Allied Telesis AT-8700XL SERIES User Manual
Allied Telesis AT-8700XL SERIES User Manual

Allied Telesis AT-8700XL SERIES User Manual

Hide thumbs Also See for AT-8700XL SERIES:
Table of Contents

Advertisement

Quick Links

AT-8700XL SERIES SWITCH
USER GUIDE
Software Release 2.6.1

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the AT-8700XL SERIES and is the answer not in the manual?

Questions and answers

Subscribe to Our Youtube Channel

Summary of Contents for Allied Telesis AT-8700XL SERIES

  • Page 1 AT-8700XL SERIES SWITCH USER GUIDE Software Release 2.6.1...
  • Page 2 AT-8700XL Series Switch User Guide for Software Release 2.6.1 Document Number C613-02030-00 REV B. Copyright © 2003 Allied Telesyn International Corp. 19800 North Creek Parkway, Suite 200, Bothell, WA 98011, USA. All rights reserved. No part of this publication may be reproduced without prior written permission from Allied Telesyn.
  • Page 3: Table Of Contents

    Why Read this User Guide? ................5 Where To Find More Information ..............6 Technical support ....................7 Features of the AT-8700XL Series Switch ............7 Warning about FLASH memory ................. 9 Getting Started with the Command Line Interface (CLI) CHAPTER 2 This Chapter ....................
  • Page 4 AT-8700XL Series Switch User Guide SNMP and MIBs ....................61 For More About Operations and Facilities ............62 Switching CHAPTER 5 Switch Ports ....................63 Virtual Local Area Networks (VLANs) ............... 65 Generic VLAN Registration Protocol (GVRP) ............. 68 Quality of Service .................... 68 Spanning Tree Protocol (STP) ................
  • Page 5: Chapter 1 Introduction

    Layer 2 and Layer 3 switching with Quality of Service (QoS) features such as traffic classifiers and bandwidth limiting. This guide introduces the AT-8700XL Series Switch and will guide you through the most common uses and applications of your new switch. Getting started will not take long—many applications are set up in just a few minutes.
  • Page 6: Where To Find More Information

    Safety and Statutory Information booklet. Follow the Quick Install Guides’ step-by-step instructions for physically installing the switch and any expansion options. The AT-8700XL Series Hardware Reference gives detailed information about the equipment hardware. The context-sensitive online GUI help gives descriptions of each page and element of the GUI.
  • Page 7: Technical Support

    Information about other Allied Telesyn routing and switching products. Technical support For online support for your AT-8700XL Series Switch, see our on-line support page at http://www.alliedtelesyn.co.nz/support/at8700xl. This site contains the latest switch software releases, patches, GUI resource files and documentation. Download software upgrades from the Allied Telesyn web site to your server, and the use the LOAD command to copy them to the switch’s FLASH memory.
  • Page 8: Management Features

    ■ An HTTP client that allows the direct download of files from a web server to the switch’s FLASH memory. For complete descriptions of these software features, see the AT-8700XL Series Software Reference. Layer 3 and Other Features AT-8700XL Series Advanced Fast Ethernet Switches provide efficient and cost- effective switching, terminal serving and integrated network management over LANs.
  • Page 9: Warning About Flash Memory

    Introduction ■ OSPF and IP RIP routing protocols. ■ ARP, Proxy ARP and Inverse ARP address resolution protocols. ■ Sophisticated packet filtering. ■ Terminal serving using Telnet, with local host nicknames. ■ Integration with a Public Key Infrastructure (PKI). ■ Virtual Router Redundancy Protocol (VRRP).
  • Page 11: Chapter 2 Getting Started With The Command Line Interface (Cli)

    Chapter 2 Getting Started with the Command Line Interface (CLI) This Chapter This chapter describes how to access the switch’s CLI, and provides basic information about configuring the switch, including how to: ■ Physically connect a terminal or PC to the switch (see “Connecting a Terminal or PC”...
  • Page 12: Connecting A Terminal Or Pc

    For instructions on how to configure HyperTerminal, see the AT-8700XL Series Hardware Reference. To start a terminal session, connect to the switch in one of the following ways: ■...
  • Page 13: Logging In

    SET ASYN command. See the switch’s online help or the Interfaces chapter in the AT-8700XL Series Software Reference for more information on how to configure the asynchronous port.
  • Page 14: Assigning An Ip Address

    For more information about switch ports and Virtual LANs (VLANs), see Chapter 5, Switching in this document, and the Switching chapter in the AT-8700XL Series Software Reference. For more information about IP addressing and switching, see Chapter 5, Switching in this document, and the Internet Protocol (IP) chapter in the AT-8700XL Series Software Reference.
  • Page 15: Setting Routes

    To displays the entire routing table, including both static and dynamic routes, enter the command: SHOW IP ROUTE For more information about setting IP routes, see the Internet Protocol (IP) chapter in the AT-8700XL Series Software Reference. Software Release 2.6.1 C613-02030-00 REV B...
  • Page 16: Changing A Password

    Make sure you remember the new password created as you cannot retrieve a lost password. Recovery of access to the switch is complex. Once you have logged into the manager account you are able to enter commands from this guide and from the AT-8700XL Series Software Reference.
  • Page 17: Using The Commands

    Using the Commands You control the switch with commands described in this document and in the AT-8700XL Series Software Reference. While the keywords in commands are not case sensitive, the values entered for some parameters are (especially passwords). The switch supports command line editing and recall. Command line editing functions and keystrokes are shown in Table 2 on page 17.
  • Page 18: Getting Command Line Help

    AT-8700XL Series Switch User Guide Getting Command Line Help Online help is available for all switch commands. A multilingual, language- independent online help facility provides help information via the command: HELP [topic] If a topic is not specified, a list of available topics is displayed. The HELP command displays information from the system help file stored in FLASH memory.
  • Page 19 Getting Started with the Command Line Interface (CLI) In Australia only: to use the Micro service, SET SYSTEM LOCATION=australia; to use the OnRamp service, SET SYSTEM LOCATION=europe. System name, location and contact parameters can help a remote network administrator identify the switch. By convention the system name is the full domain name.
  • Page 21: Chapter 3 Getting Started With The Graphical User Interface (Gui)

    Chapter 3 Getting Started with the Graphical User Interface (GUI) This Chapter This chapter describes how to access the switch’s HTTP-based Graphical User Interface (GUI), and provides basic information about using the GUI, including: ■ What is the GUI? • an introduction to the Graphical User Interface ■...
  • Page 22: What Is The Gui

    AT-8700XL Series Switch User Guide What is the GUI? The GUI (Graphical User Interface) is a web-based device management tool, designed to make it easier to configure and monitor the switch. The GUI provides an alternative to the CLI (Command Line Interface). Its purpose is to make complicated tasks simpler and regularly performed tasks quicker.
  • Page 23 Getting Started with the Graphical User Interface (GUI) To enable JavaScript in Netscape 6.2.x: From the Edit menu, select Preference Select the Advanced menu option. Ensure that the “Enable JavaScript for Navigator” checkbox is checked. The minimum screen resolution on the PC is 800x600. HTTP Proxy Servers An HTTP proxy server provides a security barrier between a private network’s PCs and the Internet.
  • Page 24: Establishing A Connection To The Switch

    Establishing a Connection to the Switch Before you start, consider how the switch fits into your network. If you are installing a new switch, consider whether you want to configure it before deploying it into the LAN, or want to configure it in situ. If you want to access a switch that has already been configured, consider the relative positions of the PC and the switch.
  • Page 25 Getting Started with the Graphical User Interface (GUI) Option 1: Configuring the Switch before Installation Use this procedure if: ■ You want to configure the switch before installing it in your LAN. ■ You will be installing the switch at a remote office or a customer site and want to configure it first.
  • Page 26 AT-8700XL Series Switch User Guide At the login prompt, enter the user name and password The default username is manager: User Name: manager Password: friend The System Status page is displayed (Figure 6 on page 31). Select options from the sidebar menu to configure and manage the switch.
  • Page 27 Getting Started with the Graphical User Interface (GUI) You can browse to the switch through any VLAN, as long as you give that VLAN an IP address (see below). These instructions assume you will use vlan1. The switch ports all belong to vlan1 by default.
  • Page 28 For secure access, point your web browser to https://ip-address where ip-address is the interface’s IP address. 11. At the login prompt, enter the user name and password The default username is manager: User Name: manager Password: friend The System Status page is displayed (see Figure 6 on page 31). Select options from the sidebar menu to configure and manage the switch.
  • Page 29: Secure Access

    Getting Started with the Graphical User Interface (GUI) At the login prompt, enter the user name and password The default username is manager: User Name: manager Password: friend The System Status page is displayed (see Figure 6 on page 31). Select options from the sidebar menu to configure and manage the switch.
  • Page 30 AT-8700XL Series Switch User Guide To set the switch’s distinguished name to "cn=switch1,o=my_company,c=us", use the command: SET SYSTEM DISTINGUISHEDNAME="cn=switch1, o=my_company,c=us" Set the UTC offset. To set the Universal Coordinated Time to inform the switch that the difference between local time and GMT is 7 hours, use the command: SET LOG UTCOFFSET=7 Create a self-signed certificate for the switch.
  • Page 31: System Status

    Getting Started with the Graphical User Interface (GUI) System Status The GUI opens to display the System Status page. Figure 6 points out key information contained on the page. Figure 6: The System Status page Model name Software release Help, Save and Exit Sidebar menu Port status System status...
  • Page 32: Using The Gui: Navigation And Features

    AT-8700XL Series Switch User Guide Using the GUI: Navigation and Features The GUI consists of a large number of pages, which you navigate between using the menu on the left of the browser window. This section describes how to use the GUI, and gives an overview of its functionality.
  • Page 33 Getting Started with the Graphical User Interface (GUI) To modify an existing item, select it by clicking on the option button at the beginning of its entry in the selection table. Then click the Modify button. This opens the popup “modify” page, which lets you expand or change the configuration (for example, change the Hello interval for a PIM interface;...
  • Page 34 AT-8700XL Series Switch User Guide Figure 9: An example of a popup “modify” page Non-editable field Editable Fields GUI pages allow you to enter values or select options through a range of field types. These include: • text fields, to enter character strings or numbers, especially for fields where there are few limits on the entries (such as names).
  • Page 35: The Management Menu

    Getting Started with the Graphical User Interface (GUI) Ports Graphic Pages on which you can select switch ports use a Ports graphic - a visual representation of the switch ports.To toggle through the selection options, click on the icon representing the port you want to select or deselect. Apply Button An Apply button applies the configuration settings on the page or the section of the page.
  • Page 36: Changing The Password

    AT-8700XL Series Switch User Guide The Monitoring Menu When you browse to the GUI, the sidebar menu opens to display the monitoring menu, opened at the System > Status. From this menu, you can also check: • information about the switch’s hardware •...
  • Page 37: Saving Configuration Entered With The Gui

    Getting Started with the Graphical User Interface (GUI) Context Sensitive GUI Help The GUI’s context-sensitive help system is displayed in a pop-up window which covers the title of the GUI page. You can move the banner to any part of your screen and/or resize it.
  • Page 38: Upgrading The Gui

    AT-8700XL Series Switch User Guide Upgrading the GUI You can download the latest GUI resource file from the support site at http://www.alliedtelesyn.co.nz/support/at8700xl. Before you start, ensure that the switch is running the most recent release and patch files. The GUI is not part of the firmware release file, but the most recent resource file will generally only be compatible with the most recent software release.
  • Page 39: Troubleshooting

    Getting Started with the Graphical User Interface (GUI) When the switch has loaded the file into its RAM, it displays the message “File transfer successfully completed”. It then writes the file to FLASH memory, which takes approximately 30 seconds after the message. Once the file has been copied to FLASH, you can enter commands that refer to it.
  • Page 40: Deleting Temporary Files

    AT-8700XL Series Switch User Guide Deleting Temporary Files Browsers store local copies of web pages as temporary files. If you upgrade to a new GUI resource file, or if you encounter problems in browsing to the GUI, you may need to delete these files (clear the cache). To clear the cache in Internet Explorer: From the Tools menu, select Internet Options.
  • Page 41: Traffic Flow

    Getting Started with the Graphical User Interface (GUI) Problem The GUI is behaving inconsistently, or you cannot access some pages. ■ Solution Delete your browser’s temporary files (see “Deleting Temporary Files” on page 40) and try again. ■ Check that you are trying to access the GUI from a supported operating system and browser combination.
  • Page 42: Ip Addresses And Dhcp

    AT-8700XL Series Switch User Guide IP Addresses and DHCP Problem The switch is enabled as a DHCP server, but cannot assign an IP address to a host. ■ Solution Reboot the host machine. ■ Check the host’s TCP/IP settings, to make sure that the host is set to obtain its IP address dynamically: In Windows 95/98, click Settings >...
  • Page 43: Loading Software

    Getting Started with the Graphical User Interface (GUI) Loading Software Problem You have attempted to load a new release file onto the switch, but the load has failed and you cannot access the switch through the GUI. Solution Access the switch’s CLI (see “Connecting a Terminal or PC” on page 12). If the switch has been switched off or has rebooted since you attempted to load the release file, it will boot up with the default installation.
  • Page 45: This Chapter

    Chapter 4 Operating the switch This Chapter This chapter introduces basic operations on the switch, including: ■ “User Accounts and Privileges” on page 45 ■ “Normal Mode and Security Mode” on page 47 ■ “Remote Management” on page 49 ■ “Storing Files in FLASH Memory”...
  • Page 46 AT-8700XL Series Switch User Guide In normal mode, a user with manager privilege can create and delete accounts for users with any of these privilege levels. Users and passwords are managed by the User Authentication Facility. Users and passwords are authenticated...
  • Page 47: Normal Mode And Security Mode

    Operating the switch See the Operations chapter in the AT-8700XL Series Software Reference for: ■ More information about managing and using accounts with user, manager and security officer privileges ■ A full list of commands that require security officer privilege when the switch is in secure mode ■...
  • Page 48 AT-8700XL Series Switch User Guide mode are listed in the Operation chapter in the AT-8700XL Series Software Reference. Table 5: Commands requiring SECURITY OFFICER privilege when the switch is operating in security mode . Command Specific Parameters ACTIVATE SCR ADD IP INT...
  • Page 49: Remote Management

    For more information about working with files see the Working With Files section, Operation chapter, AT-8700XL Series Software Reference. To display the files in FLASH, enter the command: SHOW FILE Software Release 2.6.1...
  • Page 50: Using Scripts

    For more information about how to create and run scripts, see the Scripting chapter in the AT-8700XL Series Software Reference. For information about creating triggers, see the Trigger Facility chapter in the AT-8700XL Series Software Reference.
  • Page 51: Storing Multiple Scripts

    Manually edit a configuration file using the switch’s built in editor (see “Using the Built-in Editor” on page 60), or upload it to a PC using the UPLOAD command (see the Operation chapter, AT-8700XL Series Software Reference), edit it using any text editor, and download it again. Give configuration script files an extension of .scp...
  • Page 52: Loading And Uploading Files

    AT-8700XL Series Switch User Guide Loading and Uploading Files When you want to upgrade your switch to a new software patch or release, or use a new configuration file, load files onto the switch using the switch’s LOADER module. You can also use the LOADER module to upload files, such as configuration files or log files, from the switch onto a host on the network.
  • Page 53: Loading Files

    Lightweight Directory Access Protocol (LDAP) to load PKI certificates or certificate revocation lists (CRLs), see the Operation chapter in the AT-8700XL Series Software Reference. The switch’s default download method is TFTP. To load a file onto the switch...
  • Page 54: Setting Loader Defaults

    DEFAULT. For more information about setting the LOADER defaults on your switch, see the Operations chapter in the AT-8700XL Series Software Reference. Example: Load a Patch File Using HTTP This example loads a patch file onto the switch from a HTTP server on the network.
  • Page 55: More Information

    More information For more information about loading files onto and uploading files from the switch, including using LDAP to load PKI certificate information, see the Operation chapter in the AT-8700XL Series Software Reference. Software Release 2.6.1 C613-02030-00 REV B...
  • Page 56: Upgrading Switch Software

    Make sure you download a patch or release file that matches your switch model. A patch or release file for an AT-8700XL Series Switch has 87 as the first two digits of the filename. Patch files have the file extension and release .paz...
  • Page 57 SHOW INSTALL For more information about INSTALL commands, see the Operations chapter in the AT-8700XL Series Software Reference. Example: Upgrade to a New Software Release Using TFTP This example assumes the switch is correctly configured to allow TFTP to function.
  • Page 58 AT-8700XL Series Switch User Guide Wait for the release to load. This can take several minutes, even if you are loading the file over a high speed link. To see the progress of the load, enter the command: SHOW LOAD...
  • Page 59 Operating the switch Example: Upgrade to a new patch file Use this procedure to upgrade the software release currently running on the switch with a new patch. This example assumes that the Software Release 2.6.1 is set as the preferred release. The patch name is this example is 87261-01.paz To upgrade to a new patch file: Load the new patch file onto the switch.
  • Page 60: Using The Built-In Editor

    AT-8700XL Series Switch User Guide Using the Built-in Editor The AT-8700XL Series Switch has a built-in full-screen text editor for editing script files stored on the switch file subsystem. Using the text editor you can run script files manually, or set script files to run automatically at switch restart, or on trigger events.
  • Page 61: Snmp And Mibs

    “eth0”. For more information see the Simple Network Management Protocol (SNMP) chapter and the Interfaces chapter in the AT-8700XL Series Software Reference. To display the current state and configuration of the SNMP agent, enter the...
  • Page 62: For More About Operations And Facilities

    AT-8700XL Series Switch User Guide For More About Operations and Facilities For more detail about operating the switch, and for full command syntax definitions, see the Operation chapter in the AT-8700XL Series Software Reference, including: ■ How to use the User Authentication Facility, RADIUS, TACACs or TACACS+ for authenticating users who log on to the switch, and ensuring that only authorised login accounts are used.
  • Page 63: Chapter 5 Switching

    This section outlines the Layer 2 and IP switching features on the switch, and how to configure some of them. For more detail, refer to the Switching and Internet Protocol (IP) chapters in the AT-8700XL Series Switch Software Reference. Switch Ports Each switch port is uniquely identified by a port number.
  • Page 64: Port Trunking

    AT-8700XL Series Switch User Guide Resetting ports at the hardware level discards all frames queued for reception or transmission on the port, and restarts autonegotiation of port speed and duplex mode. Ports are reset using the command: RESET SWITCH PORT={port-list|ALL} [COUNTER]...
  • Page 65: Virtual Local Area Networks (Vlans)

    Switching addresses. One of the following options can be specified for the action taken when an unknown MAC address is detected on a locked port: ■ Discard the packet and take no further action, ■ Discard the packet and notify management with an SNMP trap, ■...
  • Page 66: Creating Vlans

    AT-8700XL Series Switch User Guide Creating VLANs To briefly summarise the process of creating a VLAN: Create the VLAN. Add tagged ports to the VLAN, if required. Add untagged ports to the VLAN, if required. To create a VLAN, use the command: CREATE VLAN=vlan-name VID=2..255...
  • Page 67: Summary Of Vlan Tagging Rules

    Switching can be enabled for a specified time, disabled, and displayed using the commands: ENABLE VLAN={vlan-name|1..255|ALL} DEBUG={PKT|ALL} [OUTPUT=CONSOLE] [TIMEOUT={1..4000000000|NONE}] DISABLE VLAN={vlan-name|1..255|ALL} DEBUG={PKT|ALL} SHOW VLAN DEBUG To view packet reception and transmission counters for a VLAN, use the command (see the Interfaces chapter of the switch’s Software Reference): SHOW INTERFACE=VLANn COUNTER Summary of VLAN tagging rules When designing a VLAN and adding ports to VLANs, the following rules...
  • Page 68: Generic Vlan Registration Protocol (Gvrp)

    Classifying traffic into flows, according to a wide range of criteria. Classification is performed by the switch’s packet classifier and is not described in this chapter, but in the Classifier chapter in the AT-8700XL Series Switch Software Reference. Acting on these traffic flows.
  • Page 69: Ip Switching

    SHOW IP INTERFACE displays the interfaces enabled for IP routing (Figure 12). For detailed information about configuring IP, see the Internet Protocol (IP) chapter in the AT-8700XL Series Software Reference. Figure 12: Example output from the SHOW IP INTERFACE command. Interface...
  • Page 70: Routing Information Protocol (Rip)

    AT-8700XL Series Switch User Guide Routing Information Protocol (RIP) Routing protocols such as RIPv1 and RIPv2 can be enabled on a VLAN. For example, to enable RIPv2 on the admin VLAN, use the command: ADD IP RIP INTERFACE=vlan11 SEND=RIP2 RECEIVE=BOTH...
  • Page 71: Triggers

    For a full description of the Trigger Facility, see the Trigger Facility chapter in the AT-8700XL Series Software Reference. The switch can generate triggers to activate scripts when a fibre uplink port loses or gains coherent light.
  • Page 73: Chapter 6 Maintenance And Troubleshooting

    IP protocol (see “Using Trace Route for IP Traffic” on page 81). Information gained from the LEDs on the front panel of the switch is described in the AT-8700XL Series Hardware Reference.
  • Page 74: How The Switch Starts Up

    AT-8700XL Series Switch User Guide How the Switch Starts Up The sequence of operations that the switch performs when it boots are: Perform startup self tests. Perform the install override option. Load the EPROM release as the INSTALL boot. Inspect and check INSTALL information.
  • Page 75: How To Avoid Problems

    Maintenance and Troubleshooting Table 7: Switch startup sequence keystrokes. Pressing key... Forces the switch to... Load the EPROM release, with no patch, and skip straight to step 6. Start with the default configuration. Any boot script or NVS configuration is ignored. Configure from NVS, ignoring any boot script.
  • Page 76 AT-8700XL Series Switch User Guide Configure logging The logging facility stores log messages for events with a specified severity in a log file. You can change the size of the log file, and the kind of messages recorded. You can configure the switch to output log messages in several ways, including to a remote switch with a specified IP address, or as an email to a particular email address.
  • Page 77: What To Do If You Clear Flash Memory Completely

    Maintenance and Troubleshooting What to Do if You Clear FLASH Memory Completely DO NOT clear the FLASH memory completely. The software release files are stored in FLASH, and clearing it would leave no software to run the switch. If you accidentally do this, you will need to: Boot with default configuration.
  • Page 78: What To Do If Passwords Are Lost

    SHOW DEBUG ■ Depending on the problem, the support personnel may also ask you for the output from the following commands (see the Monitoring and Fault Diagnosis section in the Operations chapter, AT-8700XL Series Software Reference): SHOW EXCEPTION SHOW STARTUP...
  • Page 79: Resetting Switch Defaults

    Maintenance and Troubleshooting Resetting Switch Defaults To restart the switch at any time with no configuration, enter the command: RESTART SWITCH CONFIG=NONE has changed, to set it back to the default configuration by saving boot.cfg the default dynamic configuration to the file, enter the command: boot.cfg CREATE CONFIG=boot.cfg...
  • Page 80: Troubleshooting Ip Configurations

    AT-8700XL Series Switch User Guide If PING to the end destination fails, PING intermediate network addresses. If you can successfully PING some network addresses, and not others, you can deduce which link in the network is down. Note that if Network Address Translation (NAT) is configured on the remote switch, PINGing devices connected to it may give misleading information.
  • Page 81: Troubleshooting Dhcp Ip Addresses

    Each hop along the path between two systems responds with a TTL exceeded packet and from this the path is determined. For more information about trace route, see the Internet Protocol (IP) chapter in the AT-8700XL Series Software Reference.

Table of Contents