Syncom technology gm28p-500 User Manual

16/24 portpoe/4 port combo /2 port sfp managed switch

Advertisement

User Manual

16/24 PortPOE/4 Port Combo /2 Port SFP
Managed Switch
1

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the gm28p-500 and is the answer not in the manual?

Questions and answers

Summary of Contents for Syncom technology gm28p-500

  • Page 1: User Manual

    User Manual 16/24 PortPOE/4 Port Combo /2 Port SFP Managed Switch...
  • Page 2: Table Of Contents

    Index ………………..……………P.3 ABOUTTHIS MANUAL * ………………………….……………..P.4 CONTENTS * PART1 INTRODUCTION………………………………………..P.4 PART 2 HARDWARE DESCRIPTION………………………….…..P.4 PART 3 WEB CONFIGURATION………………………………...…P.4 PART 4 WEB MANAGEMENT……………………………………..P.4 PART 5 WEB MONITOR………………………………………..…..P.6 PART 6 WEB DIAGNOSTICS………………………………….…..P.7 PART 7 WEB MAINTENANCE…………………………….…..…..P.7 *Chapter 1 ……………….…..P.8 INTRODUCTION PART 1 INTRODUCTION FEATURES…………….………..…..P.9 PART 2 INTRODUCTION SPECIFICATIONS….…………..P.10...
  • Page 3: Aboutthis Manual

    ABOUT THIS MANUAL Purpose This manual gives specific information on how to operate and use the management functions of this switch. Audience This manual is intended for use by network administrators who are responsible for operating and maintaining network equipments; consequently, it assumes a basic network network knowledge of generalswitch functions, the Internet Protocol (IP), IEEE 802.3at/af Power over Ethernet...
  • Page 4: Contents

    CONTENTS REVISION HISTORY ABOUT THIS MANUAL CONTENTS FIGURES TABLES PART1INTRODUCTION Product Overview Features Specifications Performance Package Contents PART 2HARDWARE DESCRIPTION Physcial Dimensions / Weight Configuration Option Front Panel Menu Tree PART 3WEB CONFIGURATION Configuration System Information IP & Time LFront Panel LED Indicator Rear Panel Hardware Installation...
  • Page 5 Web Interface Power Reduction Ports Security Switch Password Auth Method SNMP System Communities Users Groups Views Access Network Ports Rate Limiters Access Control List Port Trunking Statics LACP Loop Protection Spanning Tree Bridge Settings Bridge Ports IPMC IGMP Snooping Basic Configuration VLAN Configuration Private VLANs PVLAN Membership...
  • Page 6: Part 5Web Monitor

    Port Classification Port Policing QoS Control List Storm Control Mirroring PART 5WEB MONITOR Monitor System Information CPU Load Detailed log Ports State Traffic Overview QoS Statistics QCL Status Detailed Statistics Security Network ACL Status RADIUS Overview RADIUS Details LACP System Status Port Status Port Statistics Loop Protection...
  • Page 7: Part 6Web Diagnostics

    VLANs VLAN Membership VLAN Port PART 6WEB DIAGNOSTICS Diagnostics Ping PART 7WEB MAINTENANCE Maintenance Restart Device Factory Defaults Software Upload Image Select Configuration Save Upload...
  • Page 8: Product Overview

    CHAPTER 1 INTRODUCTION This chapter provides an overview of thisPOEWeb Smart switch, and introduces thekey features and supported specificationsof thisPOEWeb Smart switches. PRODUCT OVERVIEW ThisPOE switch is aPOEWeb Smart switch equiped with 8-ports 10/100/1000BaseT(X) plus 2-ports gigabit SFP open slots. It provides a broad range of features for Layer2 switching and fully802.3at/afPOE/POE+ functions.
  • Page 9: Part1 Introduction

    PART 1 INTRODUCTION FEATURES Table 1. Features (continued) Authentication Telnet, Web - username/password Telnet - SSH SNMP v1/2c – Community strings SNMP version 3 – MD5 or SHA password Port-based 802.1X Port Limiting Input rate limiting per port(manual setting or ACL) Port Configuration Speed, Duplex mode, Flow control, MTU, Power saving mode...
  • Page 10: Specifications

    PART 2 INTRODUCTION SPECIFICATIONS SPECIFICATIONS Table 2, Specifications Standard IEEE 802.3at/af Power over Ethernet(POE/POE+) IEEE 802.3ad Link Aggregation IEEE 802.3x Flow Control IEEE 802.1x Port-based Network Access Control IEEE 802.1Q VLAN Tagging IEEE 802.1d Spanning Tree Protocol IEEE 802.1w Rapid Spanning Tree Protocol 8 integrated IEEE 802.3ab-compliant 10/100/1000BASE-T Ethernet MIBs...
  • Page 11: Package Contents

    PART 3 INTRODUCTION PACKAGE CONTENTS Before you start to install this switch, please verify your package that contains the following items:  OnePOEGigabit Ethernet Switch  One Power Cord  One User’s Manual (CD disk) Note: If any of these items is found missing or damaged, please contact your local supplier for replacement.
  • Page 12: Front Panel

    CHAPTER 2 HARDWARE DESCRIPTION This chapter primarily presents hardware of thePOE switch, physical dimenstions and functional overview would be described. PHYSICAL DIMENSION AND WEIGHT 263 x 160 x 44 mm (H x W x D) / 1.5kg FRONT PANEL The Front Panel of thePOE Web Smart Switch consists of8-port gigabit ethernet port and 2-port gigabit SFP open slot.
  • Page 13: Hardware Description

    PART 1 HARDWARE DESCRIPTION REAR PANEL REAR PANEL The 3-pronged power plug is placed at the rear panel of the Web Smart Switch right side show as below: HARDWARE INSTALLATION Theattachment with a PICTURE with Power cord, RJ45 cable, And SFP if needed. Then step1~4 to describe...
  • Page 14: Chapter 3

    CHAPTER 3 WEB MANAGEMENT This chapter provides the entire Web SmartPOE switch features, along with a detailed description of how to configure each feature via web interface. Initial Switch Configuration This part guides you to configure and manage this switch through the web interface.
  • Page 15: Web Management

    PART 1 WEB MANAGEMENT INITIAL SWITCH CONFIGURATION 5. After you login successfully, you will see the home page is displayed as shown below. The home page display the Menu Bar on the left side of the screen and show the front panel port states on the right side.
  • Page 16: Configuration Option

    WEB Interface Configuration OptionConfigurable parameters have seveal forms : text field, drop-down list, radio button and checkbox. Once you change the parameters, please make sure to click Save button to apply PART 2 WEB MANAGEMENT CONFIGURATION OPTION The following table provides the description of each button: Table.
  • Page 17: Ip & Time

    MENU TREEThere isa Menu Tree in the left side of Web management system with 4 categories: Configuration, Monitor, Diagnostic and Maintenance. The follow table has a breifly description of each tab. Table. MENU TREE Menu Descriptions Configuration System Information Configures system contact, name, location and timezone offset IP &...
  • Page 18 Table. MENU TREE (Continue) Menu Descriptions SNMP System Configures read-only and R/W community strings for SNMP v1/v2c, engine ID for SNMP v3, and trap parameters Communities Configures community strings Users Configures SNMP v3 users on this switch Groups Configures SNMP v3 groups Views Configures SNMP v3 views Access...
  • Page 19 Table. MENU TREE (Continue) Menu Descriptions Bridge Ports Configure CIST port, priority and path cost IPMC IGMP Snooping Basic Configuration Configures global and related port setting VLAN Configuration Configures IGMP snooping per VLAN group Configures total power supply and eachPOE port type(POE/POE++/disabled) VLANs VLAN Membership...
  • Page 20 for mirroring Monitor System Information Displays system contact, name, location, switch’s MAC address, system time, firmware version CPU load Displays CPU load by realtime SVG graph Displays logged message with selected level (Info, Warning, Error, All) Detailed Log Displays fully logged message Thermal Protection Shows the current port temperature and status...
  • Page 21 Table. MENU TREE (Continue) Menu Descriptions RADIUS Overview Displays the status of associated authentication RADIUS servers RADIUS Details Displays the traffic and status of each associated RADIUS server LACP System Status Displays each local port’s LACP information included Aggr ID, Partner system ID and Parter Port Status Displays each local port’s Key,...
  • Page 22: Configuration

    Table. MENU TREE (Continue) Menu Descriptions Groups Information Displays IGMP snooping groups information Displays total power consumption, PD class and power usage for each associated port VLANs VLAN Membership Show the port members for specific VLAN ID VLAN Port Shows the VLAN Port Status for Static user Diagnostics Ping...
  • Page 23 This chapter describes all of the configuration for thisPOE Web Smart Switch. System Information Using System Information page to set System Contact, Name, Location, Timezone offset LOCATION: ▼ Configuration ▼ System ■Information PARAMETERS: Items Description System Contact Administrator is responsible for this device ( Maximum Length:255 characters) System Name...
  • Page 24 IP & Time Using IP & Time page to Configure Static IP Address or DHCP client, and SNTP server LOCATION: ▼ Configuration ▼ System ■IP & Time PARAMETERS: Items Description DHCP Client Sets the checkbox in configured column to enable DHCP client or uncheck for static IP Address IP Address Address of the VLAN specified in the VLAN ID...
  • Page 25 WEB Interface To Configure Static IP address & DHCP Client enable/disable: A. Click Configuration/System/IP&Time B. Enable DHCP client vis set checkbox C. Specify the IP address, IP Mask, IP Router and SNTP Server IP address D. Click Renew button to renew IP Address under DHCP Client Enable mode E.
  • Page 26 Server Mode Enable or Disable remote system logging function Server Address Set IP address of remote system log server Syslog Level Choose the logging event level. Info:send info, Warnings, Errors. Warning:send Warnings and Errors Error:send Errors WEB Interface A. Click Configuration/System/Log B.
  • Page 27 LED Intensity Timers Time Time at which LED intensity is set Intensity LED Intensity (10 levels increase by 10%, 0%=LED off, 100%=LED full power) Maintenance On time at link change LED set full powr for a period of time(second) when a link change occurs.
  • Page 28 Using Port Configuration page to configure the detail parameters for each port. You can enable/disable each port and set port speed such as Auto, half-duplex, full-duplexfor 10Mbps, 100Mbps, 1Gbps and disabled. It also allows to set frame size , collision policy and Power control. LOCATION:...
  • Page 29 Mode happened. Restart:Restarts the backoff algorithm after 16 collision happened. Power There are 3 options for automatic power saving mode: Control ActiPHY:It will detect unused Ethernet ports on Network devices and power them down. PerfectReach:an intelligent algorithm that actively adjusts the power level needed based on cable length.
  • Page 30 Security You can configure user authentication for management access and control client access ports Password Using this Password page to change the administrator’s password. LOCATION: ▼ Configuration ▼ Security ▼ Switch ■ Password PARAMETERS: Items Description Old Password Insert the old password (Default is blank)
  • Page 31 New Password Inserts new password (Case sensitive, Maximum is 31 characters) Confirm New Re-types the same string as New Password Password field. WEB Interface A. Click Configuration/Security/Switch/User B. Enter Old Password, New Password, and Confirm New Password. C. Click Save to apply the setting. Security Auth Method Using Authentication Method Configuration page to...
  • Page 32 PARAMETERS: Items Description Client Specify the authentication Method for Administrator Authentication There are 3 options for Console and Method None:disablesaccess vis specified management interface Local:checks by password RADIUS:checks vis RADIUS Server Fallback This only works for Authentication Method =”RADIUS”. When Radius Server authentication fail, it will check by local password if fallback is checked WEB Interface...
  • Page 33 The switch supports SNMPv1, v2c and v3.It continously monitors the status of the switch hardware as well as the traffic passing through its’ ports. SNMP System Using the SNMP System Configuration page to configure SNMP settings, Community name, trap host and public traps as well as the throttle of SNMP, A SNMP manager must pass the authentication by identifying both community names, then it can access the MIB information...
  • Page 34 Trap Destination Specifies the IP Address of Address management PC/NB to get trap packets Trap Authentication Issues a notification message to Failure specified IP trap managers whenever of a SNMP request fails. Trap Link-up and Issues a notification message to Link-down specified IP trap managers whenever a port link is established or broken...
  • Page 35 C. In the SNMP Trap Configuration table, enable Trap mode to allow the switch to send SNMP traps. Specifies the trap version, trap community and IP Address of management PC/NB which will receive the trap messages. Select inform mode for SNMP v2c and SNMP v3 clients.
  • Page 36 LOCATION: ▼ Configuration ▼ Security ▼ Switch ▼ SNMP ■ Communities PARAMETERS: Items Description Community Specifies the community string to allow access the SNMP agent.(Range:1-32) Source IP Specifies the IP Address of the SNMP client Source Mask Specifies the subnet mask of the SNMP client WEB Interface To setup SNMP Community access string:...
  • Page 37 LOCATION: ▼ Configuration ▼ Security ▼ Switch ▼ SNMP ■ Users PARAMETERS: Items Description Engine ID The engine identifier for SNMP agent. (It is only available for SNMPv3) User Name The unique username for SNMP agent (Range:1-32 characters) Security Level There are 3 options: NoAuth, NoPriv:no authentication and encryption during the communication...
  • Page 38 D. Defines username, security level, authentication and privacy settings Click Save to apply the setting or Reset to restore the previous setting. Groups Using SNMPv3 Group Configuration page to configure SNMPv3 Group, it defines a specific SNMPv3 group and restricts assigned user’s access policy for read and write views.
  • Page 39 C. Select a Security Model( SNMPv1, SNMPv2c or User-based Security Model) D. Select a Security Name E. Enter a Group Name F. Click Save to apply the setting or Reset to restore the previous setting. Figure Views Using SNMPv3 View Configuration page to define the restricts access policy for specific MIB tree The default_view includes access ability for whole MIB tree.
  • Page 40 WEB Interface To setup SNMPv3 Views: A. ClickConfiguration/Security/Switch/SNMP/Views B. Click “Add new view” to create a new view C. Enter a View Name, Type and OID Subtree D. Click Save to apply the setting or Reset to restore the previous setting. Access Using SNMPv3 Access Configuration page to define the Access rights for portion of MIB tree.
  • Page 41 Auth,NoPriv:with authentication but no encryption during the cummunication Auth,Priv: with both authentication and encryption during the communication Read View Name Select View Name for Read Access Write View Name Select Write Name for Write Access WEB Interface To setup SNMPv3 Accesss: A.
  • Page 42 PARAMETERS: Items Description Port Port Number Policy ID Specify the Policy ID (Range:0-255) Action Permit or deny the forwarding if policy is matched Rate limiter ID Specify a Rate Limiter ID, the mapping table is in “Rate Limiters” page Port Redirect Specify the packets redirect to which port if policy matched Mirror...
  • Page 43 Rate Limiters Using ACL Rate Limiter Configuration page to configure up to 16 Rate Limit options LOCATION: ▼ Configuration ▼ Security ▼ Network ▼ ACL ■ Rate Limiters PARAMETERS: Items Description Rate Limit Identifier (Range:1-16) Rate Limiter ID The dropping threshold, the allowed value: Rate 0-3276700 in pps,0, 100, 2*100, 3*100…100000 in kbps...
  • Page 44 WEB Interface To Configure ACL Rate limitation: A. Click Configuration/Security/Network/ACL/Rate Limiters B. Specify Rate and Unit for Rate Limiter ID(1-16) C. Click Save to apply the setting or Reset to restore the previous setting. Access Control List Using Access Control List page to make up of ACE s deine on this switch.
  • Page 45 PARAMETERS: Items Description Ingress Port Specific port or All ports Policy/Bitmask Indicate the Policy and Bitmask of the ACE Frame Type Indicate the frame type of ACE. Any:match any frames Ethernet:match Ethernet type frames ARP:match ARP/RARP frames IPv4:matchIPv4 frames IPv4/ICMP:match IPv4 frames with ICMP Protocol IPv4/UDP:match IPv4 frames with UDP Protocol...
  • Page 46 Control List B. Click the button to add new ACE, or use the button to modify the ACE row C. Specify the parameters of the ACE D. Click Save to apply the setting, Reset to restore the previous setting or Cancl to back ACE list ●...
  • Page 47 Using the Authentication Server Configuration page to build up an authenticated mechanism with RADIUS server. LOCATION: ▼ Configuration ▼ Security ■ AAA PARAMETERS: Items Description Common Server Configuration Timeout The maximum waiting time to wait for a reply from server (Range:3-3600 seconds) Dead Time The time after which the switch Considers an authentication server to be...
  • Page 48 Port Trunking(Static) Using Aggregation Mode Configuration page to configure the Aggregation Mode and Members of each static group. LOCATION: ▼ Configuration ▼ Port Trunking ■ Static PARAMETERS: Items Description Hash Code Contributors Enable:The source MAC Address can be Source MAC Address used to calculate the destination...
  • Page 49 port for the frame.(Disable is not) Enable:The Destination MAC Address can Destination MAC Address be used to calculate the destination port for the frame. (Disable is not) Enable:The IP Address can be used to IP Address calculate the destination port for the frame.(Disable is not) Enable:The TCP/IP port number canbe TCP/IP Port...
  • Page 50 Port Trunking(LACP) Using LACP Port configuration page to enable LACP on selected ports, configure key and LACP mode. LOCATION: ▼ Configuration ▼ Port Trunking ■ LACP PARAMETERS: Items Description Port Port Identifier LACP Enabled Control whether LACP is enabled on this switch port.
  • Page 51 1-65535). The “Auto” setting will set the key as appropriate by the physical link speed, 10Mb=1, 100Mb=2, 1Gb=3. Using the specific setting, a user-defined value can be entered. The same key setting ports can participate in the same aggregation group. Role The Role shows the LACP activity status.
  • Page 52 Loop Protection Using Loop Protection page to configure loop protection LOCATION: ▼ Configuration ■ Loop Protection PARAMETERS: Items Description General Settings Enable Loop Controls whether loop protections is enabled Protection Transmission The interval between each loop protection Time PDU sent on each port. Valid values are 1 to 10 seconds Shutdown The period(in seconds) for which a port will...
  • Page 53 D. Click Save to apply the setting or Reset to restore the previous setting. Spanning Tree The Spanning Tree Algorithm can be used to detect and disable network loops and provide backup links between switches, bridges and routers. This allows the switch to cooperate with other bridging devices.
  • Page 54 LOCATION: ▼ Configuration ▼ Spanning Tree ■ Bridge Settings PARAMETERS: Items Description Basic Settings Protocol Version The STP protocol version setting, the Valid values are STP(IEEE 802.1D)and RSTP(IEEE 802.1w). Bridge Priority Control the bridge priority, low numeric values have higher priority Forward Delay The delay used by STP Bridges to transit Root and Designated Ports to...
  • Page 55 removed from the active topology. Port Error Control whether a port in the error-disable Recovery state automatically will be enabled after a certain time. If recovery is not enabled, ports have to be disabled and re-enabled from normal STP operation. The condition is also cleared by a system reboot.
  • Page 56 Spanning Tree (Bridge Ports) Using the STP CIST Ports Configuration page to configure STA attributes for interfaces when the Spanning Tree mode is set to STP or RSTP or for Interfaces in the CIST. STA interface attributes include path cost, priority, edge port, automatic detection of an edge port and PtP link type LOCATION:...
  • Page 57 it has the best spanning tree priority vector. This features is also known as “Root Guard” Restricted TCN If enabled, cause the port not to propagate received topology change notifications and topology changes to other ports.If set it can cause temporary loss of connectivity after changes in a spannig tree’s active topology as a result of persistently incorrect learned station...
  • Page 58 IGMP SNOOPING Multi-casting is using to support real-time applications such as video-conferencing or streaming audio. A multicast server doesn’t have to establish a separate connection to each client. It merely broadcasts its’ service to the network. By this approach, it will increase a lot of broadcast traffic in the network.
  • Page 59 IGMP SNOOPING Basic Configuration Using the IGMP Snooping Configuration page to configure Global and Port Related settings to control the forwarding of multi-cast traffic. This can decrease broadcast traffic to improve the network performance. LOCATION: ▼ Configuration ▼ IPMC ▼ IGMP Snooping ■...
  • Page 60 WEB Interface To Configure Global and Port related settings for IGMP Snooping: A. Click Configuration/IPMC/IGMP Snooping/Basic Configuration B. Specify the required IGMP Snooping Settings C. Click Save to apply the setting, Reset to restore the previous setting.
  • Page 61 IGMP SNOOPING VLAN Configuration Using the IGMP Snooping VLAN Configuration page to configure IGMP Snooping settings. LOCATION: ▼ Configuration ▼ IPMC ▼ IGMP Snooping ■ VLAN Configuration PARAMETERS: Items Description VLAN ID VLAN Identifier Snooping Enabled Enable the per-VLAN IGMP Snooping.
  • Page 62 Power Over EthernetThis Switch provides IEEE 802.3af/atPOE functions, it provides PD class power allocation and power reserved manually with different priority policy. The total power is 120 Watt. Using Power Over Ethernet Configuration to setPOE mode, its priority and Maximum power per port: LOCATION:...
  • Page 63 the previous setting. IEEE 802.1Q VLAN This switch provides Layer 2 VLAN for following reasons; By appropriated settings to eliminate broadcast storms in large networks. This also provide a more secure and cleaner network environment. VLAN provides greater network performance by reducing broadcast traffic and also provides high level of network security since traffic must pass through a configured Layer 3 link to reacha different VLAN.
  • Page 64 VLAN Configuration Using VLAN Membership Configuration page to set VLAN group: LOCATION: ▼ Configuration ▼ VLANs ■ VLAN Membership PARAMETERS: Items Description VLAN ID ID of this particular VLAN (Range:1-4096) VLAN Name The name of VLAN (Range:up to 32 characters) Port Members A row of checkboxes for each port is displayed for each VLAN ID...
  • Page 65 VLAN Ports Using VLAN Ports Configuration page to set VLAN attributes for specific interfaces, including processing frames with embedded tags, Ingress filtering, setting the accepted frame types and assigning Port VLAN ID. LOCATION: ▼ Configuration ▼ VLANs ■ Ports PARAMETERS: Items Description Ethertype for...
  • Page 66 filtering the box. This parameter affects VLAN ingress processing. If ingress filtering is enabled and the ingress port is not a member of the classified VLAN of the frame, the frame is discarded. By default, ingress filtering is disabled. Frame Type Determines whether the port accepts all frames or only tagged/untagged frames.
  • Page 67 WEB Interface To Configure attributes for VLAN port member: A. Click Configuration/VLANs/Ports B. Configure the required settings for each interface. C. Click Save to apply the setting, Reset to restore the previous setting.
  • Page 68 Private VLAN Private VLAN provides port-base security and isolation between ports within assigned VLAN. Data Traffic on ports assigned to a private VLAN can only be forwarded to or from uplinks ports. Ports isolated in the private VLAN are designated as downlink ports and can only communicate to uplink ports with the same private VLAN.
  • Page 69 Port Isolation Using the Port Isolation Configuration page to prevent communications between customer ports within the same private VLAN LOCATION: ▼ Configuration ▼ Private VLANs ■ Port Isolation PARAMETERS: Items Description Port Members A check box is provided for each port of a private VLAN.
  • Page 70 Quality of Service The switch supports 4 QoS queues per port with stricted or weighted fair queuing scheduling. This QoS classification mechanism is implemented in a QoS control list (QCL). The QoS class assigned to a frame is used throughout the device for providing queuing, scheduling and congestion control guarantee to the frame according to what was configured for that specific QoS class.
  • Page 71 Port Classification Using the QoS Ingress Port Configuration page to set the basic QoS parameters for a port, including the default traffic class, DP Level (IEEE 802.1p), user priority and drop eligible indicator. LOCATION: ▼ Configuration ▼ QoS ■ Port classification PARAMETERS:...
  • Page 72 Port Policing The Port policing is useful in constraining traffic flows and marking frames avobe specific rates. Policing is primarily useful for data flows and voice or video flows because voice video usually maintains a steady rate of traffic. LOCATION: ▼...
  • Page 73 PARAMETERS: Items Description Port The port number for which the configuration below applies. Enabled Controls whether the policer is enabled on this switch port. Rate Controls the rate for the policer. The default value is 500. This value is restricted to 100-1000000 when the "Unit"...
  • Page 74 QoS Control List Using QoS Control List Configuration page to configure Quality of Service policies for handling ingress packets based on Ethernet type, VLAN ID, TCP/UDP port, DSCP, ToS or VLAN priority tag. LOCATION: ▼ Configuration ▼ QoS ■ QoS Control List...
  • Page 75 PARAMETERS: Items Description QCE# Indicate the index of QCE. Port Indicates the list of ports configured with the QCE. Frame Type Indicates the type of frame to look for incomming frames. Possible frame types are: Any::The QCE will match all frame type. Ethernet::Only Ethernet frames (with Ether Type 0x600-0xFFFF) are allowed.
  • Page 76 matched with the frame's content. There are three action fields: Class, DPL and DSCP. Class:Classified QoS class. DPL:Classified Drop Precedence Level. DSCP:Classified DSCP value. Modification Insert a new QCE before the current row Buttons Edit the QCE row Move the QCE up the list Move the QCE down the list Delete the QCE The lowest plus sign adds a new entry at...
  • Page 77 Storm Control Using the Storm Control Configuration page to set limitation of broadcast, multi-cast and unknown uni-cast traffic to control traffic storms when switch device is malfunctioning. Traffic storm can degrade the network performance or halt the network. LOCATION: ▼ Configuration ▼...
  • Page 78 WEB Interface To Configure QCE Configuration: A. Click Configuration/QoS/Storm Control. B. Enable Storm Control for Broadcast, Multi-cast and unknow uni-cast and Scroll down to select the Rate value. C. Click Save to apply the setting, Reset to restore the previous setting. Port Mirroring Using the Mirror Configuration page to mirror traffic from any source port to a target port.
  • Page 79 transmitted are mirrored on the mirror port. Note: For a given port, a frame is only transmitted once. It is therefore not possible to mirror Tx frames on the mirror port. Because of this, mode for the selected mirror port is limited to Disabled or Rx only.
  • Page 80: Part 5 Web Monitor System

    PART 5 WEB MONITOR SYSTEM This chapter describes how to monitor all of the basic Functions, Configurations, System log, Traffic views and the switch (ports) states...etc. Under the Monitor/System menu, it displays system information, Real-time CPU load, log and detailed syslog. SYSTEM INFORMATION Using System Information page to verfiy the firmware and...
  • Page 81 Version Software Date The date when the switch software was produced WEB Interface To Update the System Information: A. Click Monitor/System/Information. Click “Refresh” button to refresh the page ● information manually. Check “Auto-refresh” checkbox to update page ● information automatically CPU Load This page display the CPU Load, using an SVG graph.
  • Page 82 WEB Interface To Update the System Information: B. Click Monitor/System/CPU Load. Default the“Auto-refresh” checkbox is checked to ● update page information automatically Using the System Log Information page to display event messages LOCATION: ▼ Monitor ▼ System ■ Log PARAMETERS: Items Description Event log ID...
  • Page 83 automatic refresh of the page at regular intervals. :Updates the system log entries, starting from the current entry ID. :Flushes all system log entries. :Updates the system log entries, starting from the first available entry ID. : Updates the system log entries, ending at the last entry currently displayed.
  • Page 84 Detailed Log Using the Detail System log information page to display the detail event log LOCATION: ▼ Monitor ▼ System ■ Detailed Log PARAMETERS: Items Description Event log ID Message The detailed message of the system log entry. Buttons :Updates the system log entries, starting from the current entry ID.
  • Page 85 Thermal Protection Using the Thermal Protection Status page to show the thermal status for each port. LOCATION: ▼ Monitor ■ Thermal Protection PARAMETERS: Items Description Thermal Shows if the port is thermally protected Portection Port (link is down) or if the port is operating Status normally.
  • Page 86 PARAMETERS: Items Description The port states are illustrated as follows: Port State Auto-refresh :Check this box to enable an Buttons automatic refresh of the page at regular intervals. :Updates the system log entries, starting from the current entry ID. WEB Interface To display an image of the switch’s ports:...
  • Page 87 PARAMETERS: Items Description Port The logical port for the settings contained in the same row. Packets The number of received and transmitted packets per port. Bytes The number of received and transmitted bytes per port. Errors The number of frames received in error and the number of incomplete transmissions per port.
  • Page 88 QoS Statistics Using the Queuing Counters page to display the number of packets processed by each port. LOCATION: ▼ Monitor ▼ Ports ■ QoS Statistics PARAMETERS: Items Description Port The logical port for the settings contained in the same row. There are 8 QoS queues per port.
  • Page 89 WEB Interface To display a Queue Counters: A. Click Monitor/Ports/QoS Statistics. B. Check “Auto-refresh” to update the switch’s port state automatically and click “clear” to reset all data. QCL Status Using QoS Control List Status to show QCE configured for different users or software modules and whether or not there is a conflict.
  • Page 90 PARAMETERS: Items Description Users Indicates the QCL user. QCE# Indicates the index of QCE. Frame Indicates the type of frame to look for incomming frames. Possible frame types are: Type Any: The QCE will match all frame type. Ethernet: Only Ethernet frames (with Ether Type 0x600-0xFFFF) are allowed.
  • Page 91 drop down list. Auto-refresh :Check this box to refresh the page automatically. Automatic refresh occurs at regular intervals. :Click to release the resources required to add QCL entry, incase conflict status for any QCL entry is 'yes' :Updates the system log entries, starting from the current entry ID.
  • Page 92 LOCATION: ▼ Monitor ▼ Ports ■ Detailed Statistics PARAMETERS: Items Description Receive Total and Transmit Total RX and TX The number of received and transmitted packets (good and bad) packets. Rx and Tx The number of received and transmitted Octets (good and bad) bytes.
  • Page 93 invalid CRC. Rx Jabber The number of long frames received with invalid CRC. Rx Filtered The number of received frames filtered by the forwarding process. Short frames are frames that are smaller than 64 bytes. Long frames are frames that are longer than the configured maximum frame length for this port.
  • Page 94 ACL Status This ACL Status page shows the status by different ACL users. Each row describes the ACE that is defined. It is a conflict if a specific ACE is not applied to the hardware due to hardware limitations. The maximum number of ACE is 256 on each switch. LOCATION:...
  • Page 95 Possible values are: Port All:The ACE will match all ingress port. Port:The ACE will match a specific ingress port. Frame Type Indicates the frame type of the ACE. Possible values are Any:The ACE will match any frame type. EType:The ACE will match Ethernet Type frames.
  • Page 96 Enabled:Frames received on the port are mirrored. Disabled:Frames received on the port are not mirrored. The default value is "Disabled". Forward packet that matched the specific ACE to CPU. CPU Once Forward first packet that matched the specific ACE to CPU. Counter The counter indicates the number of times the ACE was hit by a frame.
  • Page 97 RADIUS Server LOCATION: ▼ Monitor ▼ Security ▼ AAA ■ RADIUS Overview PARAMETERS: Items Description The RADIUS server number. Click to navigate to detailed statistics for this server. IP Address The IP address and UDP port number (in <IP Address>:<UDP Port> notation) of this server. Status The current status of the server.
  • Page 98 page automatically. Automatic refresh occurs at regular intervals.' :Updates the system log entries, starting from the current entry ID. WEB Interface To display a list of RADIUS Server: A. Click Monitor/Security/AAA/RADIUS Overview RADIUS Details Using the RADIUS Details page to display statistics for RADIUS Server.
  • Page 99 Items Description Receive The counters of Receive Packets, including following parameters: packets (Access Accepts, Access Rejects,Access Challenges, Malformed Access Responses,Bad Authenticators, Unknown Types,Packets Dropped) Transmit The counters of Transmit Packets, including following parameters: Packets (Access Requests,Access Retransmissions,Pending Requests,Timeouts) IP Address:Show the IP Address of RADIUS Other Info.
  • Page 100 LACP System Status Using the LACP System Status page to display an overview of LACP groups. LOCATION: ▼ Monitor ▼ LACP ■ System Status PARAMETERS: Items Description Aggr ID The Aggregation ID associated with this aggregation instance. For LLAG the id is shown as 'isid:aggr-id' and for GLAGs as 'aggr-id' Partner The system ID (MAC address) of the...
  • Page 101 Buttons Auto-refresh :Check this box to refresh the page automatically. Automatic refresh occurs at regular intervals.' :Updates the system log entries, starting from the current entry ID. WEB Interface To display an overview of LACP group active on this switch: A.
  • Page 102 Aggr ID The Aggregation ID assigned to this aggregation group. Partner The partner's System ID (MAC address). System ID Partner The partner's port number connected to this Port port. Buttons Auto-refresh :Check this box to refresh the page automatically. Automatic refresh occurs at regular intervals.' :Updates the system log entries, starting from the current entry ID.
  • Page 103 LACP Port Status Using the LACP Port Statistics page to display statistics on LACP control packets cross on each port. LOCATION: ▼ Monitor ▼ LACP ■ Port Statistics PARAMETERS: Items Description Port The switch port number. LACP Shows how many LACP frames have been Received received at each port.
  • Page 104 ■ Loop Protection PARAMETERS: Items Description Port The switch port number of the logical port. Action The currently configured port action. Transmit The currently configured port transmit mode. Loops The number of loops detected on this port. Status The current loop protection status of the port. Loop Whether a loop is currently detected on the port.
  • Page 105 PARAMETERS: Items Description Bridge The Bridge instance - CIST, MST1, ... Instance Bridge ID The Bridge ID of this Bridge instance. Root ID The Bridge ID of the currently elected root bridge. Root Port The switch port currently assigned the root port role.
  • Page 106 State The current STP port state. The port state can be one of the following values: Discarding Learning Forwarding. Path Cost The current STP port path cost. This will either be a value computed from the Auto setting, or any explicitly configured value. Edge The current STP port (operational) Edge Flag.
  • Page 107 STP Port Status Using STP Port Status page to display the STP CIST port status for physical ports of the currently selected. LOCATION: ▼ Monitor ▼ Spanning Tree ■ Port Status PARAMETERS: Items Description Port The switch port number of the logical STP port. CIST Role The current STP port role of the CIST port.
  • Page 108 To display STP Port Status: A. Click Monitor/Spanning Tree/Port Status to display the participating STP Ports Status. STP Port Statistics Using STP Port Statistics page to display statistics on Spanning Tree Protocol packets crossing each port. LOCATION: ▼ Monitor ▼ Spanning Tree ■...
  • Page 109 WEB Interface To display information on STP Port Statstics: A. Click Monitor/Spanning Tree/Port Statstics to display the STP Ports Statistics. SHOW IGMP SNOOPING INFORMATION Using IGMP SNOOPING pages to display IGMP Snooping statistics, Router port status and group information. IGMP Snooping Status Using IGMP Snooping Status page to display IGMP querier status, snooping statistics for each VLAN LOCATION:...
  • Page 110 V1 Reports The number of Received V1 Reports Received V2 Reports The number of Received V2 Reports Received V3 Reports The number of Received V3 Reports Received V2 Leaves The number of Received V2 Leaves. Received Router Port Display which ports act as router ports. A router port is a port on the Ethernet switch that leads towards the Layer 3 multicast device or IGMP querier.
  • Page 111 to display the STP Ports Statistics. IGMP Snooping Group Information Using IGMP Snooping Group Information page to display the port member of each service group. LOCATION: ▼ Monitor ▼ IPMC ▼ IGMP Snooping ■Groups Information PARAMETERS: Items Description...
  • Page 112 VLAN ID The VLAN ID of the entry. Groups Group address of the group displayed. Port Members Ports under this group. Buttons Auto-refresh :Check this box to refresh the page automatically. Automatic refresh occurs at regular intervals.' :Updates the system log entries, starting from the current entry ID.
  • Page 113 Port status for each port. LOCATION: ▼ Monitor ■POE PARAMETERS: Items Description Local Port This is the logical port number for this row. PD Class Each PD is classified according to a class that defines the maximum power the PD will use.
  • Page 114 :Updates the system log entries, starting from the current entry ID. WEB Interface To display Power Over Ethernet information: A. Click Monitor/POEto displayPOE information for each port and total power consumption. DISPLAY INFORMATION OF VLANs Using Monitor pages for VLANs to display port members of VLANs and its’...
  • Page 115 MSTP:The 802.1s Multiple Spanning Tree protocol (MSTP) uses VLANs to create multiple spanning trees in a network, which significantly improves network resource utilization while maintaining a loop-free environment. Port Members A row of check boxes for each port is displayed for each VLAN ID. If a port is included in a VLAN, an image will be displayed.
  • Page 116 starting from the current entry ID. WEB Interface To display VLAN Membership Status for specific users: A. Click Monitor/VLANs/VLAN Membership to display VLAN Membership information. VLAN Port Using VLAN Port Status for specific users page to display the information of all VLAN Port status. LOCATION:...
  • Page 117 Frame Type Shows whether the port accepts all frames or only tagged frames. This parameter affects VLAN ingress processing. If the port only accepts tagged frames, untagged frames received on that port are discarded. Tx Tag Shows egress filtering frame status whether tagged or untagged.
  • Page 119: Part 6 Web Diagnostics Ping

    PART 6 WEB DIAGNOSTICS PING This chapter provides IPv4 ping for test the connectivity of network. DIAGNOSTICS ICMP IPv4 Ping Using ICMP Ping page to send ICMP request packet to another connected point to check if it is connect. LOCATION: ▼...
  • Page 120: Part 7 Web Maintenance Restart Device

    PART 7 WEB MAINTENANCE RESTART DEVICE This chapter describes how to restart device, reload device tomanufactory default, saving or restore configuration andfirmware upgrading , swapping. RESTART DEVICE Using the Restart Device page to restart the switch LOCATION: ▼ Maintenance ■ Restart Device WEB Interface To restart the switch:...
  • Page 121 WEB Interface To resett the switch: A. Click Maintanence/Factory Defaults to reset the switch to manufactory default settings. B. Click “Yes” to confirm the process and “No” to cancel. Figure SOFTWARE UPLOAD Using Firmware Update page to upgrade the firmware of the switch.
  • Page 122 defunct. The front LED flashes Green/Off with a frequency of 10 Hz while the firmware update is in progress. Do not restart or power off the device at this time or the switch may fail to function afterwards. WEB Interface To upgrade the firmware of the switch:...
  • Page 123 :Cancel activating the backup image. Navigates away from this page. WEB Interface To swap the firmware to alternative image for the switch: A. Click Maintanence/Software/Image Select to swap to alternative image. SAVE CONFIGURATIONUsing Configuration Save page to save your switch’s configuration to management PC/NB.
  • Page 124 A. Click Maintanence/Configuration/Saveto save to alternative image. UPLOAD CONFIGURATION Using Configuration Upload page to restore your switch’s to backup configuration from management PC/NB. LOCATION: ▼ Maintenance ▼ Configuration ■ Upload PARAMETERS: Items Description Buttons to the location of configuration file and click After the configuration file is uploaded, a page announces that the configuration...
  • Page 125: Glossary

    Glossary CDEF LMNOPQRSTUVW X Y Z is an acronym for Access Control Entry. It describes access permission associated with a particular ACE ID. There are three ACE frame types (Ethernet Type, ARP, and IPv4) and two ACE actions (permit and deny). The ACE also contains many detailed, different parameter options that are available for individual application.
  • Page 126: Arp Inspection

    that port is incremented. See the Web page help text for each specific port property. ACL|Rate Limiters: Under this page you can configure the rate limiters. There can be 15 different rate limiters, each ranging from 1-1024K packets per seconds. Under "Ports" and "Access Control List" web-pages you can assign a Rate Limiter ID to the ACE(s) or ingress port(s).
  • Page 127 is an acronym for Continuity Check. It is a functionality that is able to detect loss of continuity in a network by transmitting frames to a peer MEP. is an acronym for Continuity Check Message. It is a frame transmitted from a MEP to it's peer MEP and used to implement functionality.
  • Page 128: Dhcp Relay

    DHCP Relay DHCP Relay is used to forward and to transfer DHCP messages between the clients and the server when they are not on the same subnet domain. The DHCP option 82 enables a DHCP relay agent to insert specific information into a DHCP request packets when forwarding client DHCP packets to a DHCP server and remove the specific information from a DHCP reply packets when forwarding server DHCP packets to a DHCP client.
  • Page 129: Fast Leave

    Drop Precedence Level Every incoming frame is classified to a Drop Precedence Level (DP level), which is used throughout the device for providing congestion control guarantees to the frame according to what was configured for that specific DP level. A DP level of 0 (zero) corresponds to 'Committed' (Green) frames and a DP level of 1 corresponds to 'Discard Eligible' (Yellow) frames.
  • Page 130 HTTP defines how messages are formatted and transmitted, and what actions Web servers and browsers should take in response to various commands. For example, when you enter a URL in your browser, this actually sends an HTTP command to the Web server directing it to fetch and transmit the requested Web page. The other main standard that controls how the World Wide Web works is HTML, which covers how Web pages are formatted and displayed.
  • Page 131: Igmp Querier

    IGMP is an acronym for Internet Group Management Protocol. It is a communications protocol used to manage the membership of Internet Protocol multicast groups. IGMP is used by IP hosts and adjacent multicast routers to establish multicast group memberships. It is an integral part of the IP multicast specification, like ICMP for unicast connections.
  • Page 132: Ip Source Guard

    IPMC supports IPv4 and IPv6 multicasting. IPMCv4 denotes multicast for IPv4. IPMCv6 denotes multicast for IPv6. IP Source Guard IP Source Guard is a secure feature used to restrict IP traffic on DHCP snooping untrusted ports by filtering traffic based on the DHCP Snooping Table or manually configured IP Source Bindings. It helps prevent IP spoofing attacks when a host tries to spoof and use the IP address of another host.
  • Page 133: Mac Table

    MAC Table Switching of frames is based upon the DMAC address contained in the frame. The switch builds up a table that maps MAC addresses to switch ports for knowing which ports the frames should go to ( based upon the DMAC address in the frame ).
  • Page 134 The main reason for using MVR is to save bandwidth by preventing duplicate multicast streams being sent in the core network, instead the stream(s) are received on the MVR-VLAN and forwarded to the VLANs where hosts have requested it/them(Wikipedia). NAS is an acronym for Network Access Server. The NAS is meant to act as a gateway to guard access to a protected source.
  • Page 135: Optional Tlvs

    It is a protocol described in ITU-T Y.1731 used to implement carrier ethernet functionality. functionality like is based on this Optional TLVs. A LLDP frame contains multiple TLVs For some TLVs it is configurable if the switch shall include the in the LLDP frame.
  • Page 136: Private Vlan

    Power Over Ethernet is used to transmit electrical power, to remote devices over standard Ethernet cable. It could for example be used for powering IP telephones, wireless LAN access points and other equipment, where it would be difficult or expensive to connect the equipment to main power supply. Policer policer can limit the bandwidth of received frames.
  • Page 137 is an acronym for QoS Control Entry. It describes class associated with a particular QCE ID. There are six QCE frame types: Ethernet Type, VLAN, UDP/TCP Port, DSCP, TOS, and Priority. Frames can be classified by one of 4 different QoS classes: "Low", "Normal", "Medium", and "High" for individual application. is an acronym for QoS Control List.
  • Page 138: Router Port

    RARP is an acronym for Reverse Address Resolution Protocol. It is a protocol that is used to obtain an address for a given hardware address, such as an Ethernet address. RARP is the complement of ARP. RADIUS RADIUS is an acronym for Remote Authentication Dial In User Service. It is a networking protocol that provides centralized access, authorization and accounting management for people or computers to connect and use a network service.
  • Page 139 SMTP SMTP is an acronym for Simple Mail Transfer Protocol. It is a text-based protocol that uses the Transmission Control Protocol (TCP) and provides a mail service modeled on the file transfer service. SMTP transfers mail messages between systems and notifications regarding incoming mail. SNAP The SubNetwork Access Protocol (SNAP) is a mechanism for multiplexing, on networks using IEEE 802.2 LLC, more protocols than can be distinguished by the 8-bit 802.2 Service Access Point (SAP) fields.
  • Page 140: Tag Priority

    Spanning Tree Protocol is an OSI layer-2 protocol which ensures a loop free topology for any bridged LAN. The original STP protocol is now obsolete by RSTP. Switch ID Switch IDs (1-16) are used to uniquely identify the switches within a stack. The Switch ID of each switch is shown on the display on the front of the switch and is used widely in the web pages as well as in the CLI commands.
  • Page 141 Common network applications that use TCP include the World Wide Web (WWW), e-mail, and File Transfer Protocol (FTP). TELNET TELNET is an acronym for TELetype NETwork. It is a terminal emulation protocol that uses the Transmission Control Protocol (TCP) and provides a virtual connection between TELNET server and TELNET client. TELNET enables the client to control the server and communicate with other servers on the network.
  • Page 142: Voice Vlan

    able to make sure that the entire message has arrived and is in the right order. Network applications that want to save processing time because they have very small data units to exchange may prefer UDP to TCP. UDP provides two services not provided by the IP layer. It provides port numbers to help distinguish different user requests and, optionally, a checksum capability to verify that the data arrived intact.
  • Page 143 Voice VLAN is VLAN configured specially for voice traffic. By adding the ports with voice devices attached to voice VLAN, we can perform QoS-related configuration for voice data, ensuring the transmission priority of voice traffic and voice quality. is an acronym for Wired Equivalent Privacy. WEP is a deprecated algorithm to secure IEEE 802.11 wireless networks.
  • Page 144 is an acronym for Wi-Fi Protected Setup. It is a standard for easy and secure establishment of a wireless home network. The goal of the WPS protocol is to simplify the process of connecting any home device to the wireless network (Wikipedia). WRED WRED is an acronym for Weighted Random Early Detection.

Table of Contents