SMC Networks TigerSwitch 100 User Manual Page 1

Browse online or download User Manual for Network switches SMC Networks TigerSwitch 100. SMC Networks TigerSwitch 100 User's Manual

  • Download
  • Add to my manuals
  • Print
  • Page
    / 334
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews

Summary of Contents

Page 1 - TigerSwitch 10/100/1000

TigerSwitch 10/100/1000Gigabit Ethernet Switch◆ 24 auto-MDI/MDI-X 10/100/1000BASE-T ports◆ 4 ports shared with 4 SFP transceiver slots◆ Non-blocking s

Page 2

CONTENTSxdelete . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-21dir . . . . . . . . . . . . . . . . .

Page 3 - Management Guide

CONFIGURING THE SWITCH2-70Adding Interfaces Based on Membership TypeUse the VLAN Static Table to modify the settings for an existing VLAN. You can add

Page 4

VLAN CONFIGURATION2-71therefore not carry VLAN or CoS information. Note that an interface must be assigned to at least one group as an untagged port.-

Page 5

CONFIGURING THE SWITCH2-72CLI – The following example shows how to add tagged and untagged ports to VLAN 2.Adding Interfaces Based on Static Membershi

Page 6

VLAN CONFIGURATION2-73Web – Open VLAN, VLAN Static Membership. Select an interface from the scroll-down box (Port or Trunk). Click Query to display VL

Page 7

CONFIGURING THE SWITCH2-74Command Usage• GVRP – GARP VLAN Registration Protocol defines a way for switches to exchange VLAN information in order to au

Page 8

VLAN CONFIGURATION2-75port).- If ingress filtering is enabled, the interface will discard incoming frames tagged for VLANs which do not include this

Page 9

CONFIGURING THE SWITCH2-76- 1Q Trunk – Specifies a port as an end-point for a VLAN trunk. A trunk is a direct link between two switches, so the port t

Page 10

CLASS OF SERVICE CONFIGURATION2-77Class of Service ConfigurationClass of Service (CoS) allows you to specify which data packets have greater precedenc

Page 11

CONFIGURING THE SWITCH2-78• If the output port is an untagged member of the associated VLAN, these frames are stripped of all VLAN tags prior to trans

Page 12

CLASS OF SERVICE CONFIGURATION2-79Weighted Round Robin (WRR). Up to eight separate traffic priorities are defined in IEEE 802.1p. The default priority

Page 13

CONTENTSxishow radius-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-55tacacs-server host . . . . . . . . . . . . .

Page 14

CONFIGURING THE SWITCH2-80• Traffic Class – Output queue buffer. (Range: 0 - 3, where 3 is the highest CoS priority queue)Web – Click Priority, Traffi

Page 15 - ANAGEMENT

CLASS OF SERVICE CONFIGURATION2-81Setting the Service Weight for Traffic ClassesThis switch uses the Weighted Round Robin (WRR) algorithm to determine

Page 16

CONFIGURING THE SWITCH2-82CLI – The following example shows how to assign WRR weights of 1, 4, 16 and 64 to the CoS priority queues 0, 1, 2 and 3.Mapp

Page 17 - ONNECTING

CLASS OF SERVICE CONFIGURATION2-83Command Attributes• IP Precedence/DSCP Priority Status – Selects IP Precedence, DSCP, or disables both priority serv

Page 18 - Remote Connections

CONFIGURING THE SWITCH2-84Command Attributes• IP Precedence Priority Table – Shows the IP Precedence to CoS map.• Class of Service Value – Maps a CoS

Page 19 - Basic Configuration

CLASS OF SERVICE CONFIGURATION2-85Web – Click Priority, IP Precedence Priority. Select an IP Precedence value from the IP Precedence Priority Table by

Page 20 - Setting an IP Address

CONFIGURING THE SWITCH2-86CLI – The following example globally enables IP Precedence service on the switch, maps IP Precedence value 1 to CoS value 0

Page 21

CLASS OF SERVICE CONFIGURATION2-87Command Attributes• DSCP Priority Table – Shows the DSCP Priority to CoS map.• Class of Service Value – Maps a CoS v

Page 22

CONFIGURING THE SWITCH2-88CLI – The following example globally enables DSCP Priority service on the switch, maps DSCP value 1 to CoS value 0 on port 5

Page 23

PORT TRUNK CONFIGURATION2-89consists of more than four ports, all other ports will be placed in a standby mode. Should one link in the trunk fail, one

Page 24

CONTENTSxiicapabilities . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-89flowcontrol . . . . . . . . . . . . .

Page 25 - Saving Configuration Settings

CONFIGURING THE SWITCH2-90Dynamically Configuring a Trunk with LACPCommand Usage• To avoid creating a loop in the network, be sure you enable LACP bef

Page 26 - Managing System Files

PORT TRUNK CONFIGURATION2-91Web – Click Trunk, LACP Configuration. Select any of the switch ports from the scroll-down port list and click Add. After

Page 27 - System Defaults

CONFIGURING THE SWITCH2-92CLI – The following example enables LACP for ports 17 and 18. Just connect these ports to two LACP-enabled trunk ports on an

Page 28

PORT TRUNK CONFIGURATION2-93Web – Click Trunk, Trunk Configuration. Enter a trunk ID of 1-6 in the Trunk field, select any of the switch ports from th

Page 29

CONFIGURING THE SWITCH2-94CLI – This example creates trunk 1 with ports 11 and 12. Just connect these ports to two static trunk ports on another switc

Page 30

CONFIGURING SNMP2-95Setting Community Access Strings You may configure up to five community strings authorized for management access. For security rea

Page 31

CONFIGURING THE SWITCH2-96CLI – The following example adds the string “spiderman” with read/write access.Specifying Trap Managers You can specify up t

Page 32 - Home Page

CONFIGURING SNMP2-97Web – Click SNMP, SNMP Configuration. Fill in the Trap Manager IP Address box and the Trap Manager Community String box, mark Enab

Page 33 - AVIGATING

CONFIGURING THE SWITCH2-98IP address 192.168.1.1 and mask 255.255.255.255 — Specifies a valid IP address of 192.168.1.1 only.Note: IP filtering does n

Page 34 - Panel Display

MULTICAST CONFIGURATION2-99Web – Click SNMP, SNMP IP Filtering. To add an IP address, type the new IP address in the IP Address box, type the appropri

Page 35 - Main Menu

CONTENTSxiiiswitchport ingress-filtering . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-127switchport native vlan . . . . . . . . . . . .

Page 36

CONFIGURING THE SWITCH2-100reduces the network overhead required by a multicast server, the broadcast traffic must be carefully pruned at every multic

Page 37

MULTICAST CONFIGURATION2-101• IGMP Query – A router, or multicast-enabled switch, can periodically ask their hosts if they want to receive multicast t

Page 38

CONFIGURING THE SWITCH2-102which had been receiving query packets) to have expired. (Default: 300 seconds, Range: 300 - 500)• IGMP Version — Sets the

Page 39

MULTICAST CONFIGURATION2-103CLI – This example modifies the settings for multicast filtering, and then displays the current status.Interfaces Attached

Page 40 - Setting the IP Address

CONFIGURING THE SWITCH2-104Web – Click IGMP, Multicast Router Port Information. Select the required VLAN ID from the scroll-down list to display the a

Page 41

MULTICAST CONFIGURATION2-105• VLAN ID – Selects the VLAN to propagate all multicast traffic coming from the attached multicast router/switch.• Port or

Page 42 - Using DHCP/BOOTP

CONFIGURING THE SWITCH2-106• Multicast IP Address – The IP address for a specific multicast service• Multicast Group Port List – Ports propagating a m

Page 43 - Security

MULTICAST CONFIGURATION2-107Adding Multicast Addresses to VLANsMulticast filtering can be dynamically configured using IGMP Snooping and IGMP Query me

Page 44

CONFIGURING THE SWITCH2-108Web – Click IGMP, IGMP Member Port Table. Specify the interface attached to a multicast service (via an IGMP-enabled switch

Page 45

SHOWING DEVICE STATISTICS2-109unusually heavy loading). RMON statistics provide access to a broad range of statistics, including a total count of diff

Page 46

CONTENTSxivMirror Port Commands . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-163port monitor . . . . . . . . . . . . .

Page 47

CONFIGURING THE SWITCH2-110Transmit Octets The total number of octets transmitted out of the interface, including framing characters.Transmit Unicast

Page 48

SHOWING DEVICE STATISTICS2-111Single Collision Frames The number of successfully transmitted frames for which transmission is inhibited by exactly one

Page 49 - CLI Commands

CONFIGURING THE SWITCH2-112Received Frames The total number of frames (bad, broadcast and multicast) received.Broadcast Frames The total number of goo

Page 50

SHOWING DEVICE STATISTICS2-113Web – Click Statistics, Port Statistics. Select the required interface, and then click Query. You can also use the Refre

Page 51

CONFIGURING THE SWITCH2-114CLI – This example shows statistics for port 13.Console#show interfaces counters ethernet 1/13 3-97Ethernet 1/13Iftable sta

Page 52 - Managing Firmware

USING THE COMMAND LINE INTERFACE3-1CHAPTER 3COMMAND LINE INTERFACEThis chapter describes how to use the Command Line Interface (CLI).Using the Command

Page 53

COMMAND LINE INTERFACE3-2After connecting to the system through the console port, the login screen displays:Telnet ConnectionTelnet operates over the

Page 54

ENTERING COMMANDS3-3After you configure the switch with an IP address, you can open a Telnet session by performing these steps.1. From the remote host

Page 55

COMMAND LINE INTERFACE3-4interfaces and status are keywords, ethernet is an argument that specifies the interface type, and 1/5 specifies the unit/por

Page 56

ENTERING COMMANDS3-5Showing CommandsIf you enter a “?” at the command prompt, the system will display the first level of keywords for the current comm

Page 57

1-1CHAPTER 1SWITCH MANAGEMENTConnecting to the SwitchConfiguration OptionsThe TigerSwitch 10/100/1000 includes a built-in network management agent. Th

Page 58

COMMAND LINE INTERFACE3-6Partial Keyword LookupIf you terminate a partial keyword with a question mark, alternatives that match the initial letters ar

Page 59 - APABILITIES

ENTERING COMMANDS3-7command classes and associated modes are displayed in the following table:Exec CommandsWhen you open a new console session on swit

Page 60 - Versions

COMMAND LINE INTERFACE3-8 Configuration CommandsConfiguration commands are privileged level commands used to modify switch settings. These commands mo

Page 61

ENTERING COMMANDS3-9To enter Interface, Line Configuration, or VLAN mode, you must enter the “interface ...,” “line...” or “vlan database” command whi

Page 62 - Port Configuration

COMMAND LINE INTERFACE3-10Command GroupsThe system commands can be broken down into the functional groups shown below.Command GroupDescription PageGen

Page 63

COMMAND GROUPS3-11Note that the access mode shown in the following tables is indicated by these abbreviations: NE (Normal Exec) PE (Privileged Exec) G

Page 64

COMMAND LINE INTERFACE3-12General CommandsenableUse this command to activate Privileged Exec mode. In privileged mode, additional commands are availab

Page 65

GENERAL COMMANDS3-13Command Usage • “super” is the default password required to change the command mode from Normal Exec to Privileged Exec. (To set t

Page 66

COMMAND LINE INTERFACE3-14Command Usage The “>” character is appended to the end of the prompt to indicate that the system is in normal access mode

Page 67

GENERAL COMMANDS3-15show historyUse this command to show the contents of the command history buffer.Default Setting NoneCommand Mode Normal Exec, Priv

Page 68 - Configuring Port Mirroring

SWITCH MANAGEMENT1-2The switch’s CLI configuration program, Web interface, and SNMP agent allow you to perform the following management functions:• Se

Page 69 - Configuring Port Security

COMMAND LINE INTERFACE3-16reloadUse this command to restart the system.Note: When the system is restarted, it will always run the Power-On Self-Test.

Page 70 - Port Security Configuration

GENERAL COMMANDS3-17Example This example shows how to return to the Privileged Exec mode from the Interface Configuration mode:exitUse this command to

Page 71 - Address Table Settings

COMMAND LINE INTERFACE3-18Command Mode Normal Exec, Privileged ExecCommand Usage The quit and exit commands can both exit the configuration program.Ex

Page 72 - Displaying the Address Table

FLASH/FILE COMMANDS3-19system operation. The success of the file transfer depends on the accessibility of the TFTP server and the quality of the netwo

Page 73

COMMAND LINE INTERFACE3-20• To replace the startup configuration, you must use startup-config as the destination. • The Boot ROM image cannot be uploa

Page 74 - Changing the Aging Time

FLASH/FILE COMMANDS3-21deleteUse this command to delete a file or image.Syntax delete filenamefilename - Name of the configuration file or image name.

Page 75

COMMAND LINE INTERFACE3-22dirUse this command to display a list of files in Flash memory.Syntax dir [boot-rom | config | opcode [:filename]]The type o

Page 76 - STP Information

FLASH/FILE COMMANDS3-23Example The following example shows how to display all file information:whichbootUse this command to display which files booted

Page 77

COMMAND LINE INTERFACE3-24boot systemUse this command to specify the file or image used to start up the system.Syntax boot system {boot-rom| config |

Page 78 - Tree information

SYSTEM MANAGEMENT COMMANDS3-25System Management CommandsThese commands are used to control system logs, passwords, user name, browser configuration op

Page 79

CONNECTING TO THE SWITCH1-3Required ConnectionsThe switch provides an RS-232 serial port that enables a connection to a PC or terminal for monitoring

Page 80 - STP Configuration

COMMAND LINE INTERFACE3-26show ip ssh Displays the status of the SSH server and the configured values for authentication timeout and retriesPE3-37show

Page 81

SYSTEM MANAGEMENT COMMANDS3-27hostnameUse this command to specify or modify the host name for this device. Use the no form to restore the default host

Page 82

COMMAND LINE INTERFACE3-28•{0 | 7} - 0 means plain password, 7 means encrypted password. • password password - The authentication password for the use

Page 83

SYSTEM MANAGEMENT COMMANDS3-29enable passwordAfter initially logging onto the system, you should set the administrator (Privileged Exec) and guest (No

Page 84

COMMAND LINE INTERFACE3-30Related Commandsenable (3-12)jumbo frameUse this command to enable jumbo frames through the switch. Use the no form to disab

Page 85

SYSTEM MANAGEMENT COMMANDS3-31ip http portUse this command to specify the TCP port number used by the Web browser interface. Use the no form to use th

Page 86

COMMAND LINE INTERFACE3-32Command Mode Global ConfigurationExample Related Commandsip http port (3-31)ip http secure-serverUse this command to enable

Page 87

SYSTEM MANAGEMENT COMMANDS3-33for the connection.- The client and server generate session keys for encrypting and decrypting data.• The client and ser

Page 88

COMMAND LINE INTERFACE3-34Default Setting 443Command Mode Global ConfigurationCommand Usage • You cannot configure the HTTP and HTTPS servers to use t

Page 89

SYSTEM MANAGEMENT COMMANDS3-35Default Setting timeout: 120 secondscount: 3Command Mode Global ConfigurationCommand Usage The timeout specifies the int

Page 90

SWITCH MANAGEMENT1-44. Once you have set up the terminal correctly, the console login screen will be displayed. Note: Refer to “Line Commands” on page

Page 91 - VLAN Configuration

COMMAND LINE INTERFACE3-36Command Usage • The SSH server supports up to four client sessions. The maximum number of client sessions includes both curr

Page 92 - Assigning Ports to VLANs

SYSTEM MANAGEMENT COMMANDS3-37show sshUse this command to display the current Secure Shell (SSH) server connections.Command Mode Privileged ExecComman

Page 93

COMMAND LINE INTERFACE3-38Example Related Commandsip ssh (3-34)logging onUse this command to control logging of error messages. This command sends deb

Page 94

SYSTEM MANAGEMENT COMMANDS3-39Related Commandslogging history (3-39)logging trap (3-42)clear logging (3-43)logging historyUse this command to limit sy

Page 95

COMMAND LINE INTERFACE3-40* There are only Level 2, 5 and 6 error messages for the current firmware release.Default Setting Flash: errors (level 3 - 0

Page 96 - Displaying Current VLANs

SYSTEM MANAGEMENT COMMANDS3-41Default Setting NoneCommand Mode Global ConfigurationCommand Usage • By using this command more than once you can build

Page 97

COMMAND LINE INTERFACE3-42logging trapUse this command to limit syslog messages saved to a remote server based on severity. Use the no form to return

Page 98 - Creating VLANs

SYSTEM MANAGEMENT COMMANDS3-43clear loggingUse this command to clear messages from the log buffer.Syntax clear logging [flash | ram]• flash - Event hi

Page 99

COMMAND LINE INTERFACE3-44Default Setting NoneCommand Mode Privileged ExecExample show startup-configUse this command to display the configuration fil

Page 100 - Command Attributes

SYSTEM MANAGEMENT COMMANDS3-45Command Mode Privileged ExecExample Console#show startup-configbuilding startup-config, please wait...!!snmp-server c

Page 101 - ONFIGURATION

BASIC CONFIGURATION1-5Basic ConfigurationConsole ConnectionThe CLI program provides two different command levels — normal access level (Normal Exec) a

Page 102

COMMAND LINE INTERFACE3-46Related Commandsshow running-config (3-46)show running-configUse this command to display the configuration information curre

Page 103

SYSTEM MANAGEMENT COMMANDS3-47Example Related Commandsshow startup-config (3-44)show systemUse this command to display system information.Default Sett

Page 104 - Command Usage

COMMAND LINE INTERFACE3-48Exampleshow usersShows all active console and Telnet sessions, including user name, idle time, and IP address of Telnet clie

Page 105

SYSTEM MANAGEMENT COMMANDS3-49Example show versionUse this command to display hardware and software version information for the system.Default Setting

Page 106 - ONFIGURING

COMMAND LINE INTERFACE3-50Example Authentication CommandsYou can configure the switch to authenticate users logging into the system for management acc

Page 107

AUTHENTICATION COMMANDS3-51authentication loginUse this command to define the login authentication method and precedence. Use the no form to restore t

Page 108

COMMAND LINE INTERFACE3-52management access via the console port, a Web browser, or Telnet. These access options must be configured on the authenticat

Page 109

AUTHENTICATION COMMANDS3-53Example radius-server portUse this command to set the RADIUS server network port. Use the no form to restore the default.Sy

Page 110

COMMAND LINE INTERFACE3-54Default Setting NoneCommand Mode Global ConfigurationExample radius-server retransmitUse this command to set the number of r

Page 111

AUTHENTICATION COMMANDS3-55radius-server timeoutUse this command to set the interval between transmitting authentication requests to the RADIUS server

Page 113 - 5Critical

SWITCH MANAGEMENT1-6Passwords can consist of up to eight alphanumeric characters and are case sensitive. To prevent unauthorized access to the switch,

Page 114

COMMAND LINE INTERFACE3-56tacacs-server hostUse this command to specify the TACACS+ server. Use the no form to restore the default.Syntax tacacs-serve

Page 115 - Status menu

AUTHENTICATION COMMANDS3-57Example tacacs-server keyUse this command to set the TACACS+ encryption key. Use the no form to restore the default.Syntax

Page 116 - Mapping DSCP Priority

COMMAND LINE INTERFACE3-58Example SNMP CommandsControls access to this switch from SNMP management stations, as well as the error types sent to trap m

Page 117 - IP DSCP Value CoS Value

SNMP COMMANDS3-59Syntax snmp-server community string [ro|rw]no snmp-server community string• string - Community string that acts like a password and p

Page 118 - Port Trunk Configuration

COMMAND LINE INTERFACE3-60snmp-server contactUse this command to set the system contact string. Use the no form to remove the system contact informati

Page 119

SNMP COMMANDS3-61Default Setting NoneCommand Mode Global ConfigurationExample Related Commandssnmp-server contact (3-60)snmp-server hostUse this comma

Page 120

COMMAND LINE INTERFACE3-62Default Setting Host Address: NoneSNMP Version: 1Command Mode Global ConfigurationCommand Usage • If you do not enter an snm

Page 121

SNMP COMMANDS3-63snmp-server enable trapsUse this command to enable this device to send Simple Network Management Protocol traps (SNMP notifications).

Page 122

COMMAND LINE INTERFACE3-64Example Related Commandssnmp-server host (3-61)snmp ip filterSets the IP addresses of clients that are allowed management ac

Page 123

SNMP COMMANDS3-65specified by the bitmask.• The default setting is null, which allows all IP groups SNMP access to the switch. If one IP address is co

Page 124 - Configuring SNMP

BASIC CONFIGURATION1-7Note: Only one VLAN interface can be assigned an IP address (the default is VLAN 1). This defines the management VLAN, the only

Page 125 - Access Mode

COMMAND LINE INTERFACE3-66ExampleConsole#show snmpSNMP traps:Authentication: enableLink-up-down: enableSNMP communities:0 SNMP packets input0 Bad SNMP

Page 126 - Specifying Trap Managers

IP COMMANDS3-67IP CommandsAn IP address may be used for management access to the switch over your network. By default, the switch uses DHCP to assign

Page 127 - SNMP IP Filtering

COMMAND LINE INTERFACE3-68• dhcp - Obtains IP address from DHCP. Default Setting IP address: 0.0.0.0Netmask: 255.0.0.0Command Mode Interface Configura

Page 128

IP COMMANDS3-69Related Commandsip dhcp restart (3-69)ip dhcp restartUse this command to submit a BOOTP or DCHP client request.Default Setting NoneComm

Page 129 - Multicast Configuration

COMMAND LINE INTERFACE3-70ip default-gatewayUse this command to a establish a static route between this device and management stations that exist on a

Page 130 - Configuring IGMP Parameters

IP COMMANDS3-71Command Mode Privileged ExecCommand Usage This switch can only be assigned one IP address. This address is used for managing the switch

Page 131

COMMAND LINE INTERFACE3-72pingUse this command to send ICMP echo request packets to another node on the network.Syntax ping host [count count][size si

Page 132

LINE COMMANDS3-73Example Related Commands interface (3-85)Line CommandsYou can access the onboard configuration program by attaching a VT100 compatibl

Page 133 - ULTICAST

COMMAND LINE INTERFACE3-74lineUse this command to identify a specific line for configuration, and to process subsequent line configuration commands.Sy

Page 134

LINE COMMANDS3-75Example To enter console line mode, enter the following command:Related Commandsshow line (3-83)show users (3-48)loginUse this comman

Page 135 - Command Attribute

SWITCH MANAGEMENT1-84. To set the IP address of the default gateway for the network to which the switch belongs, type “ip default-gateway gateway,” wh

Page 136

COMMAND LINE INTERFACE3-76Exec (NE) mode.- login local selects authentication via the user name and password specified by the username command (i.e.,

Page 137

LINE COMMANDS3-77Command Mode Line Configuration Command Usage • When a connection is started on a line with password protection, the system prompts f

Page 138 - Showing Device Statistics

COMMAND LINE INTERFACE3-78Default Setting CLI: No timeoutTelnet: 10 minutesCommand Mode Line Configuration Command Usage • If input is detected, the s

Page 139 - Statistical Values

LINE COMMANDS3-79Command Mode Line Configuration Command Usage • When the logon attempt threshold is reached, the system interface becomes silent for

Page 140

COMMAND LINE INTERFACE3-80Default Setting The default value is no silent-time.Command Mode Line Configuration Command Usage If the password threshold

Page 141 - TATISTICS

LINE COMMANDS3-81Command Mode Line Configuration Command Usage The databits command can be used to mask the high bit on input from devices that genera

Page 142

COMMAND LINE INTERFACE3-82Command Usage Communication protocols provided by devices such as terminals and modems often require a specific parity bit s

Page 143

LINE COMMANDS3-83stopbitsUse this command to set the number of the stop bits transmitted per byte. Use the no form to restore the default setting.Synt

Page 144

COMMAND LINE INTERFACE3-84Command Mode Normal Exec, Privileged ExecExample To show all lines, enter this command:Interface CommandsThese commands are

Page 145 - NTERFACE

INTERFACE COMMANDS3-85interfaceUse this command to configure an interface type and enter interface configuration mode. Use the no form to remove a tru

Page 146 - Telnet Connection

BASIC CONFIGURATION1-93. Type “exit” to return to the global configuration mode. Press <Enter>.4. Type “ip dhcp restart” to begin broadcasting s

Page 147 - Entering Commands

COMMAND LINE INTERFACE3-86descriptionUse this command to add a description to an interface. Use the no form to remove the description.Syntax descripti

Page 148

INTERFACE COMMANDS3-87• 1000full - Forces 1000 Mbps full-duplex operation • 100full - Forces 100 Mbps full-duplex operation • 100half - Forces 100 Mbp

Page 149 - Showing Commands

COMMAND LINE INTERFACE3-88negotiationUse this command to enable autonegotiation for a given interface. Use the no form to disable autonegotiation.Synt

Page 150

INTERFACE COMMANDS3-89capabilitiesUse this command to advertise the port capabilities of a given interface during autonegotiation. Use the no form wit

Page 151 - Exec Commands

COMMAND LINE INTERFACE3-90Command UsageWhen auto-negotiation is enabled with the negotiation command, the switch will negotiate the best settings for

Page 152 - Configuration Commands

INTERFACE COMMANDS3-91optimal settings will be determined by the capabilities command. To enable flow control under auto-negotiation, “flowcontrol” mu

Page 153 - Command Line Processing

COMMAND LINE INTERFACE3-92Default Setting All interfaces are enabled.Command Mode Interface Configuration (Ethernet, Port Channel)Command Usage This c

Page 154 - Command Groups

INTERFACE COMMANDS3-93Command Usage • When broadcast traffic exceeds the specified threshold, packets above that threshold are dropped. • This command

Page 155

COMMAND LINE INTERFACE3-94Command Usage • If you enable port security, the switch will stop dynamically learning new addresses on the specified port.

Page 156 - General Commands

INTERFACE COMMANDS3-95Syntax clear counters interfaceinterface • ethernet unit/port- unit - This is device 1. - port - Port number. • port-channel cha

Page 157 - Console#

SWITCH MANAGEMENT1-10Community StringsCommunity strings are used to control management access to SNMP stations, as well as to authorize SNMP stations

Page 158

COMMAND LINE INTERFACE3-96• ethernet unit/port - unit - This is device 1. - port - Port number. • port-channel channel-id (Range: 1-6) • vlan vlan-id

Page 159

INTERFACE COMMANDS3-97show interfaces countersUse this command to display statistics for an interface. Syntax show interfaces counters [interface]inte

Page 160

COMMAND LINE INTERFACE3-98Example show interfaces switchportUse this command to display the administrative and operational status of the specified int

Page 161

INTERFACE COMMANDS3-99Default Setting Shows all interfaces.Command Mode Normal Exec, Privileged ExecCommand Usage If no interface is specified, inform

Page 162 - Flash/File Commands

COMMAND LINE INTERFACE3-100Address Table CommandsThese commands are used to configure the address table for filtering specified addresses, displaying

Page 163

ADDRESS TABLE COMMANDS3-101Syntax mac-address-table static mac-address interface vlan vlan-id [action]no mac-address-table static mac-address vlan vla

Page 164

COMMAND LINE INTERFACE3-102Example show mac-address-tableUse this command to view classes of entries in the bridge-forwarding database.Syntax show mac

Page 165 - Console#delete test2.cfg

ADDRESS TABLE COMMANDS3-103- Delete-on-reset - static entry to be deleted when system is reset• The mask should be hexadecimal numbers (representing a

Page 166

COMMAND LINE INTERFACE3-104Syntax mac-address-table aging-time secondsno mac-address-table aging-timeseconds - Time is number of seconds (17-2184).Def

Page 167

SPANNING TREE COMMANDS3-105Spanning Tree CommandsThis section includes commands that configure the Spanning Tree Protocol (STP) for the overall switch

Page 168

BASIC CONFIGURATION1-11Trap ReceiversYou can also specify SNMP stations that are to receive traps from the switch.To configure a trap receiver, comple

Page 169 - System Management Commands

COMMAND LINE INTERFACE3-106spanning-treeUse this command to enable the Spanning Tree Protocol globally for this switch. Use the no form to disable it.

Page 170

SPANNING TREE COMMANDS3-107spanning-tree modeUse this command to select the Spanning Tree mode for this switch. Use the no form to disable it.Syntax s

Page 171

COMMAND LINE INTERFACE3-108Example The following example configures the switch to use Rapid Spanning Tree:spanning-tree forward-timeUse this command t

Page 172

SPANNING TREE COMMANDS3-109spanning-tree hello-timeUse this command to configure the Spanning Tree bridge hello time globally for this switch. Use the

Page 173

COMMAND LINE INTERFACE3-110Default Setting 20 secondsCommand Mode Global ConfigurationCommand Usage This command sets the maximum time (in seconds) a

Page 174

SPANNING TREE COMMANDS3-111Command Mode Global ConfigurationCommand Usage Bridge priority is used in selecting the root device, root port, and designa

Page 175

COMMAND LINE INTERFACE3-112Example spanning-tree transmission-limitUse this command to configure the minimum interval between the transmission of cons

Page 176

SPANNING TREE COMMANDS3-113spanning-tree costUse this command to configure the Spanning Tree path cost for the specified interface. Use the no form to

Page 177 - Console(config)#

COMMAND LINE INTERFACE3-114Example Related Commandsspanning-tree port-priority (3-114)spanning-tree port-priorityUse this command to configure the pri

Page 178

SPANNING TREE COMMANDS3-115Related Commandsspanning-tree cost (3-113)spanning-tree portfastUse this command to set an interface to fast forwarding. Us

Page 179

SWITCH MANAGEMENT1-12Managing System FilesThe switch’s flash memory supports three types of system files that can be managed by the CLI program, Web i

Page 180

COMMAND LINE INTERFACE3-116Related Commandsspanning-tree edge-port (3-116)spanning-tree edge-portUse this command to specify an interface as an edge p

Page 181

SPANNING TREE COMMANDS3-117Related Commandsspanning-tree portfast (3-115)spanning-tree protocol-migrationUse this command to re-check the appropriate

Page 182

COMMAND LINE INTERFACE3-118spanning-tree link-typeUse this command to configure the link type for the Rapid Spanning Tree. Use the no form to restore

Page 183

SPANNING TREE COMMANDS3-119show spanning-treeUse this command to show the configuration for the Spanning Tree.Syntax show spanning-tree [interface]• i

Page 184

COMMAND LINE INTERFACE3-120ExampleConsole#show spanning-treeSpanning-tree information---------------------------------------------------------------Sp

Page 185

VLAN COMMANDS3-121VLAN CommandsA VLAN is a group of ports that can be located anywhere in the network, but communicate as though they belong to the sa

Page 186

COMMAND LINE INTERFACE3-122vlan databaseUse this command to enter VLAN database mode. All commands in this mode will take effect immediately.Default S

Page 187

VLAN COMMANDS3-123vlanUse this command to configure a VLAN. Use the no form to restore the default settings or delete a VLAN.Syntax vlan vlan-id [name

Page 188

COMMAND LINE INTERFACE3-124Example The following example adds a VLAN, using vlan-id 105 and name RD5. The VLAN is activated by default.Related Command

Page 189 - Example

VLAN COMMANDS3-125Related Commandsshow vlan (3-131)switchport modeUse this command to configure the VLAN membership mode for a port. Use the no form t

Page 190

SYSTEM DEFAULTS1-13In the system flash memory, one file of each type must be set as the start-up file. During a system boot, the diagnostic and operat

Page 191

COMMAND LINE INTERFACE3-126switchport acceptable-frame-typesUse this command to configure the acceptable frame types for a port. Use the no form to re

Page 192

VLAN COMMANDS3-127switchport ingress-filteringUse this command to enable ingress filtering for an interface. Use the no form to restore the default.Sy

Page 193

COMMAND LINE INTERFACE3-128switchport native vlanUse this command to configure the PVID (i.e., default VLAN ID) for a port. Use the no form to restore

Page 194 - Authentication Commands

VLAN COMMANDS3-129switchport allowed vlanUse this command to configure VLAN groups on the selected interface. Use the no form to restore the default.S

Page 195 - UTHENTICATION

COMMAND LINE INTERFACE3-130Example The following example shows how to add VLANs 2, 5 and 6 to the allowed list as tagged VLANs for port 1:switchport f

Page 196

VLAN COMMANDS3-131Example The following example shows how to prevent port 1 from being added to VLAN 3:show vlanUse this command to show VLAN informat

Page 197

COMMAND LINE INTERFACE3-132GVRP and Bridge Extension CommandsGARP VLAN Registration Protocol defines a way for switches to exchange VLAN information i

Page 198

GVRP AND BRIDGE EXTENSION COMMANDS3-133Default Setting DisabledCommand Mode Interface Configuration (Ethernet, Port Channel)Example show gvrp configur

Page 199

COMMAND LINE INTERFACE3-134garp timerUse this command to set the values for the join, leave and leaveall timers. Use the no form to restore the timers

Page 200

GVRP AND BRIDGE EXTENSION COMMANDS3-135Note: Set GVRP timers on all Layer 2 devices connected in the same network to the same values. Otherwise, GVRP

Page 201

SWITCH MANAGEMENT1-14Security Privileged Exec Level Username “admin”Password “admin”Normal Exec Level Username “guest”Password “guest”Enable Privilege

Page 202 - SNMP Commands

COMMAND LINE INTERFACE3-136Example Related Commandsgarp timer (3-134)bridge-ext gvrpUse this command to enable GVRP. Use the no form to disable it.Syn

Page 203

GVRP AND BRIDGE EXTENSION COMMANDS3-137show bridge-extUse this command to show the configuration for bridge extension commands.Default Setting NoneCom

Page 204

COMMAND LINE INTERFACE3-138IGMP Snooping CommandsThis switch uses IGMP (Internet Group Management Protocol) to query for any attached hosts that want

Page 205

IGMP SNOOPING COMMANDS3-139ip igmp snoopingUse this command to enable IGMP snooping on this switch. Use the no form to disable it.Syntax ip igmp snoop

Page 206

COMMAND LINE INTERFACE3-140ip igmp snooping vlan staticUse this command to add a port to a multicast group. Use the no form to remove the port.Syntax

Page 207

IGMP SNOOPING COMMANDS3-141ip igmp snooping versionUse this command to configure the IGMP snooping version. Use the no form to restore the default.Syn

Page 208

COMMAND LINE INTERFACE3-142Command Mode Privileged ExecCommand UsageSee ““Configuring IGMP Parameters” on page 2-100 for a descriptionof the displayed

Page 209

IGMP SNOOPING COMMANDS3-143Command Usage Member types displayed include IGMP or USER, depending on selected options.Example The following shows the mu

Page 210

COMMAND LINE INTERFACE3-144ip igmp snooping query-countUse this command to configure the query count. Use the no form to restore the default.Syntax ip

Page 211 - IP Commands

IGMP SNOOPING COMMANDS3-145ip igmp snooping query-intervalUse this command to configure the snooping query interval. Use the no form to restore the de

Page 212

SYSTEM DEFAULTS1-15Virtual LANs Default VLAN 1PVID 1Acceptable Frame Type AllIngress Filtering DisabledGVRP (global) DisabledGVRP (port interface) Dis

Page 213

COMMAND LINE INTERFACE3-146Command Mode Global ConfigurationCommand Usage• The switch must be using IGMPv2 for this command to take effect. • This com

Page 214

IGMP SNOOPING COMMANDS3-147ip igmp snooping router-port-expire-timeUse this command to configure the snooping router-port-expire-time. Use the no form

Page 215

COMMAND LINE INTERFACE3-148ip igmp snooping vlan mrouterUse this command to statically configure a multicast router port. Use the no form to remove th

Page 216

IGMP SNOOPING COMMANDS3-149show ip igmp snooping mrouter Use this command to display information on statically configured and dynamically learned mult

Page 217 - Line Commands

COMMAND LINE INTERFACE3-150Priority CommandsThe commands described in this section allow you to specify which data packets have greater precedence whe

Page 218

PRIORITY COMMANDS3-151switchport priority defaultUse this command to set a priority for incoming untagged frames, or the priority of frames received b

Page 219 - Console(config-line)#

COMMAND LINE INTERFACE3-152• The default priority applies for an untagged frame received on a port set to accept all frame types (i.e, receives both u

Page 220

PRIORITY COMMANDS3-153Command Mode Global ConfigurationCommand Usage WRR allows bandwidth sharing at the egress port by defining scheduling weights.Ex

Page 221

COMMAND LINE INTERFACE3-154Default Setting This switch supports Class of Service by using four priority queues, with Weighted Round Robin for each por

Page 222

PRIORITY COMMANDS3-155 Related Commands show queue cos-map (3-155)show queue bandwidthUse this command to display the Weighted Round-Robin (WRR) bandw

Page 223

38 TeslaIrvine, CA 92618Phone: (949) 679-8000TigerSwitch 10/100/1000Management GuideFrom SMC’s Tiger line of feature-rich workgroup LAN solutionsFebru

Page 224

SWITCH MANAGEMENT1-16

Page 225

COMMAND LINE INTERFACE3-156Default Setting NoneCommand Mode Privileged ExecExample map ip precedence (Global Configuration)Use this command to enable

Page 226

PRIORITY COMMANDS3-157Example The following example shows how to enable IP precedence mapping globally:map ip precedence (Interface Configuration)Use

Page 227

COMMAND LINE INTERFACE3-158Command Usage • The precedence for priority mapping is IP Precedence or IP DSCP, and default switchport priority.• IP Prece

Page 228 - Interface Commands

PRIORITY COMMANDS3-159• IP Precedence and IP DSCP cannot both be enabled. Enabling one of these priority types will automatically disable the other ty

Page 229

COMMAND LINE INTERFACE3-160Command Mode Interface Configuration (Ethernet, Port Channel)Command Usage • The precedence for priority mapping is IP Port

Page 230

PRIORITY COMMANDS3-161Command Mode Privileged ExecExample Related Commands map ip precedence (Global Configuration) (3-156)map ip precedence (Interfac

Page 231

COMMAND LINE INTERFACE3-162Command Mode Privileged ExecExample Related Commands map ip dscp (Global Configuration) (3-158)map ip dscp (Interface Confi

Page 232

MIRROR PORT COMMANDS3-163Mirror Port CommandsThis section describes how to configure port mirror sessions. port monitorUse this command to configure a

Page 233 - Default Setting

COMMAND LINE INTERFACE3-164Command Usage • You can mirror traffic from any source port to a destination port for real-time analysis. You can then atta

Page 234

MIRROR PORT COMMANDS3-165Default Setting Shows all sessions.Command Mode Privileged ExecCommand Usage This command displays the currently configured s

Page 235

2-1CHAPTER 2CONFIGURING THE SWITCHUsing the Web InterfaceThis switch provides an embedded HTTP Web agent. Using a Web browser you can configure the sw

Page 236

COMMAND LINE INTERFACE3-166Port Trunking CommandsPorts can be statically grouped into an aggregate link to increase the bandwidth of a network connect

Page 237

PORT TRUNKING COMMANDS3-167• All ports in a trunk must be configured in an identical manner, including communication mode (i.e., speed, duplex mode an

Page 238

COMMAND LINE INTERFACE3-168Example The following example creates trunk 1 and then adds port 11:lacpUse this command to enable 802.3ad Link Aggregation

Page 239

PORT TRUNKING COMMANDS3-169ExampleThe following shows LACP enabled on ports 11-13. Because LACP has also been enabled on the ports at the other end of

Page 240

COMMAND LINE INTERFACE3-170

Page 241

A-1APPENDIX ATROUBLESHOOTINGTroubleshooting ChartTroubleshooting ChartSymptom ActionCannot connect using Telnet, Web browser, or SNMP software• Be sur

Page 242

TROUBLESHOOTINGA-2

Page 243

B-1APPENDIX BUPGRADING FIRMWARE VIATHE SERIAL PORTThe switch contains three firmware components that can be upgraded; the diagnostics (or Boot-ROM) co

Page 244 - Address Table Commands

UPGRADING FIRMWARE VIA THE SERIAL PORTB-24. When the switch initialization screen appears, enter firmware-download mode by pressing <Ctrl><u&

Page 245

B-39. Press <X> to start to download the new code file. If using Windows HyperTerminal, click the “Transfer” button, and then click “Send File..

Page 246

CONFIGURING THE SWITCH2-2Notes: 1. You are allowed three attempts to enter the correct password; on the third failed attempt the current connection is

Page 247

UPGRADING FIRMWARE VIA THE SERIAL PORTB-412. To set the new downloaded file as the startup file, use the [S]et Startup File menu option.13. When you h

Page 248

C-1APPENDIX CPIN ASSIGNMENTSConsole Port Pin AssignmentsThe DB-9 serial port on the switch’s front panel is used to connect to the switch for out-of-b

Page 249 - Spanning Tree Commands

PIN ASSIGNMENTSC-2Console Port to 9-Pin DTE Port on PCConsole Port to 25-Pin DTE Port on PCSwitch’s 9-Pin Serial PortNull ModemPC’s 9-Pin DTE Port2 RX

Page 250

Glossary-1GLOSSARY10BASE-TIEEE 802.3 specification for 10 Mbps Ethernet over two pairs of Category 3, 4, or 5 UTP cable.100BASE-TXIEEE 802.3u specific

Page 251

GLOSSARYGlossary-2Collision DomainSingle CSMA/CD LAN segment.CSMA/CDCarrier Sense Multiple Access/Collision Detect is the communication method employe

Page 252

GLOSSARYGlossary-3Generic Attribute Registration Protocol (GARP)GARP is a protocol that can be used by endstations and switches to register and propag

Page 253

GLOSSARYGlossary-4IEEE 802.3abDefines CSMA/CD access method and physical layer specifications for 1000BASE-T Gigabit Ethernet.IEEE 802.3acDefines fram

Page 254

GLOSSARYGlossary-5IP Multicast FilteringA process whereby this switch can pass multicast traffic along to participating hosts.Layer 2Data Link layer i

Page 255

GLOSSARYGlossary-6Port MirroringA method whereby data on a target port is mirrored to a monitor port for troubleshooting with a logic analyzer or RMON

Page 256

GLOSSARYGlossary-7Virtual LAN (VLAN)A Virtual LAN is a collection of network nodes that share the same collision domain regardless of their physical l

Page 257

NAVIGATING THE WEB BROWSER INTERFACE2-3The Main Menu links are used to navigate to other menus, and display configuration parameters and statistics.Co

Page 258

GLOSSARYGlossary-8

Page 259 - Console(config-if)#

Index-1Aaddress table 2-41BBOOTP 2-12broadcast storm, threshold 2-36CClass of Serviceconfiguring 2-77queue mapping 2-77community string 2-95configurat

Page 260

INDEXIndex-2path cost, STP 3-111, 3-113pin assignments25-pin DTE port C-29-pin DTE port C-2console port C-1port priorityconfiguring 2-77default ingres

Page 262

38 TeslaIrvine, CA 92618Phone: (949) 679-8000FOR TECHNICAL SUPPORT, CALL:From U.S.A. and Canada (24 hours a day, 7 days a week)(800) SMC-4-YOU; (949)

Page 263

CONFIGURING THE SWITCH2-4Notes: 1. To ensure proper screen refresh, be sure that Internet Explorer 5.x is configured as follows: Under the menu “Tools

Page 264

MAIN MENU2-5Main Menu Using the onboard Web agent, you can define system parameters, manage and control the switch, and all its ports, or monitor netw

Page 265 - VLAN Commands

CONFIGURING THE SWITCH2-6Port Security Action Configures the port intrusion action globally for the switch2-40Port Security Status Enables port securi

Page 266

MAIN MENU2-7PriorityDefault Port Priority Sets the default priority for each port 2-77Default Trunk Priority Sets the default priority for each trunk

Page 267

CONFIGURING THE SWITCH2-8Basic ConfigurationDisplaying System InformationYou can easily identify the system by providing a descriptive name, location

Page 268

BASIC CONFIGURATION2-9• Web secure server port* – Shows the TCP port number used by the HTTPS server.• POST result* – Shows results of the power-on se

Page 269

Information furnished by SMC Networks, Inc. (SMC) is believed to be accurate and reliable. However, no responsibility is assumed by SMC for its use, n

Page 270

CONFIGURING THE SWITCH2-10CLI – Specify the hostname, location and contact information.Setting the IP Address An IP address may be used for management

Page 271

BASIC CONFIGURATION2-11• Management VLAN – This is the only VLAN through which you can gain management access to the switch. By default, all ports on

Page 272

CONFIGURING THE SWITCH2-12Manual ConfigurationWeb – Click System, IP. Specify the management interface, IP address and default gateway, then click App

Page 273

SECURITY2-13If you lose your management connection, use a console connection and enter “show ip interface” to determine the new switch address.CLI – S

Page 274

CONFIGURING THE SWITCH2-14as soon as possible, and store it in a safe place. (If for some reason your password is lost, you can reload the factory dea

Page 275

SECURITY2-15CLI – Assign a user name to access-level 15 (i.e., administrator), then specify the password.Configuring RADIUS/TACACS Logon Authenticatio

Page 276

CONFIGURING THE SWITCH2-16• RADIUS uses UDP while TACACS+ uses TCP. UDP only offers best effort delivery, while TCP offers a connection-oriented trans

Page 277 - XTENSION

SECURITY2-17The local switch user database has to be set up by manually entering user names and passwords using the CLI.RADIUS Settings• Server IP Add

Page 278

CONFIGURING THE SWITCH2-18Web – Click System, Authentication Settings. To configure local or remote authentication preferences, specify the authentica

Page 279

SECURITY2-19CLI CommandsCLI – Specify all the required parameters to enable logon authentication.HTTPSYou can configure the switch to enable the Secur

Page 280

vLIMITED WARRANTYLimited Warranty Statement: SMC Networks, Inc. (“SMC”) warrants its products to be free from defects in workmanship and materials, un

Page 281

CONFIGURING THE SWITCH2-20The following Web browsers and operating systems currently support HTTPS:When you start HTTPS, the client and server establi

Page 282 - IGMP Snooping Commands

SECURITY2-21CLI CommandsCLI – Enter the following commands to specify the secure port number and to enable HTTPS.SSHThe Secure Shell (SSH) server feat

Page 283

CONFIGURING THE SWITCH2-22 CLI CommandsCLI – Enter the following commands to configure the SSH service.Managing FirmwareYou can upload/download firmwa

Page 284

MANAGING FIRMWARE2-23•Destination File Name — File names are case-sensitive. The file name should not contain slashes (\ or /), the leading letter of

Page 285

CONFIGURING THE SWITCH2-24To start the new firmware, reboot the system.CLI – Enter the IP address of the TFTP server, select config or opcode file typ

Page 286

MANAGING FIRMWARE2-25names on the TFTP server is 127 characters or 31 characters for files on the switch. (Valid characters: A-Z, a-z, 0-9, “.”, “-”,

Page 287

CONFIGURING THE SWITCH2-26CLI – Enter the IP address of the TFTP server, specify the source file on the server, and set the startup file name on the s

Page 288

DISPLAYING BRIDGE EXTENSION CAPABILITIES2-27CLI – If you copy the running configuration to a file, you can set this file as the startup file at a late

Page 289

CONFIGURING THE SWITCH2-28• Static Entry Individual Port – This switch allows static filtering for unicast and multicast addresses. (Refer to “Setting

Page 290

DISPLAYING BRIDGE EXTENSION CAPABILITIES2-29Web – Click System, Bridge Extension.CLI – Enter the following command. Console#show bridge-ext 3-137Max s

Page 291

LIMITED WARRANTYviLIABILITY IN CONNECTION WITH THE SALE, INSTALLATION, MAINTENANCE OR USE OF ITS PRODUCTS. SMC SHALL NOT BE LIABLE UNDER THIS WARRANTY

Page 292

CONFIGURING THE SWITCH2-30Displaying Switch Hardware/Software Versions Command AttributesMain Board• Serial Number – The serial number of the switch.•

Page 293

DISPLAYING SWITCH HARDWARE/SOFTWARE VERSIONS2-31Web – Click System, Switch Information.CLI – Use the following command to display version information.

Page 294 - Priority Commands

CONFIGURING THE SWITCH2-32Port ConfigurationDisplaying Connection StatusYou can use the Port Information or Trunk Information pages to display the cur

Page 295

PORT CONFIGURATION2-33Web – Click Port, Port Information or Trunk Information. Modify the required interface settings, and click Apply.CLI – This exam

Page 296

CONFIGURING THE SWITCH2-34Configuring Interface ConnectionsYou can use the Trunk Configuration or Port Configuration page to enable/disable an interfa

Page 297

PORT CONFIGURATION2-35used for half-duplex operation and IEEE 802.3x for full-duplex operation. (Avoid using flow control on a port connected to a hub

Page 298

CONFIGURING THE SWITCH2-36CLI – Select the interface, and then enter the required settings.Setting Broadcast Storm ThresholdsBroadcast storms may occu

Page 299

PORT CONFIGURATION2-37500-262143packets per second; Default: 500 packets per second)• Broadcast Control Status – Shows whether or not broadcast storm

Page 300

CONFIGURING THE SWITCH2-38Configuring Port MirroringYou can mirror traffic from any source port to a target port for real-time analysis. You can then

Page 301

PORT CONFIGURATION2-39Configuring Port SecurityPort security is a feature that allows you to configure a switch port with one or more device MAC addre

Page 302

viiCONTENTS1 Switch Management . . . . . . . . . . . . . . . . . . . . . . . . . . .1-1Connecting to the Switch . . . . . . . . . . . . . . . . . .

Page 303 - Console(config)#map ip dscp

CONFIGURING THE SWITCH2-40Port Security ActionThe switch allows you to set the security action to be taken when a port intrusion is detected. This set

Page 304

ADDRESS TABLE SETTINGS2-41CLI ConfigurationUse the interface command to select the target port, then use the port security action command to configure

Page 305

CONFIGURING THE SWITCH2-42Command UsageEntries specified via the Web interface are permanent. Entries specified via the CLI can be made permanent or c

Page 306

ADDRESS TABLE SETTINGS2-43Command Usage• You can display entries in the dynamic address table by selecting an interface (either port or trunk), MAC ad

Page 307 - Mirror Port Commands

CONFIGURING THE SWITCH2-44Changing the Aging TimeYou can set the aging time for entries in the dynamic address table. Command UsageThe range for the a

Page 308

SPANNING TREE PROTOCOL CONFIGURATION2-45The Spanning Tree Protocols supported by the switch include the following standards:• STP – Spanning Tree Prot

Page 309

CONFIGURING THE SWITCH2-46STP InformationThe Spanning Tree, STP Information page contains information on the current status of the Spanning Tree.Comma

Page 310 - Port Trunking Commands

SPANNING TREE PROTOCOL CONFIGURATION2-47• Designated Root — Identifies the priority and MAC address of the device in the Spanning Tree that the switch

Page 311

CONFIGURING THE SWITCH2-48* CLI only.Web – Click Spanning Tree, STP Information to display current Spanning Tree information.

Page 312

SPANNING TREE PROTOCOL CONFIGURATION2-49CLI – This example shows the current Spanning Tree settings.Console#show spanning-tree 3-119Spanning-tree info

Page 313

CONTENTSviiiDisplaying Connection Status . . . . . . . . . . . . . . . . . . . . . . . . . . 2-32Configuring Interface Connections . . . . . . . .

Page 314

CONFIGURING THE SWITCH2-50STP ConfigurationGlobal settings apply to the entire switch.Command UsageRSTP supports connections to either STP or RSTP nod

Page 315 - ROUBLESHOOTING

SPANNING TREE PROTOCOL CONFIGURATION2-51priority, the device with the lowest MAC address will then become the root device. - Default: 32768- Range:

Page 316

CONFIGURING THE SWITCH2-52- Default: 15- Minimum: The higher of 4 or [(Max. Message Age / 2) + 1]- Maximum: 30• Path Cost Method — The path cost is

Page 317

SPANNING TREE PROTOCOL CONFIGURATION2-53Web – Click Spanning Tree, STP Configuration. Modify the required attributes, then click Apply.CLI – This exam

Page 318 - Baudrate set to 115200

CONFIGURING THE SWITCH2-54STP Port and Trunk InformationThe Spanning Tree, STP Port Information and Spanning Tree, STP Trunk Information display the c

Page 319

SPANNING TREE PROTOCOL CONFIGURATION2-55• Designated Bridge — The priority and MAC address of the device through which this port must communicate to r

Page 320

CONFIGURING THE SWITCH2-56• Path Cost – This parameter is used by the STA to determine the best path between devices. Therefore, lower values should

Page 321 - SSIGNMENTS

SPANNING TREE PROTOCOL CONFIGURATION2-57during reconfiguration events, does not cause the spanning tree to reconfigure when the interface changes stat

Page 322

CONFIGURING THE SWITCH2-58CLI – This example displys the current Spanning Tree status of a port. STP Port and Trunk ConfigurationYou can configure RST

Page 323 - Glossary-1

SPANNING TREE PROTOCOL CONFIGURATION2-59begins learning addresses.- Forwarding — Port forwards packets, and continues learning addresses.• Priority —

Page 324 - Glossary-2

CONTENTSixSNMP IP Filtering . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2-97Multicast Configuration . . . . . . . . . . .

Page 325 - Glossary-3

CONFIGURING THE SWITCH2-60- Auto — The switch automatically determines if the interface is attached to a point-to-point link or to shared media.• Admi

Page 326 - Glossary-4

VLAN CONFIGURATION2-61Web – Click Spanning Tree, STP Port Configuration or STP Trunk Configuration. Modify the required attributes, then click Apply.C

Page 327 - Glossary-5

CONFIGURING THE SWITCH2-62An IEEE 802.1Q VLAN is a group of ports that can be located anywhere in the network, but communicate as though they belong t

Page 328 - Glossary-6

VLAN CONFIGURATION2-63along the path that will carry this traffic to the same VLAN(s), either manually or dynamically using GVRP. However, if you want

Page 329 - Glossary-7

CONFIGURING THE SWITCH2-64configured to broadcast a message to your network indicating the VLAN groups it wants to join. When this switch receives the

Page 330 - Glossary-8

VLAN CONFIGURATION2-65forwarding a frame from this switch along a path that does not contain any VLAN-aware devices (including the destination host),

Page 331

CONFIGURING THE SWITCH2-66Displaying Current VLANsThe VLAN Current Table shows the current port members of each VLAN and whether or not the port suppo

Page 332

VLAN CONFIGURATION2-67Web – Click VLAN, VLAN Current Table. Select any ID from the scroll-down list.Command Attributes for CLI Interface• VLAN – ID of

Page 333

CONFIGURING THE SWITCH2-68• Ports / Channel groups – Shows the VLAN interface members.CLI – Current VLAN information can be displayed with the followi

Page 334

VLAN CONFIGURATION2-69• State – Shows if this VLAN is enabled or disabled (CLI). - Active: VLAN is operational.- Suspend: VLAN is suspended; i.e., doe

Comments to this Manuals

No comments