IP protocol that converts IP addresses into physical addresses.
  • Page 40: Proxy Arp Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Delete All button to remove all the entries listed. Click the Edit button to re-configure the specific entry. Click the Delete button to remove the specific entry. Proxy ARP Settings The Proxy ARP (Address Resolution Protocol) feature of the Switch will allow the Switch to reply to ARP requests destined for another device by faking its identity (IP and MAC Address) as the original ARP responder.
  • Page 41: Gratuitous Arp

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide MAC Address Enter or view the MAC Address used. Click the Find button to locate a specific entry based on the information entered. Click the Show Static button to display only the static entries in the display table. Click the Clear All button to remove all the entries listed in the table.
  • Page 42: Ipv6 Neighbor Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide To view the following window, click Management > Gratuitous ARP > Gratuitous ARP Settings, as show below: Figure 3-5 Gratuitous ARP Settings window The fields that can be configured are described below: Parameter Description Trap...
  • Page 43: Ip Interface

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 3-6 IPv6 Neighbor Settings window The fields that can be configured are described below: Parameter Description Interface Name Enter the interface name of the IPv6 neighbor. Neighbor IPv6 Address Enter the neighbor IPv6 address.
  • Page 44 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide NOTE: The Switch’s factory default IP address is 10.90.90.90 with a subnet mask of 255.0.0.0 and a default gateway of 0.0.0.0. To view the following window, click Management > IP Interface > System IP Address Settings, as show below: Figure 3-7 System IP Address Settings window The fields that can be configured are described below: Parameter...
  • Page 45: Interface Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Subnet Mask A Bitmask that determines the extent of the subnet that the Switch is on. Should be of the form xxx.xxx.xxx.xxx, where each xxx is a number (represented in decimal) between 0 and 255.
  • Page 46 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 3-9 IPv4 Interface Settings window The fields that can be configured are described below: Parameter Description Interface Name Enter the name of the IP interface being created. IPv4 Address Enter the IPv4 address used.
  • Page 47 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide IPv4 Address Enter the IPv4 address used. Subnet Mask Enter the IPv4 subnet mask used. VLAN Name Enter the VLAN Name used. IPv4 State Use the drop-down menu to enable or disable IPv4 State. Interface Admin State Use the drop-down menu to enable or disable the Interface Admin State.
  • Page 48: Loopback Interface Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide 3600000) after receiving a reachability confirmation, in milliseconds. Retransmit Time (0- Enter the amount of time between retransmissions of router advertisement message 4294967295) in millisecond, and the router advertisement packet will take it to host. Hop Limit (0-255) Enter the default value of the hop limit field in the IPv6 header for packets sent by hosts that receive this RA message.
  • Page 49: Management Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 3-14 Loopback Interface Settings window The fields that can be configured are described below: Parameter Description Interface Name Enter an interface name. Click the Find button to locate a specific entry based on the information entered. Click the View All button to display all the existing entries.
  • Page 50: Out Of Band Management Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide automatically on boot-up. To employ this method, the DHCP server must be set up to deliver the TFTP server IP address and configuration file name information in the DHCP reply packet. The TFTP server must be up and running and hold the necessary configuration file stored in its base directory when the request is received from the Switch.
  • Page 51: Session Table

    Click the Refresh button to refresh the display table so that new entries will appear. Single IP Management Simply put, D-Link Single IP Management is a concept that will stack switches together over Ethernet instead of using stacking ports or modules. There are some advantages in implementing the “Single IP Management” feature: 1.
  • Page 52 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide SIM group, and a Candidate Switch (CaS), which is a Switch that has a physical link to the SIM group but has not been recognized by the CS as a member of the SIM group. •...
  • Page 53: Single Ip Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Single IP Settings The Switch is set as a Candidate (CaS) as the factory default configuration and Single IP Management is disabled. To view the following window, click Management > Single IP Management > Single IP Settings, as show below: Figure 3-19 Single IP Settings window The fields that can be configured are described below: Parameter...
  • Page 54 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 3-20 Single IP Management window - Tree View The Topology window holds the following information on the Data tab: Parameter Description Device Name This field will display the Device Name of the switches in the SIM group configured by the user.
  • Page 55 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 3-21 Topology view This window will display how the devices within the Single IP Management Group connect to other groups and devices. Possible icons on this window are as follows: Icon Description Icon...
  • Page 56 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 3-22 Device Information Utilizing the Tool Tip Setting the mouse cursor over a line between two devices will display the connection speed between the two devices, as shown below. Figure 3-23 Port Speed Utilizing the Tool Tip...
  • Page 57 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Right-Click Right-clicking on a device will allow the user to perform various functions, depending on the role of the Switch in the SIM group and the icon associated with it. Group Icon Figure 3-24 Right-Clicking a Group Icon The following options may appear for the user to configure:...
  • Page 58 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Commander Switch Icon Figure 3-26 Right-clicking a Commander Icon The following options may appear for the user to configure: • Collapse – To collapse the group that will be represented by a single icon. •...
  • Page 59 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 3-29 Input password window • Property – To pop up a window to display the device information. Menu Bar The Single IP Management window contains a menu bar for device configurations, as seen below. Figure 3-30 Menu Bar of the Topology View File •...
  • Page 60: Firmware Upgrade

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 3-32 About window Firmware Upgrade This screen is used to upgrade firmware from the Commander Switch to the Member Switch. Member Switches will be listed in the table and will be specified by Port (port on the CS where the MS resides), MAC Address, Model Name and Version.
  • Page 61: Upload Log File

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Upload Log File The following window is used to upload log files from SIM member switches to a specified PC. To upload a log file, enter the Server IP address of the SIM member switch and then enter a Path\Filename on your PC where you wish to save this file.
  • Page 62: Snmp Global Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Traps are messages that alert network personnel of events that occur on the Switch. The events can be as serious as a reboot (someone accidentally turned OFF the Switch), or less serious like a port status change. The Switch generates traps and sends them to the trap recipient (or network manager).
  • Page 63: Snmp Linkchange Traps Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 3-37 SNMP Traps Settings window The fields that can be configured are described below: Parameter Description SNMP Traps Enable this option to use the SNMP Traps feature. SNMP Authentication Enable this option to use the SNMP Authentication Traps feature.
  • Page 64: Snmp View Table Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide State Use the drop-down menu to enable or disable the SNMP link change Trap. Click the Apply button to accept the changes made. SNMP View Table Settings Users can assign views to community strings that define which MIB objects can be accessed by a remote SNMP manager.
  • Page 65: Snmp Group Table Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 3-40 SNMP community Table Settings window The fields that can be configured are described below: Parameter Description Community Name Type an alphanumeric string of up to 32 characters that is used to identify members of an SNMP community.
  • Page 66: Snmp Engine Id Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 3-41 SNMP Group Table Settings window The fields that can be configured are described below: Parameter Description Group Name Type an alphanumeric string of up to 32 characters. This is used to identify the new SNMP group of SNMP users.
  • Page 67: Snmp User Table Settings

    SNMP management private enterprise number as assigned by IANA (D-Link is 171). The fifth octet is 03 to indicate the rest is the MAC address of this device. The sixth to eleventh octets is the MAC address.
  • Page 68: Snmp Host Table Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide only operable when V3 is selected in the SNMP Version field and the Encryption field has been checked. This field will require the user to enter a password. SHA –...
  • Page 69: Rmon Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide To view the following window, click Management > SNMP Settings > SNMPv6 Host Table Settings, as show below: 3-45 SNMPv6 Host Table Settings The fields that can be configured are described below: Parameter Description Host IPv6 Address...
  • Page 70: Snmp Community Encryption Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Trap RMON Falling Alarm Enable this option to use the RMON Falling Alarm Trap Feature. Trap Click the Apply button to accept the changes made. SNMP Community Encryption Settings This window is used to enable or disable the encryption state on the SNMP community string.
  • Page 71: Telnet Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Telnet Settings Users can configure Telnet Settings on the Switch. To view the following window, click Management > Telnet Settings, as show below: Figure 3-49 Telnet Settings window The fields that can be configured are described below: Parameter Description...
  • Page 72 Enable or disable the length detection power saving mode on the physical ports. The State switch port will reduce the power feed for shorter cables. Click the Apply button to accept the changes made. To learn more about the D-Link Green Technologies, go to http://green.dlink.com/ for more details.
  • Page 73: Chapter 4 L2 Features

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Chapter 4 L2 Features VLAN QinQ Layer 2 Protocol Tunneling Settings Spanning Tree Link Aggregation L2 Multicast Control Multicast Filtering ERPS Settings LLDP NLB FDB Settings VLAN Understanding IEEE 802.1p Priority Priority tagging is a function defined by the IEEE 802.1p standard designed to provide a means of managing traffic on a network where many different types of data may be transmitted simultaneously.
  • Page 74 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide that packets are forwarded only between ports within the VLAN. Typically, a VLAN corresponds to a particular subnet, although not necessarily. VLANs can enhance performance by conserving bandwidth, and improve security by limiting traffic to specific domains.
  • Page 75 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The main characteristics of IEEE 802.1Q are as follows: • Assigns packets to VLANs by filtering. • Assumes the presence of a single global spanning tree. • Uses an explicit tagging scheme with one-level tagging.
  • Page 76 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-3 Adding an IEEE 802.1Q Tag Port VLAN ID Packets that are tagged (are carrying the 802.1Q VID information) can be transmitted from one 802.1Q compliant network device to another with the VLAN information intact.
  • Page 77 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide If a packet has previously been tagged, the port will not alter the packet, thus keeping the VLAN information intact. Other 802.1Q compliant devices on the network to make packet-forwarding decisions can then use the VLAN information in the tag.
  • Page 78: 802.1Q Vlan Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide On port-based VLANs, NICs do not need to be able to identify 802.1Q tags in packet headers. NICs send and receive normal Ethernet packets. If the packet’s destination lies on the same segment, communications take place using normal Ethernet protocols.
  • Page 79 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-5 802.1Q VLAN Settings – Add/Edit VLAN Tab window The fields that can be configured are described below: Parameter Description Allow the entry of a VLAN ID or displays the VLAN ID of an existing VLAN in the Add/Edit VLAN tab.
  • Page 80 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-6 802.1Q VLAN Settings – Find VLAN Tab window Enter the VLAN ID number in the field offered and then click the Find button. You will be redirected to the VLAN List tab.
  • Page 81: 802.1V Protocol Vlan

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Port List Allows an individual port list to be added or deleted as a member of the VLAN. Tagged Specify the port as 802.1Q tagged. Use the drop-down menu to designate the port as tagged.
  • Page 82: V Protocol Vlan Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide octet string will have one of the following values: For Ethernet II, this is a 16-bit (2-octet) hex value. For example, IPv4 is 800, IPv6 is 86dd, ARP is 806, etc. For IEEE802.3 SNAP, this is a 16-bit (2-octet) hex value.
  • Page 83: Asymmetric Vlan Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide have its incoming 802.1p user priority re-written to its original value before being forwarded by the Switch. For more information on priority queues, CoS queues and mapping for 802.1p, see the QoS section of this manual.
  • Page 84: Gvrp Port Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-11 GVRP Global Settings window The fields that can be configured are described below: Parameter Description GVRP State Click the radio buttons to enable or disable the GVRP State. Join Time Enter the Join Time value in milliseconds.
  • Page 85: Mac-Based Vlan Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-12 GVRP Port Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Select the starting and ending ports to use.
  • Page 86: Private Vlan Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-13 MAC-based VLAN Settings The fields that can be configured are described below: Parameter Description MAC Address Enter the Unicast MAC address. VID (1-4094) Select this option and enter the VLAN ID. VLAN Name Select this option and enter the VLAN name of a previously configured VLAN.
  • Page 87 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide To view the following window, click L2 Features > VLAN > Private VLAN Settings, as show below: Figure 4-14 Private VLAN Settings window The fields that can be configured are described below: Parameter Description VLAN Name...
  • Page 88: Pvid Auto Assign Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Secondary VLAN Name Enter a secondary VLAN name. Secondary VLAN List Enter a list of secondary VLAN ID. Click the Add button to add a new entry based on the information entered. Click the View Private VLAN List link to view all the private VLAN.
  • Page 89: Voice Vlan

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Enter a VLAN ID. IPv4 Network Address The user can enter the IPv4 address used in here. Remember to include the subnet mask using the / notation. IPv6 Network Address The user can enter the IPv6 address used in here.
  • Page 90: Voice Vlan Global Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Voice VLAN Global Settings Voice VLAN is a VLAN used to carry voice traffic from IP phone. Because the sound quality of an IP phone call will be deteriorated if the data is unevenly sent, the quality of service (QoS) for voice traffic shall be configured to ensure the transmission priority of voice packet is higher than normal traffic.
  • Page 91: Voice Vlan Oui Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-20 Voice VLAN Port Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Here the user can select a range of port to display.
  • Page 92: Vlan Trunk Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The fields that can be configured are described below: Parameter Description OUI Address User defined OUI MAC address. Mask User defined OUI MAC address mask. Description The description for the user defined OUI. Click the Apply button to accept the changes made.
  • Page 93: Browse Vlan

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide with unknown VLAN group tags. However, with VLAN Trunk enabled on a port(s) in each intermediary switch, you only need to create VLAN groups in the end devices (A and B). C, D and E automatically allow frames with VLAN group tags 1 and 2 (VLAN groups that are unknown to those switches) to pass through their VLAN trunking port(s).
  • Page 94: Show Vlan Ports

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-26 Browse VLAN window Enter a page number and click the Go button to navigate to a specific page when multiple pages exist. NOTE: The abbreviations used on this page are Tagged Port (T), Untagged Port (U) and Forbidden Port (F).
  • Page 95 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Q-in-Q VLANs allow network providers to expand their VLAN configurations to place customer VLANs within a larger inclusive VLAN, which adds a new layer to the VLAN configuration. This basically lets large ISP's create L2 Virtual Private Networks and also create transparent LANs for their customers, which will connect two or more customer LAN points without over-complicating configurations on the client's side.
  • Page 96: Qinq Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide 2. Ports can be configured as UNI ports or NNI ports. Both UNI and NNI ports can be configured as Gigabit ports. 3. Provider Edge switches must allow frames of at least 1522 bytes or more, due to the addition of the SPVID tag.
  • Page 97: Vlan Translation Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide to the PVID of the received port. Outer TPID Enter an Outer TPID in SP-VLAN tag here. Use Inner Priority Use the drop-down menu to specify whether to use the priority in the C-VLAN tag as the priority in the S-VLAN tag.
  • Page 98: Spanning Tree

    802.1Q-2005 MSTP. 802.1D-1998 STP will be familiar to most networking professionals. However, since 802.1D-2004 RSTP and 802.1Q-2005 MSTP have been recently introduced to D-Link managed Ethernet switches, a brief introduction to the technology is provided below followed by a description of how to set up 802.1D-1998 STP, 802.1D-2004 RSTP, and 802.1Q-2005 MSTP.
  • Page 99 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide This protocol will also tag BPDU packets so receiving devices can distinguish spanning tree instances, spanning tree regions and the VLANs associated with them. An MSTI ID will classify these instances. MSTP will connect multiple spanning trees with a Common and Internal Spanning Tree (CIST).
  • Page 100: Stp Bridge Global Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Discarding Discarding Listening Learning Learning Learning Forwarding Forwarding Forwarding RSTP is capable of a more rapid transition to a forwarding state - it no longer relies on timer configurations - RSTP compliant bridges are sensitive to feedback from other RSTP compliant bridge links.
  • Page 101: Stp Port Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The fields that can be configured are described below: Parameter Description STP Status Use the radio button to globally enable or disable STP. STP Version Use the drop-down menu to choose the desired version of STP: STP - Select this parameter to set the Spanning Tree Protocol (STP) globally on the switch.
  • Page 102 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-33 STP Port Settings window It is advisable to define an STP Group to correspond to a VLAN group of ports. The fields that can be configured are described below: Parameter Description Unit...
  • Page 103: Mst Configuration Identification

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Forward BPDU Use the drop-down menu to enable or disable the flooding of BPDU packets when STP is disabled. Edge Choosing the True parameter designates the port as an edge port. Edge ports cannot create loops, however an edge port can lose edge port status if a topology change creates a potential for a loop.
  • Page 104: Stp Instance Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Apply button to accept the changes made for each individual section. Click the Edit button to re-configure the specific entry. Click the Delete button to remove the specific entry. STP Instance Settings This window displays MSTIs currently set on the Switch and allows users to change the Priority of the MSTIs.
  • Page 105: Link Aggregation

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-36 MSTP Port Information window To view the MSTI settings for a particular port, use the drop-down menu to select the Port number. To modify the settings for a particular MSTI instance, enter a value in the Instance ID field, an Internal Path Cost, and use the drop-down menu to select a Priority.
  • Page 106 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide 4-37 Example of Port Trunk Group The Switch treats all ports in a trunk group as a single port. Data transmitted to a specific host (destination address) will always be transmitted over the same port in a trunk group.
  • Page 107: Port Trunking Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide NOTE: If any ports within the trunk group become disconnected, packets intended for the disconnected port will be load shared among the other linked ports of the link aggregation group.
  • Page 108: Lacp Port Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide LACP Port Settings In conjunction with the Trunking window, users can create port trunking groups on the Switch. Using the following window, the user may set which ports will be active and passive in processing and sending LACP control frames. To view the following window, click L2 Features >...
  • Page 109: Multicast Static Fdb Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-40 Unicast Static FDB Settings window The fields that can be configured are described below: Parameter Description VLAN Name Click the radio button and enter the VLAN name of the VLAN on which the associated unicast MAC address resides.
  • Page 110: Mac Notification Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Multicast MAC Address The static destination MAC address of the multicast packets. This must be a multicast MAC address. The format of the destination MAC address is 01-xx-xx-xx- xx-xx, but 01-00-5E-xx-xx-xx should be excluded.
  • Page 111: Mac Address Aging Time Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide From Port / To Port Select the starting and ending ports for MAC notification. State Enable MAC Notification for the ports selected using the drop-down menu. Click the Apply button to accept the changes made for each individual section. MAC Address Aging Time Settings Users can configure the MAC Address aging time on the Switch.
  • Page 112: Arp & Fdb Table

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-44 MAC Address Table window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. Port The port to which the MAC address below corresponds. VLAN Name Enter a VLAN Name for the forwarding table to be browsed by.
  • Page 113: L2 Multicast Control

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-45 ARP & FDB Table window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. Port Select the port number to use for this configuration.
  • Page 114 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-46 IGMP Proxy Settings window The fields that can be configured are described below: Parameter Description IGMP Proxy State Use the radio buttons to enable or disable the IGMP Proxy Global State. VLAN Name Click the radio button and enter the VLAN name for the interface.
  • Page 115: Igmp Snooping

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-47 IGMP Proxy Downstream Settings window The fields that can be configured are described below: Parameter Description VLAN Name Enter the VLAN Name which belongs to the IGMP proxy downstream interface. VID List Enter a list of VLANs which belong to the IGMP proxy downstream interface.
  • Page 116: Igmp Snooping Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide IGMP Snooping Settings In order to use IGMP Snooping it must first be enabled for the entire Switch under IGMP Global Settings at the top of the window. You may then fine-tune the settings for each VLAN by clicking the corresponding Edit button. When enabled for IGMP snooping, the Switch can open or close a port to a specific multicast group member based on IGMP messages sent from the device to the IGMP host or vice versa.
  • Page 117 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The fields that can be configured are described below: Parameter Description Query Interval (1-65535) Specify the amount of time in seconds between general query transmissions. The default setting is 125 seconds.. Max Response Time (1- Specify the maximum time in seconds to wait for reports from members.
  • Page 118: Igmp Snooping Rate Limit Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-52 IGMP Snooping Router Port Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. Static Router Port This section is used to designate a range of ports as being connected to multicast- enabled routers.
  • Page 119: Igmp Snooping Static Group Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-53 IGMP Snooping Rate Limit Settings window The fields that can be configured are described below: Parameter Description Port List Enter the port list used for this configuration. VID List Enter the VID list used for this configuration.
  • Page 120: Igmp Router Port

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Find button to locate a specific entry based on the information entered. Click the Create button to add a new entry based on the information entered. Click the Delete button to remove the specific entry based on the information entered.
  • Page 121: Igmp Snooping Group

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Enter a VID (VLAN ID) in the field at the top of the window. Click the Find button to locate a specific entry based on the information entered. Enter a page number and click the Go button to navigate to a specific page when multiple pages exist.
  • Page 122: Igmp Snooping Counter

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-58 IGMP Snooping Forwarding Table window The fields that can be configured are described below: Parameter Description VLAN Name The VLAN Name of the multicast group. VID List The VLAN ID list of the multicast group.
  • Page 123: Mld Proxy

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-60 Browse IGMP Snooping Counter window Click the Clear Counter button to clear all the information displayed in the fields. Click the Refresh button to refresh the display table so that new information will appear. Click the <<Back button to return to the previous page.
  • Page 124 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide MLD Proxy Settings This window is used to configure the MLD proxy state and MLD proxy upstream interface. To view the following window, click L2 Features > L2 Multicast Control > MLD Proxy > MLD Proxy Settings, as show below: Figure 4-62 MLD Proxy Settings window The fields that can be configured are described below:...
  • Page 125: Mld Snooping

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-63 MLD Proxy Downstream Settings window The fields that can be configured are described below: Parameter Description VLAN Name Enter the VLAN Name which belongs to the MLD proxy downstream interface. VID List Enter a list of VLANs which belong to the MLD proxy downstream interface.
  • Page 126: Mld Snooping Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide MLD Control Messages Three types of messages are transferred between devices using MLD snooping. These three messages are all defined by four ICMPv6 packet headers, labeled 130, 131, 132, and 143. 1.
  • Page 127 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Enter a page number and click the Go button to navigate to a specific page when multiple pages exist. After clicking the Edit button, the following page will appear: Figure 4-67 MLD Snooping Parameters Settings window The fields that can be configured are described below: Parameter...
  • Page 128 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Data Driven Learning Specifies to enable or disable the data driven learning of a MLD snooping group. State When the data-driven learning is enabled for the VLAN, when the switch receives the IP multicast traffic, on this VLAN, an MLD snooping group will be created.
  • Page 129: Mld Snooping Rate Limit Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Clear All button to unselect all the ports for configuration. Click the Apply button to accept the changes made. Click the <<Back button to discard the changes made and return to the previous page. MLD Snooping Rate Limit Settings Users can configure the rate limit of the MLD control packet that the switch can process on a specific port or VLAN in this page.
  • Page 130: Mld Router Port

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-70 MLD Snooping Static Group Settings window The fields that can be configured are described below: Parameter Description VLAN Name The name of the VLAN on which the static group resides. VID List The ID of the VLAN on which the static group resides.
  • Page 131: Mld Snooping Group

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-72 MLD Router Port window Enter a VID (VLAN ID) in the field at the top of the window. Click the Find button to locate a specific entry based on the information entered. Enter a page number and click the Go button to navigate to a specific page when multiple pages exist.
  • Page 132: Mld Snooping Forwarding Table

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Find button to locate a specific entry based on the information entered. Click the View All button to display all the existing entries. Click the Clear Data Driven button to clear data driven information for the specified entry. Click the Clear All Data Driven button to clear data driven information for all entries.
  • Page 133: Multicast Vlan

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description VLAN Name Specify a VLAN name to be displayed. VID List Specify a list of VLANs to be displayed. Port List Specify a list of ports to be displayed. Click the Find button to locate a specific entry based on the information entered.
  • Page 134: Igmp Multicast Group Profile Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide 2. Member ports and source ports can be used in multiple Multicast VLANs. But member ports and source ports cannot be the same port in a specific Multicast VLAN. 3.
  • Page 135: Igmp Snooping Multicast Vlan Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The fields that can be configured are described below: Parameter Description Multicast Address List Enter the multicast address list value. Click the Add button to add a new entry based on the information entered. Click the <<Back button to discard the changes made and return to the previous page.
  • Page 136 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Add button to add a new entry based on the information entered. Click the Edit button to configure the IGMP Snooping Multicast VLAN Settings for the specific entry. Click the Delete button to remove the specific entry.
  • Page 137: Mld Multicast Group Profile Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the <<Back button to discard the changes made and return to the previous page. After clicking the Profile List link, the following page will appear: Figure 4-81 IGMP Snooping Multicast VLAN Group List Settings window The fields that can be configured or displayed are described below: Parameter Description...
  • Page 138: Mld Snooping Multicast Vlan Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide After clicking the Group List link, the following page will appear: Figure 4-83 Multicast Group Profile Multicast Address Settings window The fields that can be configured are described below: Parameter Description Multicast Address List...
  • Page 139 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide packet VLAN. If this function is disabled, the Switch will do VID checking first. If the group does not match the current profile binding to the multicast VLAN, the Switch will drop this packet.
  • Page 140: Ip Multicast Vlan Replication

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Replace Priority Tick the check box to specify that the packet’s priority will be changed by the switch, based on the remap priority. This flag will only take effect when the remap priority is set.
  • Page 141: Ip Multicast Vlan Replication Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-87 IP Multicast VLAN Replication Global Settings window The fields that can be configured are described below: Parameter Description Global State Here the user can enable or disable the global state feature. Here the user can select to decrease or no decrease the Time to live (TTL) value in the packets.
  • Page 142 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-89 IP Multicast VLAN Replication Settings window (Edit Source) The fields that can be configured are described below: Parameter Description Entry Name Here the IP Multicast VLAN Replication Source entry name will be displayed. VID / VLAN Name Here the user can choose to enter a VLAN Name, VID value or Group value.
  • Page 143: Multicast Filtering

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Multicast Filtering IPv4 Multicast Filtering IPv4 Multicast Profile Settings Users can add a profile to which multicast address(s) reports are to be received on specified ports on the Switch. This function will therefore limit the number of reports received and the number of multicast groups configured on the Switch.
  • Page 144: Ipv4 Limited Multicast Range Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description Multicast Address List Enter the multicast address list here. Click the Add button to add a new entry based on the information entered. Click the <<Back button to discard the changes made and return to the previous page. Click the Edit button to re-configure the specific entry.
  • Page 145: Ipv6 Multicast Filtering

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-94 IPv4 Max Multicast Group Settings window The fields that can be configured are described below: Parameter Description Ports / VID List Select the appropriate port(s) or VLAN IDs used for the configuration here. Max Group (1-960) If the checkbox Infinite is not selected, the user can enter a Max Group value.
  • Page 146: Ipv6 Limited Multicast Range Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description Profile ID (1-60) Enter a Profile ID between 1 and 60. Profile Name Enter a name for the IP Multicast Profile. Click the Add button to add a new entry based on the information entered. Click the Find button to locate a specific entry based on the information entered.
  • Page 147: Ipv6 Max Multicast Group Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-97 IPv6 Limited Multicast Range Settings window The fields that can be configured are described below: Parameter Description Ports/VID List Select the appropriate port(s) or VLAN IDs used for the configuration here. Access Assign access permissions to the ports selected.
  • Page 148: Multicast Filtering Mode

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Max Group If the checkbox Infinite is not selected, the user can enter a Max Group value. Infinite Tick the check box to enable or disable the use of the Infinite value. Action Use the drop-down menu to select the appropriate action for this rule.
  • Page 149: Erps Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide ERPS Settings ERPS (Ethernet Ring Protection Switching) is the first industry standard (ITU-T G.8032) for Ethernet ring protection switching. ERPS provides sub-50ms protection for Ethernet traffic in a ring topology. It ensures that there are no loops formed at the Ethernet layer.
  • Page 150 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Find button to find a specific entry based on the information entered. Click the View All button to view all the entries configured. Click the Delete button to remove the specific entry. Click the Detail Information link to view detailed information of the R-APS entry.
  • Page 151 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The fields that can be configured or displayed are described below: Parameter Description R-APS VLAN Display the R-APS VLAN ID. Ring Status Tick the check box and use the drop-down menu to enable or disable the specified ring.
  • Page 152: Lldp

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description Sub-Ring R-APS VLAN Enter the Sub-Ring R-APS VLAN ID used here. (1-4094) State Tick the check box and use the drop-down menu to add or delete the ERPS Sub- Ring state.
  • Page 153: Lldp Port Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Multiplier (2-10) advertisements to LLDP neighbors by changing the multiplier used by an LLDP Switch. When the Time-to-Live for an advertisement expires the advertised data is then deleted from the neighbor Switch’s MIB.
  • Page 154: Lldp Management Address List

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide TX And RX - the local LLDP agent can both transmit and receive LLDP frames. Disabled - the local LLDP agent can neither transmit nor receive LLDP frames. The default value is TX And RX.
  • Page 155: Lldp Dot1 Tlvs Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-104 LLDP Basic TLVs Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Select the port range to use for this configuration.
  • Page 156: Lldp Dot3 Tlvs Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-105 LLDP Dot1 TLVs Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Select the port range to use for this configuration.
  • Page 157: Lldp Statistic System

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-106 LLDP Dot3 TLVs Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Select the port range to use for this configuration.
  • Page 158: Lldp Local Port Information

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-107 LLDP Statistics System window Select a Unit and Port number from the drop-down menu and click the Find button to view statistics for a certain port.
  • Page 159: Lldp Remote Port Information

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-109 LLDP Local Port Information – Show Normal window Select a Unit and Port number and click the Find button to locate a specific entry. To view more details about, for example, the Management Address Count, click the Show Detail hyperlink.
  • Page 160: Lldp-Med

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-112 LLDP Remote Port Information – Show Normal window Click the <<Back button to return to the previous page. LLDP-MED LLDP-MED System Settings This window is used to configure the LLDP-MED log state and the fast start repeat count, and display the LLDP- MED system information.
  • Page 161 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-114 LLDP-MED Port Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Select the port range to use for this configuration.
  • Page 162: Nlb Fdb Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-115 LLDP-MED Local Port Information window Select a Unit and Port number from the drop-down menu and click the Find button to view statistics for a certain port.
  • Page 163: Ptp

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide requests from clients will be forwarded to all servers, but will only be processed by one of them. In multicast mode, the client uses a multicast MAC address as the destination MAC to reach the server. Regardless of the mode, the destination MAC is the shared MAC.
  • Page 164: Ptp Global Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide PTP Global Settings This window is used to configure the PTP function globally. To view this window, click L2 Features > PTP > PTP Global Settings, as shown below: Figure 4-119 PTP Global Settings window The fields that can be configured are described below: Parameter...
  • Page 165: Ptp Boundary Clock Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-120 PTP Port Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Select the port range to use for this configuration.
  • Page 166: Ptp Boundary Port Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide PTP Boundary Port Settings This window is used to configure the attributes of the PTP boundary clock. The configuration takes effect when the PTP device is a boundary type. To view this window, click L2 Features >...
  • Page 167: Ptp Peer To Peer Transparent Port Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide E2E - The port is configured to use the delay request-response mechanism. P2P - The peer delay mechanism. The default is E2E. Delay Request Enter the permitted mean time interval between successive delay request messages Interval (0-5) which are sent by a slave to a specific port on the master.
  • Page 168: Ptp Port Information

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 4-124 PTP Clock Information window PTP Port Information This window is used to display the active attributes of the special PTP ports on the switch. To view this window, click L2 Features > PTP > PTP Port Information, as shown below: Figure 4-125 PTP Port Information window PTP Foreign Master Records Port Information This window is used to display the current foreign master data set records of the boundary clock’s special ports.
  • Page 169: Chapter 5 L3 Features

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Chapter 5 L3 Features IPv4 Static/Default Route Settings IPv4 Route Table IPv6 Static/Default Route Settings IPv6 Route Table IP Forwarding Table Route Preference Settings Route Redistribution Settings IP Tunnel IPv4 Static/Default Route Settings The Switch supports static routing for IPv4 formatted addressing.
  • Page 170: Ipv4 Route Table

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Gateway This field allows the entry of a Gateway IP Address to be applied to the corresponding gateway of the IP address. Metric (1-65535) Represents the metric value of the IP interface entered into the table. This field may read a number between 1 and 65535.
  • Page 171: Ipv6 Route Table

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 5-3 IPv6 Static/Default Route Settings window The fields that can be configured are described below: Parameter Description IPv6 Address/Prefix Enter the destination network for the route, or tick the Default check box to be Length assigned to the default route.
  • Page 172: Ip Forwarding Table

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide IPv6 Address/Prefix Tick the check box and enter the IPv6 destination network address of the route. Length IPv6 Address Tick the check box and enter the IPv6 address. RIPng Tick the check box to display the RIPng route entries.
  • Page 173: Route Redistribution Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Static Enter the Static route type preference value here. Default Enter the Default route type preference value here. Enter the RIP route type preference value here. Click the Apply button to accept the changes made. Route Redistribution Settings This window is used to redistribute the routing information from other routing protocols to RIP.
  • Page 174: Ip Tunnel Gre Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description Interface Name Enter the IP tunnel interface name. Click the Add button to add a new entry based on the information entered. Click the Find button to locate a specific entry based on the information entered. Click the View All button to display all the existing entries.
  • Page 175 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 5-10 IP Tunnel GRE Settings window The fields that can be configured are described below: Parameter Description Interface Name Enter the IP tunnel interface name. Click the Find button to locate a specific entry based on the information entered. Click the View All button to display all the existing entries.
  • Page 176 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide and destination must be consistent, otherwise, the GRE tunnel will not work. Destination IPv4 Click the radio button and enter the destination IPv4 address of the GRE tunnel Address interface.
  • Page 177: Rip

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The Routing Information Protocol is a distance-vector routing protocol. There are two types of network devices running RIP - active and passive. Active devices advertise their routes to others through RIP messages, while passive devices listen to these messages.
  • Page 178: Rip Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Turn on trace mode. Turn off trace mode. Reserved for Sun Microsystems internal use. Update Request. Update Response. Update Acknowledgement RIP Command Codes The field VERSION contains the protocol version number (1 in this case), and is used by the receiver to verify which version of RIP the packet was sent.
  • Page 179 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 5-12 RIP Settings window The fields that can be configured are described below: Parameter Description RIP State Specifies that the RIP state will be enabled or disabled. If the state is disabled, then RIP packets will not be either transmitted or received by the interface.
  • Page 180: Ripng

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description TX Mode Specifies the RIP transmission mode. Options to choose from are v1 Only, v1 Compatible and v2 Only. Select Disable to disable this option. RX Mode Specifies the RIP receive mode Options to choose from are v1 Only, v2 Only and v1 or v2.
  • Page 181: Ripng Interface Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Garbage Collection Enter the value, in seconds, of the garbage collection timer. Time (1-65535) Click the Apply button to accept the changes made. RIPng Interface Settings This window allows users to configure RIPng interface settings. To view the following window, click L3 Features >...
  • Page 182: Chapter 6 Qos

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Chapter 6 802.1p Settings Bandwidth Control Traffic Control Settings HOL Blocking Prevention Scheduling Settings The Switch supports 802.1p priority queuing Quality of Service. The following section discusses the implementation of QoS (Quality of Service) and benefits of using 802.1p priority queuing.
  • Page 183: 802.1P Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Understanding QoS The Switch supports 802.1p priority queuing. The Switch has eight priority queues. These priority queues are numbered from 7 (Class 7) — the highest priority queue — to 0 (Class 0) — the lowest priority queue. The eight priority tags specified in IEEE 802.1p (p0 to p7) are mapped to the Switch’s priority queues as follows: •...
  • Page 184: 802.1P User Priority Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 6-2 Default Priority Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Select the starting and ending ports to use.
  • Page 185: Bandwidth Control

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Apply button to accept the changes made. Bandwidth Control The bandwidth control settings are used to place a ceiling on the transmitting and receiving data rates for any selected port.
  • Page 186: Queue Bandwidth Control Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide limit. Rate (64-10240000) This field allows the input of the data rate that will be the limit for the selected port. The user may choose a rate between 64 and 10240000 Kbits per second. Effective RX If a RADIUS server has assigned the RX bandwidth, then it will be the effective RX bandwidth.
  • Page 187: Traffic Control Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Unit Select the unit you wish to configure. From Port / To Port Use the drop-down menu to select the port range to use for this configuration. From Queue / To Queue Use the drop-down menu to select the queue range to use for this configuration.
  • Page 188 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 6-6 Traffic Control Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Use the drop-down menu to select the port range to use for this configuration.
  • Page 189 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The possible time settings for this field are 0 and 3 to 30 minutes. Tick the Disabled check box, and the port will be shut down immediately when detecting storm. Time Interval (5-600) The Time Interval will set the time between Multicast and Broadcast packet counts sent from the Switch’s chip to the Traffic Control function.
  • Page 190: Hol Blocking Prevention

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide HOL Blocking Prevention HOL (Head of Line) Blocking happens when one of the destination ports of a broadcast or multicast packet are busy. The switch will hold this packet in the buffer while the other destination port will not transmit the packet even they are not busy.
  • Page 191: Qos Scheduling Mechanism

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description Unit Select the unit you wish to configure. From Port / To Port Enter the port or port list you wish to configure. Class ID Select the Class ID, from 0-7 to configure for the QoS parameters.
  • Page 192 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide NOTE: The settings you assign to the queues, numbers 0-7, represent the IEEE 802.1p priority tag number. Do not confuse these settings with port numbers.
  • Page 193: Chapter 7 Acl

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Chapter 7 ACL Configuration Wizard Access Profile List CPU Access Profile List ACL Finder ACL Flow Meter Egress Access Profile List Egress ACL Flow Meter ACL Configuration Wizard The ACL Configuration Wizard will aid the user in the creation of access profiles and ACL Rules automatically by simply inputting the address or service type and the action needed.
  • Page 194: Access Profile List

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide From / To This rule can be created to apply to four different categories: Any – Selecting this option will include any starting category to this rule. MAC Address –...
  • Page 195: Adding An Ethernet Acl Profile

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-2 Access Profile List window Click the Add ACL Profile button to add an entry to the Access Profile List. Click the Delete All button to remove all access profiles from this table. Click the Show Details button to display the information of the specific profile ID entry.
  • Page 196 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-3 Add ACL Profile window (Ethernet ACL) The fields that can be configured are described below: Parameter Description Profile ID (1-6) Enter a unique identifier number for this profile set. This value can be set from 1 to 6. Profile Name Enter a profile name for the profile created.
  • Page 197 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the <<Back button to discard the changes made and return to the previous page. Click the Create button to create a profile. After clicking the Show Details button, the following page will appear: Figure 7-4 Access Profile Detail Information window (Ethernet ACL) Click the Show All Profiles button to navigate back to the Access Profile List window.
  • Page 198 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-6 Add Access Rule window (Ethernet ACL) The fields that can be configured are described below: Parameter Description Access ID (1-256) Type in a unique identifier number for this access. This value can be set from 1 to 256.
  • Page 199: Adding An Ipv4 Acl Profile

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Time Range Name Tick the check box and enter the name of the Time Range settings that has been previously configured in the Time Range Settings window. This will set specific times when this access rule will be implemented on the Switch.
  • Page 200 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-8 Add ACL Profile window (IPv4 ACL) The fields that can be configured are described below: Parameter Description Profile ID (1-6) Enter a unique identifier number for this profile set. This value can be set from 1 to Select ACL Type Select profile based on Ethernet (MAC Address), IPv4 address, IPv6 address, or packet content.
  • Page 201 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Select ICMP to instruct the Switch to examine the Internet Control Message Protocol (ICMP) field in each frame's header. Select Type to further specify that the access profile will apply an ICMP type value, or specify Code to further specify that the access profile will apply an ICMP code value.
  • Page 202 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-10 Access Rule List window (IPv4 ACL) Click the <<Back button to return to the previous page. Click the Add Rule button to create a new ACL rule in this profile. Click the Show Details button to view more information about the specific rule created.
  • Page 203: Adding An Ipv6 Acl Profile

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide packet to the value entered in the Priority field, which meets the criteria specified previously in this command, before forwarding it on to the specified CoS queue. Otherwise, a packet will have its incoming 802.1p user priority re-written to its original value before being forwarded by the Switch.
  • Page 204 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-13 Add ACL Profile window (IPv6 ACL) The fields that can be configured are described below: Parameter Description Profile ID (1-6) Enter a unique identifier number for this profile set. This value can be set from 1 to 6. Select ACL Type Select profile based on Ethernet (MAC Address), IPv4 address, IPv6 address, or packet content.
  • Page 205 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide ICMP Select ICMP to instruct the Switch to examine the Internet Control Message Protocol (ICMP) field in each frame's header. IPv6 Source Mask The user may specify an IPv6 address mask for the source IPv6 address by ticking the corresponding check box and entering the IPv6 address mask.
  • Page 206 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-16 Add Access Rule (IPv6 ACL) The fields that can be configured are described below: Parameter Description Access ID (1-256) Type in a unique identifier number for this access. This value can be set from 1 to 256.
  • Page 207: Adding A Packet Content Acl Profile

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide previously configured in the Time Range Settings window. This will set specific times when this access rule will be implemented on the Switch. Counter Here the user can select the counter. By checking the counter, the administrator can see how many times that the rule was hit.
  • Page 208 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-18 Add ACL Profile (Packet Content ACL) The fields that can be configured are described below: Parameter Description Profile ID (1-6) Enter a unique identifier number for this profile set. This value can be set from 1 to 6. Select ACL Select profile based on Ethernet (MAC Address), IPv4 address, IPv6 address, or packet Type...
  • Page 209 However, ARP is vulnerable as it can be easily spoofed and utilized to attack a LAN (i.e. an ARP spoofing attack). For a more detailed explanation on how ARP protocol works and how to employ D-Link’s unique Packet Content ACL to prevent ARP spoofing attack, please see Appendix E at the end of this manual.
  • Page 210 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-21 Add Access Rule (Packet Content ACL) The fields that can be configured are described below: Parameter Description Access ID (1-256) Type in a unique identifier number for this access. This value can be set from 1 to 256.
  • Page 211: Cpu Access Profile List

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Replace ToS Precedence Specify that the IP precedence of the outgoing packet is changed with the new (0-7) value. If used without an action priority, the packet is sent to the default TC. Time Range Name Tick the check box and enter the name of the Time Range settings that has been previously configured in the Time Range Settings window.
  • Page 212: Adding A Cpu Ethernet Acl Profile

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Users may globally enable or disable the CPU Interface Filtering State mechanism by using the radio buttons to change the running state. Choose Enabled to enable CPU packets to be scrutinized by the Switch and Disabled to disallow this scrutiny.
  • Page 213 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-24 Add CPU ACL Profile (Ethernet ACL) The fields that can be configured are described below: Parameter Description Profile ID (1-5) Enter a unique identifier number for this profile set. This value can be set from 1 to 5. Select ACL Type Select profile based on Ethernet (MAC Address), IPv4 address, IPv6 address, or packet content mask.
  • Page 214 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-25 CPU Access Profile Detail Information (Ethernet ACL) Click the Show All Profiles button to navigate back to the CPU ACL Profile List window. After clicking the Add/View Rules button, the following page will appear: Figure 7-26 CPU Access Rule List (Ethernet ACL) Click the Add Rule button to create a new CPU ACL rule in this profile.
  • Page 215 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-27 Add CPU Access Rule (Ethernet ACL) The fields that can be configured are described below: Parameter Description Access ID (1-100) Type in a unique identifier number for this access. This value can be set from 1 to 100.
  • Page 216: Adding A Cpu Ipv4 Acl Profile

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-28 CPU Access Rule Detail Information (Ethernet ACL) Click the Show All Rules button to navigate back to the CPU Access Rule List. Adding a CPU IPv4 ACL Profile The window shown below is the Add CPU ACL Profile window for IP (IPv4).
  • Page 217 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide header. 802.1Q VLAN Selecting this option instructs the Switch to examine the VLAN part of each packet header and use this as the, or part of the criterion for forwarding. IPv4 DSCP Selecting this option instructs the Switch to examine the DiffServ Code part of each packet header and use this as the, or part of the criterion for forwarding.
  • Page 218 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-30 CPU Access Profile Detail Information (IPv4 ACL) Click the Show All Profiles button to navigate back to the CPU ACL Profile List window. After clicking the Add/View Rules button, the following page will appear: Figure 7-31 CPU Access Rule List (IPv4 ACL) Click the Add Rule button to create a new CPU ACL rule in this profile.
  • Page 219 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-32 Add CPU Access Rule (IPv4 ACL) The fields that can be configured are described below: Parameter Description Access ID (1-100) Type in a unique identifier number for this access. This value can be set from 1 to 100.
  • Page 220: Adding A Cpu Ipv6 Acl Profile

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-33 CPU Access Rule Detail Information (IPv4 ACL) Click the Show All Rules button to navigate back to the CPU Access Rule List. Adding a CPU IPv6 ACL Profile The window shown below is the Add CPU ACL Profile window for IPv6.
  • Page 221 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Select IPv6 to instruct the Switch to examine the IP address in each frame's header. Select Packet Content Mask to specify a mask to hide the content of the packet header.
  • Page 222 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-37 Add CPU Access Rule (IPv6 ACL) The fields that can be configured are described below: Parameter Description Access ID (1-100) Enter a unique identifier number for this access. This value can be set from 1 to 100. Auto Assign –...
  • Page 223: Adding A Cpu Packet Content Acl Profile

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-38 CPU Access Rule Detail Information (IPv6 ACL) Click the Show All Rules button to navigate back to the CPU Access Rule List. Adding a CPU Packet Content ACL Profile The window shown below is the Add CPU ACL Profile window for Packet Content.
  • Page 224 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Select Packet Content Mask to specify a mask to hide the content of the packet header. Offset This field will instruct the Switch to mask the packet header beginning with the offset value specified: 0-15 - Enter a value in hex form to mask the packet from the beginning of the packet to the 15th byte.
  • Page 225 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-42 Add CPU Access Rule (Packet Content ACL) The fields that can be configured are described below: Parameter Description Access ID (1-100) Type in a unique identifier number for this access. This value can be set from 1 to 100. Auto Assign –...
  • Page 226: Acl Finder

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide After clicking the Show Details button in the CPU Access Rule List, the following page will appear: Figure 7-43 CPU Access Rule Detail Information (Packet Content ACL) Click the Show All Rules button to navigate back to the CPU Access Rule List.
  • Page 227 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide trTCM – Two Rate Three Color Marker. This, along with the srTCM, are two methods available on the switch for metering and marking packet flow. The trTCM meters and IP flow and marks it as a color based on the flow’s surpassing of two rates, the CIR and the PIR.
  • Page 228 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-45 ACL Flow Meter The fields that can be configured are described below: Parameter Description Profile ID Enter the Profile ID for the flow meter. Profile Name Enter the Profile Name for the flow meter.
  • Page 229 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The fields that can be configured are described below: Parameter Description Profile ID Here the user can enter the Profile ID for the flow meter. Profile Name Here the user can enter the Profile Name for the flow meter.
  • Page 230: Egress Access Profile List

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-47 ACL Flow meter Display window Click the <<Back button to return to the previous page. Egress Access Profile List Egress ACL performs per-flow processing of packets when they egress the Switch. The Switch supports three Profile Types, Ethernet ACL, IPv4 ACL, and IPv6 ACL.
  • Page 231 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-49 Add Egress ACL Profile window (Ethernet ACL) The fields that can be configured are described below: Parameter Description Profile ID (1-4) Enter a unique identifier number for this profile set. This value can be set from 1 to 4. Profile Name Enter a profile name for the profile created.
  • Page 232 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-50 Egress Access Profile Detail Information window (Ethernet ACL) Click the Show All Profiles button to navigate back to the Egress Access Profile List window. After clicking the Add/View Rules button, the following page will appear: Figure 7-51 Egress Access Rule List window (Ethernet ACL) Click the <<Back button to return to the previous page.
  • Page 233 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-52 Add Egress Access Rule window (Ethernet ACL) The fields that can be configured are described below: Parameter Description Access ID (1-128) Type in a unique identifier number for this access. This value can be set from 1 to 128.
  • Page 234: Adding An Ipv4 Egress Acl Profile

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide previously configured in the Time Range Settings window. This will set specific times when this access rule will be implemented on the Switch. Counter Here the user can select the counter. By checking the counter, the administrator can see how many times that the rule was hit.
  • Page 235 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-54 Add Egress ACL Profile window (IPv4 ACL) The fields that can be configured are described below: Parameter Description Profile ID (1-4) Enter a unique identifier number for this profile set. This value can be set from 1 to Profile Name Enter a profile name for the profile created.
  • Page 236 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Select IGMP to instruct the Switch to examine the Internet Group Management Protocol (IGMP) field in each frame's header. Select Type to further specify that the access profile will apply an IGMP type value. Select TCP to use the TCP port number contained in an incoming packet as the forwarding criterion.
  • Page 237 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Add Rule button to create a new ACL rule in this profile. Click the Show Details button to view more information about the specific rule created. Click the Delete Rules button to remove the specific entry.
  • Page 238: Adding An Ipv6 Egress Acl Profile

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide when this access rule will be implemented on the Switch. Counter Here the user can select the counter. By checking the counter, the administrator can see how many times that the rule was hit. Ports When a range of ports is to be configured, the Auto Assign check box MUST be ticked in the Access ID field of this window.
  • Page 239 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-59 Add Egress ACL Profile window (IPv6 ACL) The fields that can be configured are described below: Parameter Description Profile ID (1-4) Enter a unique identifier number for this profile set. This value can be set from 1 to Profile Name Enter a profile name for the profile created.
  • Page 240 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide FFFF:FFFF::FFFF. Click the Select button to select an ACL type. Click the <<Back button to discard the changes made and return to the previous page. Click the Create button to create a profile. After clicking the Show Details button, the following page will appear: Figure 7-60 Egress Access Profile Detail Information window (IPv6 ACL) Click the Show All Profiles button to navigate back to the Egress Access Profile List window.
  • Page 241 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 7-62 Add Egress Access Rule (IPv6 ACL) The fields that can be configured are described below: Parameter Description Access ID (1-128) Type in a unique identifier number for this access. This value can be set from 1 to 128. Auto Assign –...
  • Page 242: Egress Acl Flow Meter

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide will denote all ports on the Switch. Port Group ID Specify the port group ID to apply to the access rule. Port Group Name Specify the port group name to apply to the access rule. VLAN Name Specify the VLAN name to apply to the access rule.
  • Page 243 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide After clicking the Add or Modify button, the following page will appear: Figure 7-65 Egress ACL Flow Meter Configuration window The fields that can be configured are described below: Parameter Description Profile ID...
  • Page 244 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide EBS – Specify the Excess Burst Size. The unit is in kilobyte. Action Conform – This field denotes the green packet flow. Green packet flows may have their DSCP field rewritten to a value stated in this field.
  • Page 245: Chapter 8 Security

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Chapter 8 Security 802.1X RADIUS IP-MAC-Port Binding (IMPB) MAC-based Access Control (MAC) Web-based Access Control (WAC) Japanese Web-based Access Control (JWAC) Compound Authentication Port Security ARP Spoofing Prevention Settings BPDU Attack Protection Loopback Detection Settings Traffic Segmentation Settings...
  • Page 246 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Authentication Server The Authentication Server is a remote device that is connected to the same network as the Client and Authenticator, must be running a RADIUS Server program and must be configured properly on the Authenticator (Switch).
  • Page 247 Figure 8-6 The 802.1X Authentication Process The D-Link implementation of 802.1X allows network administrators to choose between two types of Access Control used on the Switch, which are: 1. Port-Based Access Control – This method requires only one user to be authenticated per port by a remote RADIUS server to allow the remaining users on the same port access to the network.
  • Page 248: 802.1X Global Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Host-based Network Access Control In order to successfully make use of 802.1X in a shared media LAN segment, it would be necessary to create “logical” Ports, one for each attached device that required access to the LAN.
  • Page 249: 802.1X Port Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide 802.1X Port Settings Users can configure the 802.1X authenticator port settings. To view this window, click Security > 802.1X > 802.1X Port Settings as shown below: Figure 8-10 802.1X Port Settings The fields that can be configured are described below: Parameter Description...
  • Page 250: 802.1X User Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide ReAuthPeriod A constant that defines a nonzero number of seconds between periodic re- authentication of the client. The default setting is 3600 seconds. ReAuthentication Determines whether regular re-authentication will take place on this port. The default setting is Disabled.
  • Page 251: Guest Vlan Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The fields that can be configured are described below: Parameter Description 802.1X User The user can enter an 802.1X user’s username in here. Password The user can enter an 802.1X user’s password in here. Confirm Password The user can re-enter an 802.1X user’s password in here.
  • Page 252: Authenticator State

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-13 Guest VLAN Settings window The fields that can be configured are described below: Parameter Description VLAN Name Enter the pre-configured VLAN name to create as an 802.1X guest VLAN. Unit Select the unit you wish to configure.
  • Page 253: Authenticator Session Statistics

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide To view this window, click Security > 802.1X > Authenticator Statistics as shown below: Figure 8-15 Authenticator Statistics Window The fields that can be configured are described below: Parameter Description Unit...
  • Page 254: Authenticator Diagnostics

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-16 Authenticator Session Statistics Window The fields that can be configured are described below: Parameter Description Unit Select a unit you want to display. Port Use the drop-down menu to select a port to display. Click the Apply button to accept the changes made.
  • Page 255: Initialize Port-Based Port(S)

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-17 Authenticator Diagnostics Window The fields that can be configured are described below: Parameter Description Unit Select a unit you want to display. Port Use the drop-down menu to select a port to display. Click the Apply button to accept the changes made.
  • Page 256: Initialize Host-Based Port(S)

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description Unit Select a unit you want to display. From Port / To Port Use the drop-down menus to select a range of ports to initialize. Click the Apply button to accept the changes made.
  • Page 257: Reauthenticate Host-Based Port(S)

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Reauthenticate Host-based Port(s) This window is used to re-authenticate the device connected with the host-based ports. This window appears when the Authentication State is enabled in 802.1X Global Settings window. To view this window, click Security >...
  • Page 258: Radius Accounting Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Index Choose the desired RADIUS server to configure: 1, 2 or 3 and select the IPv4 Address. IPv4 Address Set the RADIUS server IP address. IPv6 Address Set the RADIUS server IPv6 address.
  • Page 259 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide To view this window, click Security > RADIUS > RADIUS Authentication as shown below: Figure 8-24 RAIUS Authentication window The user may also select the desired time interval to update the statistics, between 1s and 60s, where “s” stands for seconds.
  • Page 260: Radius Account Client

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide not yet timed out or received a response. This variable is incremented when an Access-Request is sent and decremented due to receipt of an Access-Accept, Access-Reject or Access-Challenge, a timeout or retransmission. Timeouts The number of authentication timeouts to this server.
  • Page 261: Ip-Mac-Port Binding (Impb)

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Retransmissions The number of RADIUS Accounting-Request packets retransmitted to this RADIUS accounting server. Retransmissions include retries where the Identifier and Acct- Delay have been updated, as well as those in which they remain the same. Responses The number of RADIUS packets received on the accounting port from this server.
  • Page 262: Impb Port Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The fields that can be configured are described below: Parameter Description Trap / Log Click the radio buttons to enable or disable the sending of trap/log messages for IP- MAC-port binding.
  • Page 263: Impb Entry Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide From Port / To Port Select a range of ports to set for IP-MAC-port binding. ARP Inspection When the ARP inspection function is enabled, the legal ARP packets are forwarded, while the illegal packets are dropped.
  • Page 264: Mac Block List

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide below. MAC Address Enter the MAC address to bind to the IP Address set above. Ports Specify the switch ports for which to configure this IP-MAC binding entry (IP Address + MAC Address).
  • Page 265: Dhcp Snooping Entry

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-30 DHCP Snooping Max Entry Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Use the drop-down menus to select a range of ports to use.
  • Page 266: Nd Snooping

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Ports Specify the ports for DHCP snooping entries. Tick the All Ports check box to select all entries for all ports. Tick the IPv4 check box to select IPv4 DHCP snooping learned entries.
  • Page 267: Mac-Based Access Control (Mac)

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-33 ND Snooping Entry window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. Port Use the drop-down menu to select the desired port. Ports Specify the ports for ND snooping entries.
  • Page 268 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-34 MAC-based Access Control Settings window The fields that can be configured are described below: Parameter Description MAC-based Access Toggle to globally enable or disable the MAC-based access control function on the Control State Switch.
  • Page 269: Mac-Based Access Control Local Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Max User (1-4000) Enter the maximum amount of users of the Switch. Tick the No Limit check box to have unlimited users. VLAN Name Enter the name of the previously configured Guest VLAN being used for this function. Click the radio button and enter a Guest VLAN ID.
  • Page 270: Mac-Based Access Control Authentication State

    WAC by attempting to gain Web access. D-Link’s implementation of WAC uses a virtual IP that is exclusively used by the WAC function and is not known by any other modules of the Switch. In fact, to avoid affecting a Switch’s other features, WAC will only use a virtual IP address to communicate with hosts.
  • Page 271 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide As all packets to a virtual IP from authenticated and authenticating hosts will be trapped to the Switch’s CPU, if the virtual IP is the same as other servers or PCs, the hosts on the WAC-enabled ports cannot communicate with the server or PC which really own the IP address.
  • Page 272 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Conditions and Limitations 1. If the client is utilizing DHCP to attain an IP address, the authentication VLAN must provide a DHCP server or a DHCP relay function so that client may obtain an IP address. 2.
  • Page 273: Wac Global Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide WAC Global Settings Users can configure the Switch for the Web-based access control function. To view this window, click Security > Web-based Access Control (WAC) > WAC Global Settings as shown below: Figure 8-37 WAC Global Settings window The fields that can be configured are described below:...
  • Page 274: Wac User Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide NOTE: A successful authentication should direct the client to the stated web page. If the client does not reach this web page, yet does not receive a Fail! Message, the client will already be authenticated and therefore should refresh the current browser window or attempt to open a different web page.
  • Page 275: Wac Authentication State

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-39 WAC Port Settings window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Use the drop-down menus to select a range of ports to be enabled as WAC ports.
  • Page 276: Wac Customize Page

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-40 WAC Authentication State window The fields that can be configured are described below: Parameter Description Port List Enter a port or range of ports, and tick the appropriate check box(s), Authenticated, Authenticating, and Blocked.
  • Page 277: Japanese Web-Based Access Control (Jwac)

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Complete the WAC authentication information on this window to set the WAC page settings. Click the Apply button to implement the changes made. Click the Set to default button to go back to the default settings of all elements. Click the Edit button to re-configure the elements.
  • Page 278 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide unauthenticated hosts will be dropped. A ping packet will pass through when the JWAC authenticating time is between 0 and Port Number (1-65535) Enter the TCP port that the JWAC Switch listens to and uses to finish the authenticating process.
  • Page 279 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide...
  • Page 280: Jwac Port Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide JWAC Port Settings This window is used to configure JWAC port settings for the Switch. To view this window, click Security > Japanese Web-based Access Control (JWAC) > JWAC Port Settings as shown below: Figure 8-43 JWAC Port Settings Window The fields that can be configured are described below:...
  • Page 281 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-44 JWAC User Settings Window The fields that can be configured are described below: Parameter Description User Name Enter a username of up to 15 alphanumeric characters. Password Enter the password the administrator has chosen for the selected user.
  • Page 282: Jwac Authentication State

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide JWAC Authentication State This window is used to display Japanese Web-based Access Control Host Table information. To view this window, click Security > Japanese Web-based Access Control (JWAC) > JWAC Authentication State as shown below: Figure 8-45 JWAC Authentication State Window The fields that can be configured are described below:...
  • Page 283: Jwac Customize Page

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide JWAC Customize Page This window is used to configure JWAC page settings for the Switch. To view this window, click Security > Japanese Web-based Access Control (JWAC) > JWAC Customize Page as shown below: Figure 8-48 JWAC Login Window Figure 8-47 JWAC Login Window...
  • Page 284: Compound Authentication Guest Vlan Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The fields that can be configured are described below: Parameter Description Authorization Attributes Click the radio buttons to enable of disable the Authorization Attributes State. State Authentication Server Click the radio buttons to configure the authentication server failover function.
  • Page 285: Compound Authentication Mac Format Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-50 Compound Authentication Guest VLAN Settings window The fields that can be configured are described below: Parameter Description VLAN Name Click the button and assign a VLAN as a Guest VLAN. The VLAN must be an existing static VLAN.
  • Page 286: Port Security

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Colon - Use ":" as delimiter, the format is: AA:BB:CC:DD:EE:FF. Dot - Use "." as delimiter, the format is: AA.BB.CC.DD.EE.FF. None – Do not use any delimiter, the format is: AABBCCDDEEFF. Delimiter Number Use the drop-down menu to select the delimiter number.
  • Page 287 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide System Maximum Enter the system maximum address. Address (1-3328) Unit Select the unit you want to configure. From Port / To Port Use the drop-down menus to select a range of ports to configure. Admin State Use the drop-down menu to enable or disable Port Security (locked MAC address table for the selected ports).
  • Page 288: Port Security Vlan Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Port Security VLAN Settings This window is used to configure the maximum number of port-security entries that can be learned on a specific VLAN. To view this window, click Security > Port Security > Port Security VLAN Settings as shown below: Figure 8-54 Port Security VLAN Settings window The fields that can be configured are described below: Parameter...
  • Page 289: Arp Spoofing Prevention Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Port List Enter the port number or list here to be used for the port security entry search. When All is selected, all the ports configured will be displayed. MAC Address The MAC address of the entry in the forwarding database table that has been permanently learned by the Switch.
  • Page 290 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide BPDU protection has a higher priority than the FBPDU setting configured by configure STP command in the determination of BPDU handling. That is, when FBPDU is configured to forward STP BPDU but BPDU protection is enabled, then the port will not forward STP BPDU.
  • Page 291: Loopback Detection Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Loopback Detection Settings The Loopback Detection (LBD) function is used to detect the loop created by a specific port. This feature is used to temporarily shut down a port on the Switch or block traffic through specific VLANs when a CTP (Configuration Testing Protocol) packet has been looped back to the Switch.
  • Page 292: Traffic Segmentation Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide State Use the drop-down menu to toggle between Enabled and Disabled. Click the Apply button to accept the changes made for each individual section. Traffic Segmentation Settings Traffic segmentation is used to limit traffic flow from a single or group of ports, to a group of ports.
  • Page 293: Netbios Filtering Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide NetBIOS Filtering Settings NetBIOS is an application programming interface, providing a set of functions that applications use to communicate across networks. NetBEUI, the NetBIOS Enhanced User Interface, was created as a data-link-layer frame structure for NetBIOS.
  • Page 294: Dhcp Server Screening

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide DHCP Server Screening This function allows the user to not only to restrict all DHCP Server packets but also to receive any specified DHCP server packet by any specified DHCP client, it is useful when one or more DHCP servers are present on the network and both provide DHCP services to different distinct groups of clients.
  • Page 295: Dhcp Offer Permit Entry Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The default is Disabled. Click the Apply button to accept the changes made for each individual section. DHCP Offer Permit Entry Settings Users can add or delete permit entries on this page. To view this window, click Security >...
  • Page 296: Enable Admin

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide prompted by the Switch to enter usernames and passwords for authentication, the Switch contacts the TACACS / XTACACS / TACACS+ / RADIUS server to verify, and the server will respond with one of three messages: The server verifies the username and password, and the user is granted normal user privileges on the Switch.
  • Page 297: Authentication Policy Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide When this window appears, click the Enable Admin button revealing a window for the user to enter authentication (password, username), as shown below. A successful entry will promote the user to Administrator level privileges on the Switch.
  • Page 298: Application Authentication Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Apply button to accept the changes made. Application Authentication Settings Users can configure Switch configuration applications (console, Telnet, SSH, web) for login at the user level and at the administration level (Enable Admin) utilizing a previously configured method list.
  • Page 299 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-67 Authentication Server Group Settings – Server Group List window This window displays the Authentication Server Groups on the Switch. The Switch has four built-in Authentication Server Groups that cannot be removed but can be modified.
  • Page 300: Authentication Server Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-68 Authentication Server Group Settings – Edit Server Group window The fields that can be configured are described below: Parameter Description Group Name Enter a server group name. IP Address Enter the IP address of the server host.
  • Page 301: Login Method Lists Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-69 Authentication Server Settings window The fields that can be configured are described below: Parameter Description IP Address The IP address of the remote server host to add. Protocol The protocol used by the server host.
  • Page 302: Enable Method Lists Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-70 Login Method Lists Settings window The Switch contains one Method List that is set and cannot be removed, yet can be modified. To delete a Login Method List defined by the user, click the Delete button corresponding to the entry desired to be deleted.
  • Page 303 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Successful authentication using any of these methods will give the user an "Admin" privilege. NOTE: To set the Local Enable Password, see the next section, entitled Local Enable Password. To view this window, click Security >...
  • Page 304: Local Enable Password Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Local Enable Password Settings Users can configure the locally enabled password for Enable Admin. When a user chooses the "local_enable" method to promote user level privileges to administrator privileges, he or she will be prompted to enter the password configured here that is locally set on the Switch.
  • Page 305 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide CBC Block Ciphers – CBC refers to Cipher Block Chaining, which means that a portion of the previously encrypted block of encrypted text is used in the encryption of the current block. The Switch supports the 3DES EDE encryption code defined by the Data Encryption Standard (DES) to create the encrypted text.
  • Page 306 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide To set up the SSL function on the Switch, configure the parameters in the SSL Settings section described. The fields that can be configured are described below: Parameter Description SSL Status...
  • Page 307: Ssh

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide SSH is an abbreviation of Secure Shell, which is a program allowing secure remote login and secure network services over an insecure network. It allows a secure login to remote host computers, a safe method of executing commands on a remote end node, and will provide secure encrypted and authenticated communication between two non-trusted hosts.
  • Page 308: Ssh Authentication Method And Algorithm Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide to log on to the SSH Server utilizing the SSH authentication. After the maximum number of attempts has been exceeded, the Switch will be disconnected and the user must reconnect to the Switch to attempt another login.
  • Page 309: Ssh User Authentication List

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description 3DES-CBC Use the check box to enable or disable the Triple Data Encryption Standard encryption algorithm with Cipher Block Chaining. The default is enabled. AES128-CBC Use the check box to enable or disable the Advanced Encryption Standard AES128 encryption algorithm with Cipher Block Chaining.
  • Page 310: Dos Attack Prevention Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-76 SSH User Authentication List window The fields that can be configured or displayed are described below: Parameter Description User Name A name of no more than 15 characters to identify the SSH user. This User Name must be a previously configured user account on the Switch.
  • Page 311 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 8-77 DoS Attack Prevention Settings window The fields that can be configured or displayed are described below: Parameter Description DoS Type Selection Here the user can select the appropriate DoS Attack prevention types. Land Attack - Specifies that the DoS attack prevention type will be set to prevent LAND attacks.
  • Page 312: Trusted Host Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide After clicking the View Detail link next to the DoS Type displays, the following window will appear: Figure 8-78 DoS Attack Prevention Detail window Click the <<Back button to return to the previous page. Trusted Host Settings Up to thirty trusted host secure IP addresses or ranges may be configured and used for remote Switch management.
  • Page 313: Safeguard Engine Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Net Mask Enter a Net Mask address to add to the trusted host list. Access Interface Tick the check boxes to select services that will be allowed to the trusted host. Click the Add button to add a new entry based on the information entered.
  • Page 314 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide the Switch doubled the time for dropping ARP and IP broadcast packets when consecutive flooding issues were detected at 5-second intervals. (First stop = 5 seconds, second stop = 10 seconds, third stop = 20 seconds) Once the flooding is no longer detected, the wait period for dropping ARP and IP broadcast packets will return to 5 seconds and the process will resume.
  • Page 315 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide storm has subsided. The default setting is Fuzzy mode. Click the Apply button to accept the changes made.
  • Page 316: Chapter 9 Network Application

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Chapter 9 Network Application DHCP DNS Resolver RCP Server Settings SMTP Settings SNTP Flash File System Settings DHCP DHCP Relay DHCP Relay Global Settings Users can enable and configure DHCP Relay Global Settings. The relay hops count limit allows the maximum number of hops (routers) that the DHCP messages can be relayed through to be set.
  • Page 317 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Count Limit (1-16) router hops DHCP messages can be forwarded. The default hop count is 4. DHCP Relay Time Allows an entry between 0 and 65535 seconds, and defines the maximum time limit Threshold (0-65535) for routing a DHCP packet.
  • Page 318: Dhcp Relay Interface Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide NOTE: If the Switch receives a packet that contains the option 82 field from a DHCP client and the information-checking feature is enabled, the Switch drops the packet because it is invalid. However, in some instances, users may configure a client with the option 82 field.
  • Page 319: Dhcp Relay Option 60 Server Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide window. Properly configured settings will be displayed in the DHCP Relay Interface Table at the bottom of the window, once the user clicks the Apply button. The user may add up to four server IPs per IP interface on the Switch.
  • Page 320: Dhcp Relay Option 60 Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide NOTE: When there is no matching server found for the packet based on option 60, the relay servers will be determined by the default relay server setting. DHCP Relay Option 60 Settings This option decides whether the DHCP Relay will process the DHCP option 60 or not To view this window, click Network Application >...
  • Page 321: Dhcp Server

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide To view this window, click Network Application > DHCP > DHCP Relay > DHCP Relay Option 61 Settings as shown below: Figure 9-7 DHCP Relay Option 61 Settings window The fields that can be configured are described below: Parameter Description...
  • Page 322: Dhcp Server Global Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Users also have the ability to bind IP addresses within the DHCP pool to specific MAC addresses in order to keep consistent the IP addresses of devices that may be important to the upkeep of the network that require a static IP address.
  • Page 323: Dhcp Server Pool Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Begin Address Enter the starting IP Address. End Address Enter the ending IP Address. Click the Add button to add a new entry based on the information entered. Click the Delete All button to remove all the entries listed.
  • Page 324 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 9-11 DHCP Server Pool Settings (Edit) Window The fields that can be configured are described below: Parameter Description IP Address Enter the network address of the pool. Netmask Enter the Netmask for the network address.
  • Page 325 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Enter the DHCP Option 43 string used here. Click the Apply button to accept the changes made. Click the <<Back button to discard the changes made and return to the previous page. After clicking the Edit Class button, the following page will appear: Figure 9-12 DHCP Server Pool Settings (Edit Class) Window The fields that can be configured are described below:...
  • Page 326: Dhcp Server Manual Binding

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description Class State Specifies the DHCP Server Class’ state here. Enable - Specifies that the DHCP Server Class feature will be enabled. Disable - Specifies that the DHCP Server Class feature will be enabled. Class Name Enter the DHCP class name used here.
  • Page 327: Dhcp Server Dynamic Binding

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 9-15 DHCP Server Manual Binding Window The fields that can be configured are described below: Parameter Description Pool Name Enter the DHCP Server Pool name. IP Address IP address which will be assigned to specified client.
  • Page 328: Dhcpv6 Server

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide DHCP Conflict IP The DHCP server will use PING packet to determine whether an IP address is conflict with other host before binding this IP. The IP address which has been identified conflict will be moved to the conflict IP database. The system will not attempt to bind the IP address in the conflict IP database unless the user clears it from the conflict IP database.
  • Page 329 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 9-19 DHCPv6 Server Pool Settings window The fields that can be configured are described below: Parameter Description Pool Name Enter the DHCPv6 Server Pool name. Click the Add button to add a new entry based on the information entered. Click the Find button to locate a specific entry based on the information entered.
  • Page 330 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 9-21 DHCPv6 Server Manual Binding Settings window The fields that can be configured are described below: Parameter Description IPv6 Address Enter the IPv6 address to be statically bound to a device. Client DUID Enter the DUID of the device to be statically bound to the IPv6 address entered in the previous field.
  • Page 331: Dhcpv6 Relay

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide DHCPv6 Server Dynamic Binding This window is used to show the DHCPv6 dynamic binding information. To view this window, click Network Application > DHCP > DHCPv6 Server > DHCPv6 Server Dynamic Binding as shown below: Figure 9-23 DHCPv6 Server Dynamic Binding Table window The fields that can be configured are described below:...
  • Page 332: Dhcpv6 Relay Global Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide DHCPv6 Relay Global Settings This window is used to configure the DHCPv6 relay function on the Switch. To view this window, click Network Application > DHCP > DHCPv6 Relay > DHCPv6 Relay Global Settings as shown below: Figure 9-25 DHCPv6 Relay Global Settings window The fields that can be configured are described below:...
  • Page 333: Dhcp Local Relay Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide DHCPv6 Server Enter the DHCPv6 server IPv6 address. Address Click the Apply button to accept the changes made. Click the Add button to add a new entry based on the information entered. Click the Find button to locate a specific entry based on the information entered.
  • Page 334: Dns Relay

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Domain Name Resolution The domain name system can be used by contacting the name servers one at a time, or by asking the domain name system to do the complete name translation. The client makes a query containing the name, the type of answer required, and a code specifying whether the domain name system should do the entire name translation, or simply return the address of the next DNS server if the server receiving the query cannot resolve the name.
  • Page 335: Dns Resolver

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide DNS Relay Static Settings This window is used to add or delete static entries into the switch’s DNS resolution table. To view this window, click Network Application > DNS > DNS Relay > DNS Relay Static Settings as shown below: Figure 9-29 DNS Relay Static Settings Window The fields that can be configured are described below:...
  • Page 336: Dns Resolver Static Name Server Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide DNS Resolver Static Name Server Settings The window is used to create the DNS Resolver name server of the switch. To view this window, click Network Application > DNS Resolver > DNS Resolver Static Name Server Settings as shown below: Figure 9-31 DNS Resolver Static Name Server Settings window The fields that can be configured are described below:...
  • Page 337: Dns Resolver Dynamic Host Name Table

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The fields that can be configured are described below: Parameter Description Host Name Enter the name of the host. IP Address Enter the IP address of the host. Click the Add button to add a new entry based on the information entered.
  • Page 338: Smtp Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide SMTP Settings SMTP or Simple Mail Transfer Protocol is a function of the Switch that will send switch events to mail recipients based on e-mail addresses entered in the window below. The Switch is to be configured as a client of SMTP while the server is a remote device that will receive messages from the Switch, place the appropriate information into an e-mail and deliver it to recipients configured on the Switch.
  • Page 339 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 9-36 SMTP Settings window The fields that can be configured are described below: Parameter Description SMTP State Use the radio button to enable or disable the SMTP service on this device. SMTP Server Enter the IP address of the SMTP server on a remote device.
  • Page 340: Sntp

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide SNTP The Simple Network Time Protocol (SNTP) is a protocol for synchronizing computer clocks through the Internet. It provides comprehensive mechanisms to access national time and frequency dissemination services, organize the SNTP subnet of servers and clients, and adjust the system clock in each participant.
  • Page 341 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 9-38 Time Zone Settings window The fields that can be configured are described below: Parameter Description Daylight Saving Time Use this drop-down menu to enable or disable the DST Settings. State Daylight Saving Time Use this drop-down menu to specify the amount of time that will constitute your local...
  • Page 342: Udp

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Month To: Day Of Week Enter the day of the week that DST will end. To: Month Enter the month that DST will end. To: Time In HH:MM Enter the time DST will end.
  • Page 343 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide UDP Helper State Specifies to enable or disable the UDP Helper function on the Switch. UDP Port This option is used to add a UDP port for the UDP Helper function on the Switch. Time - Specifies the Time service.
  • Page 344: Flash File System Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Delete button to remove the specific entry. Click the <<Back button to return to the previous page. Flash File System Settings Why use flash file system: In old switch system, the firmware, configuration and log information are saved in a flash with fixed addresses and size.
  • Page 345 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Create Directory to create a new directory within the file system of the switch. Click the Copy button to copy a specific file to the switch. Click the Move button to move a specific file within the switch.
  • Page 346: Chapter 10 Oam

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Chapter 10 Ethernet OAM DULD Settings Cable Diagnostics CFM Settings On this page the user can configure the CFM parameters. To view this window, click OAM > CFM > CFM Settings, as shown below: Figure 10-1 CFM Settings Window The fields that can be configured are described below: Parameter...
  • Page 347 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide None – Don’t transmit sender ID TLV. This is the default value. Chassis – Transmit sender ID TLV with chassis ID information. Manage – Transmit sender ID TLV with managed address information. Chassis Manage –...
  • Page 348 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 10-3 CFM MA Settings (Edit) Window The fields that can be configured are described below: Parameter Description This is the control creation of MIPs. None - Don’t create MIPs. Auto - MIPs can always be created on any ports in this MA, if that port is not configured with an MEP of that MA.
  • Page 349 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 10-4 CFM MIP Port Table Window Click the <<Back button to return to the previous page. After clicking the Add MEP button, the following page will appear: Figure 10-5 CFM MEP Settings (Add) Window The fields that can be configured are described below: Parameter...
  • Page 350 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 10-6 CFM MEP Information Window Click the Edit button to re-configure the specific entry. Click the <<Back button to discard the changes made and return to the previous page. After clicking the Edit button, the following page will appear: Figure 10-7 CFM MEP Information (Edit) Window The fields that can be configured are described below:...
  • Page 351 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description MEP State This is the MEP administrative state. Enable - MEP is enabled. Disable - MEP is disabled. This is the default value. CCM State This is the CCM transmission state.
  • Page 352: Cfm Port Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide the MEP sends AIS PDU. The default client MD level is MD level at which the most immediate client layer MIPs and MEPs exist. Options to choose from are values between 0 and 7.
  • Page 353: Cfm Mipccm Table

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 10-10 CFM Port Settings Window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. From Port / To Port Use the drop-down menu to select a range of ports used for this configuration.
  • Page 354: Cfm Linktrace Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 10-12 CFM Loopback Settings Window The fields that can be configured are described below: Parameter Description MEP Name Select and enter the Maintenance End Point name used. MEP ID (1-8191) Select and enter the Maintenance End Point ID used.
  • Page 355: Cfm Packet Counter

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 10-13 CFM Linktrace Settings Window The fields that can be configured are described below: Parameter Description MEP Name Select and enter the Maintenance End Point name used. MEP ID (1-8191) Select and enter the Maintenance End Point ID used.
  • Page 356: Cfm Fault Table

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 10-14 CFM Packet Counter Window The fields that can be configured are described below: Parameter Description Port List Enter a port or range of ports to display. Tick the All Ports check box to display all ports.
  • Page 357: Cfm Mp Table

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide CFM MP Table This window is used to display the CFM MP information. To view this window, click OAM > CFM > CFM MP Table, as shown below: Figure 10-16 CFM MP Table Window The fields that can be configured are described below: Parameter...
  • Page 358: Ethernet Oam Configuration Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 10-17 Ethernet OAM Settings window The fields that can be configured are described below: Parameter Description From Port / To Port Select a range of ports you wish to configure. Mode Use the drop-down menu to select to operate in either Active or Passive.
  • Page 359: Ethernet Oam Event Log

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 10-18 Ethernet OAM Configuration Settings window The fields that can be configured are described below: Parameter Description From Port / To Port Select a range of ports you wish to configure. Link Event Use the drop-down menu to select the link events, Link Monitor or Critical Link Event.
  • Page 360: Ethernet Oam Statistics

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 10-19 Ethernet OAM Event Log window The fields that can be configured are described below: Parameter Description Port Use the drop-down menu to select the unit ID and the port number to view. Port List Enter a list of ports.
  • Page 361: Duld Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description Unit Select the unit you wish to configure. Port Use the drop-down menu to select the unit ID and the port number to view. Port List Enter a list of ports.
  • Page 362 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide To view this window, click OAM > Cable Diagnostics as shown below: Figure 10-22 Cable Diagnostics window To view the cable diagnostics for a particular port, use the drop-down menu to choose the Unit ID and Port and click Test The information will be displayed in this window.
  • Page 363: Chapter 11 Monitoring

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Chapter 11 Monitoring Utilization Statistics Mirror sFlow Ping Trace Route Peripheral Utilization CPU Utilization This window is used to display the percentage of the CPU being used, expressed as an integer percentage and calculated as a simple average by time interval.
  • Page 364: Dram & Flash Utilization

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Record Number Select number of times the Switch will be polled between 20 and 200. The default value is 200. Show/Hide Check whether or not to display Five Seconds, One Minute, and Five Minutes. Click the Apply button to accept the changes made.
  • Page 365: Statistics

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 11-3 Port Utilization window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. Port Use the drop-down menu to choose the port that will display statistics. Time Interval Select the desired setting between 1s and 60s, where "s"...
  • Page 366 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide To select a port to view these statistics for, select the port by using the Port drop-down menu. The user may also use the real-time graphic of the Switch at the top of the web page by simply clicking on a port. To view this window, click Monitoring >...
  • Page 367 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 11-5 RX Packets Analysis Table window The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. Port Use the drop-down menu to choose the port that will display statistics.
  • Page 368 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide To select a port to view these statistics for, select the port by using the Port drop-down menu. The user may also use the real-time graphic of the Switch at the top of the web page by simply clicking on a port. To view this window, click Monitoring >...
  • Page 369 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 11-7 RX Packets Analysis window (table for Unicast, Multicast, and Broadcast Packets) The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. Port Use the drop-down menu to choose the port that will display statistics.
  • Page 370 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 11-8 Transmitted (TX) window (for Bytes and Packets) Click the View Table link to display the information in a table rather than a line graph. Figure 11-9 TX Packets Analysis window (table for Bytes and Packets)
  • Page 371 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The fields that can be configured are described below: Parameter Description Unit Select the unit you wish to configure. Port Use the drop-down menu to choose the port that will display statistics. Time Interval Select the desired setting between 1s and 60s, where "s"...
  • Page 372 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 11-10 Received (RX) window (for errors) Click the View Table link to display the information in a table rather than a line graph. Figure 11-11 RX Error Analysis window (table) The fields that can be configured are described below:...
  • Page 373 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description Unit Select the unit you wish to configure. Port Use the drop-down menu to choose the port that will display statistics. Time Interval Select the desired setting between 1s and 60s, where "s" stands for seconds. The default value is one second.
  • Page 374 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 11-12 Transmitted (TX) window (for errors) Click the View Table link to display the information in a table rather than a line graph. Figure 11-13 TX Error Analysis window (table) The fields that can be configured are described below: Parameter Description...
  • Page 375: Packet Size

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Unit Select the unit you wish to configure. Port Use the drop-down menu to choose the port that will display statistics. Time Interval Select the desired setting between 1s and 60s, where "s" stands for seconds. The default value is one second.
  • Page 376 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 11-14 Packet Size window Click the View Table link to display the information in a table rather than a line graph. Figure 11-15 RX Size Analysis window (table) The fields that can be configured are described below:...
  • Page 377: Mirror

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description Unit Select the unit you wish to configure. Port Use the drop-down menu to choose the port that will display statistics. Time Interval Select the desired setting between 1s and 60s, where "s" stands for seconds. The default value is one second.
  • Page 378 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 11-16 Port Mirror Settings window The fields that can be configured are described below: Parameter Description Mirror Global State Click the radio buttons to enable or disable the Port Mirroring feature. Group ID (1-4) Enter a mirror group ID.
  • Page 379: Rspan Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide NOTE: You cannot mirror a fast port onto a slower port. For example, if you try to mirror the traffic from a 100 Mbps port onto a 10 Mbps port, this can cause throughput problems. The port you are copying frames from should always support an equal or lower speed than the port to which you are sending the copies.
  • Page 380: Sflow

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 11-19 RSPAN Settings – Modify window The fields that can be configured are described below: Parameter Description Source Ports If the ports are not specified by option, the source of RSPAN will come from the source specified by the mirror command or the flow-based source specified by an ACL.
  • Page 381: Sflow Analyzer Server Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameter Description sFlow State Click the radio buttons to enable or disable the sFlow feature. Click the Apply button to accept the changes made. sFlow Analyzer Server Settings The Switch can support 4 different Analyzer Servers at the same time and each sampler or poller can select a collector to send the samples.
  • Page 382: Sflow Flow Sampler Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Click the Delete button to remove the specific entry. sFlow Flow Sampler Settings On this page the user can configure the sFlow flow sampler parameters. By configuring the sampling function for a port, a sample packet received by this port will be encapsulated and forwarded to the analyzer server at the specified interval.
  • Page 383: Ping

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide To view this window, click Monitoring > sFlow > sFlow Counter Poller Settings as shown below: Figure 11-23 sFlow Counter Poller Settings The fields that can be configured are described below: Parameter Description Unit...
  • Page 384: Ping Test

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Ping Test Ping is a small program that sends ICMP Echo packets to the IP address you specify. The destination node then responds to or “echoes” the packets sent from the Switch. This is very useful to verify connectivity between the Switch and other nodes on the network.
  • Page 385: Trace Route

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide remote host. Click the Start button to initiate the Ping Test. After clicking the Start button, the following page will appear: Figure 11-26 Ping Test Result window Click the Stop button to halt the Ping Test.
  • Page 386: Peripheral

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide IPv4 Address / IPv6 IP address of the destination station. Address Domain Name The domain name of the destination end station. TTL (1-60) The time to live value of the trace route request. This is the maximum number of routers that a trace route packet can pass.
  • Page 387: External Alarm Settings

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 11-29 Device Environment window Click the Refresh button to refresh the display table. External Alarm Settings On this page, the user can configure the external alarm message for a channel. The source for the alarm is located on the front panel of the Switch.
  • Page 388: Chapter 12 Save And Tools

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Chapter 12 Save and Tools Save Configuration / Log Stacking Information Download Firmware Upload Firmware Download Configuration Upload Configuration Upload Log File Reset Reboot System Save Configuration / Log To view this window, click Save >...
  • Page 389 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The number of switches in the switch stack (up to 12 total) are displayed next to the Tools drop-down menu. The icons are in the same order as their respective Unit numbers, with the Unit 1 switch corresponding to the icon in the upper left-most corner of the icon group.
  • Page 390: Download Firmware

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Download Firmware The following window is used to download firmware for the Switch. Download Firmware from TFTP This window allows the user to download firmware from a TFTP Server to the Switch and updates the switch. Figure 12-5 Download Firmware from TFTP window The fields that can be configured are described below: Parameter...
  • Page 391: Download Firmware From Http

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide The fields that can be configured are described below: Parameter Description Unit Use the drop-down menu to select a unit for receiving the firmware. Select All for all units.
  • Page 392: Upload Firmware To Rcp

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 12-8 Upload Firmware to TFTP window The fields that can be configured are described below: Parameter Description Unit Use the drop-down menu to select a unit for uploading the firmware. TFTP Server IP Enter the TFTP server IP address used.
  • Page 393: Download Configuration

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 12-10 Upload Firmware to FTP window The fields that can be configured are described below: Parameter Description Unit Use the drop-down menu to select a unit for uploading the firmware. Source File Enter the location and name of the Source File.
  • Page 394: Download Configuration From Rcp

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Download Configuration from RCP This window allows the user to download the configuration file from a RCP Server to the Switch and updates the switch. Figure 12-12 Download Configuration from RCP window The fields that can be configured are described below: Parameter Description...
  • Page 395: Upload Configuration

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Upload Configuration The following window is used to upload the configuration file from the Switch. Upload Configuration to TFTP This window allows the user to upload the configuration file from the Switch to a TFTP Server. Figure 12-14 Upload Configuration File to TFTP window The fields that can be configured are described below: Parameter...
  • Page 396: Upload Configuration To Http

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 12-15 Upload Configuration to RCP window The fields that can be configured are described below: Parameter Description Unit Use the drop-down menu to select a unit for uploading the configuration file. RCP Server IP Enter the RCP Server IP Address used.
  • Page 397: Upload Log File

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Upload Log File The following window is used to upload the log file from the Switch. Upload Log to TFTP This window allows the user to upload the log file from the Switch to a TFTP Server. Figure 12-17 Upload Log –...
  • Page 398: Upload Log To Http

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Log Type Select the type of log to be transferred. Selecting the Common Log option here will upload the common log entries. Selecting the Attack Log option here will upload the log concerning attacks.
  • Page 399: Reboot System

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Reboot System The following window is used to restart the Switch. Figure 12-21 Reboot System Window Selecting the Yes radio button will instruct the Switch to save the current configuration to non-volatile RAM before restarting the Switch.
  • Page 400: Appendix Section

    IP address is known. However, this protocol is vulnerable because crackers can spoof the IP and MAC information in the ARP packets to attack a LAN (known as ARP spoofing). This document is intended to introduce the ARP protocol, ARP spoofing attacks, and the countermeasures brought by D-Link’s switches to thwart ARP spoofing attacks.
  • Page 401 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 3 - Ethernet Frame Format When the switch receives the frame, it will check the “Source Address” in the Ethernet frame’s header. If the address is not in its Forwarding Table, the switch will learn PC A’s MAC and the associated port into its Forwarding Table.
  • Page 402 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Figure 6 - ARP Payload When PC B replies to the query, the “Destination Address” in the Ethernet frame will be changed to PC A’s MAC address. The “Source Address” will be changed to PC B’s MAC address (see Figure 7). Figure 7 - Ethernet Frame Format The switch will also examine the “Source Address”...
  • Page 403: How Arp Spoofing Attacks A Network

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide How ARP Spoofing Attacks a Network ARP spoofing, also known as ARP poisoning, is a method to attack an Ethernet network which may allow an attacker to sniff data frames on a LAN, modify the traffic, or stop the traffic altogether (known as a Denial of Service –...
  • Page 404: Prevent Arp Spoofing Using Packet Content Acl

    Prevent ARP Spoofing using Packet Content ACL D-Link managed switches can effectively mitigate common DoS attacks caused by ARP spoofing via a unique Package Content ACL. Figure 13 – Network with Packet Content ACL...
  • Page 405: Configuration

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide For the reason that basic ACL can only filter ARP packets based on packet type, VLAN ID, Source, and Destination MAC information, there is a need for further inspections of ARP packets. To prevent ARP spoofing attack, we will demonstrate here via using Packet Content ACL on the Switch to block the invalid ARP packets which contain faked gateway’s MAC and IP binding.
  • Page 406 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Command Description Step 1: create access_profile profile_id 1 Create access profile 1 to match Ethernet Type and profile_name 1 ethernet source_mac Source MAC address. FF-FF-FF-FF-FF-FF ethernet_type Step 2: config access_profile profile_id 1 Configure access profile 1 add access_id 1 ethernet source_mac...
  • Page 407: Appendix B Password Recovery Procedure

    This document will explain how the Password Recovery feature can help network administrators reach this goal. The following steps explain how to use the Password Recovery feature on D-Link devices to easily recover passwords.
  • Page 408: Appendix C System Log Entries

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Appendix C System Log Entries The following table lists all possible entries and their corresponding meanings that will appear in the System Log of this Switch. Category Log Description Severity Note...
  • Page 409 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Log Message: DHCPv6 client on interface <ipif-name> changed state to [enabled | disabled]. Parameters description: <ipif-name>: Name of the DHCPv6 client interface. Event description: DHCPv6 client obtains an ipv6 address from a DHCPv6 Informational server.
  • Page 410 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide macaddr : Represent client MAC address. Event description: Firmware upgrade unsuccessfully. warning Log Message: [RCP(2):] [Unit <unitID>,] Firmware upgrade by <session> unsuccessfully. (Username: <username>, IP: <ipaddr>, MAC: <macaddr>) Parameters description: unitID: Represent the id of the device in the stacking system.
  • Page 411 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide username: Represent current login user. ipaddr: Represent client IP address. macaddr : Represent client MAC address. Event description: The downloaded configurations executed successfully. informational Log Message: [RCP(11):]The downloaded configurations executed by <session>...
  • Page 412 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Event description: Configuration successfully downloaded. informational Log Message: [TFTP(5):]Configuration successfully downloaded by <session> (Username: <username>, IP: <ipaddr>, MAC: <macaddr>) Parameters description: session: The user’s session. Username: Represent current login user. Ipaddr: Represent client IP address.
  • Page 413 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide our device. unitID: 1.Interger value;2.Represent the id of the device in the stacking system. portNum: 1.Interger value;2.Represent the logic port number of the device. ipif_name: The name of the interface of the switch which has the conflic IP address.
  • Page 414 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Event description: Ingress bandwidth assigned from RADIUS server after Informational RADIUS client is authenticated by RADIUS server successfully .This Ingress bandwidth will be assigned to the port. Log Message: RADIUS server <ipaddr>...
  • Page 415 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide device class: <deviceClass>) Parameters description: portNum: The port number. chassisType: chassis ID subtype. Value list: 1. chassisComponent(1) 2. interfaceAlias(2) 3. portComponent(3) 4. macAddress(4) 5. networkAddress(5) 6. interfaceName(6) 7.
  • Page 416 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide unitID: the unit ID portNum: port number Stacking Event description: Hot insertion. Informational Log Message: Unit: <unitID>, MAC: <macaddr> Hot insertion. Parameters description: unitID: Box ID. Macaddr: MAC address. Event description: Hot removal.
  • Page 417 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide username: The use name that used to login SSL server. ipaddr: The IP address of SSL client. Event description: Login failed through Web(SSL). Warning Log Message: Login failed through Web(SSL) (Username: <username>, IP: <ipaddr>).
  • Page 418 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide username: user name. ipv6address: IPv6 address. Event description: SSH server is enabled. Informational Log Message: SSH server is enabled Event description: SSH server is disabled. Informational Log Message: SSH server is disabled Event description: Authentication Policy is enabled.
  • Page 419 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Log Message: WAC unauthenticated user (User Name: <string>, IP: <ipaddr | ipv6address>, MAC: <macaddr>, Port: <[unitID:]portNum>) Parameters description: string: User name ipaddr: IP address ipv6address: IPv6 address macaddr: MAC address unitID: The unit ID portNum : The port number...
  • Page 420 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Parameters Description: portNum: The port number. vlanID: the VLAN ID number. Event Description: The number of VLAN in which loop back occurs hit the Informational specified number. Log Message: Loop VLAN number overflow.
  • Page 421 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide portNum: The port number. Event description: Multicast storm occurrence. Warning Log Message: Port <portNum> Multicast storm is occurring. Parameters description: portNum: The port number. Event description: Multicast Storm cleared. Informational Log Message: Port <portNum>Multicast storm has cleared.
  • Page 422 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide portNum:Port ID/ old_role: Old role new_status:New role Event description: Spannnig Tree instance created. Informational Log Message: Spanning Tree instance created. Instance:<InstanceID> Parameters description: InstanceID: Instance ID. Event description: Spannnig Tree instance deleted. Informational Log Message: Spanning Tree instance deleted.
  • Page 423 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide unitID: Represents the ID of the device in the stacking system. portNum: Represents the logical port number of the MEP. mepdirection: Represents the MEP direction, which can be "inward" or "outward".
  • Page 424 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Log Message: Port <port> link up, <nway> Parameters description: port: Represents the logical port number. nway: Represents the speed and duplex of link. Event description: port linkdown Informational Log Message: Port <port>...
  • Page 425: Appendix D Trap Entries

    xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Appendix D Trap Entries This table lists the trap logs found on the Switch. Category Trap Name Description MAC-based Access SwMacBasedAccessControlLoggedSu The trap is sent when a MAC-based Access Control 1.3.6.1.4.1.171.12.35.11 Control ccess...
  • Page 426 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide (4) agentGratuitousARPInterfaceName Stacking swUnitInsert Unit Hot Insert notification. 1.3.6.1.4.1.171.12.11.2. Binding objects: 2.1.0.1 (1) swUnitMgmtId. (2) swUnitMgmtMacAddr. swUnitRemove Unit Hot Remove notification. 1.3.6.1.4.1.171.12.11.2. Binding objects: 2.1.0.2 (1) swUnitMgmtId. (2) swUnitMgmtMacAddr.
  • Page 427 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide Screening The same illegal DHCP server IP address 0.0.1 detected is just sent once to the trap receivers within the log ceasing unauthorized duration. Binding objects: (1) swFilterDetectedIP (2) swFilterDetectedport Traffic Control swPktStormOccurred...
  • Page 428 xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch Web UI Reference Guide (3) ifOperStatus MAC Notification swL2macNotification This trap indicates the MAC addresses variation in 1.3.6.1.4.1.171.11.119. address table X.2.100.1.2.0.1 (X: Binding objects: model ID) (1)swL2macNotifyInfo SNMP authenticationFailure An authenticationFailure trap signifies that the 1.3.6.1.6.3.1.1.5.5 SNMP entity has received a protocol message that is not properly authenticated.

This manual is also suitable for:

Xstack dgs-3420-28sc

Table of Contents