Linksys SLM224G4S manual Security Management Access List, Web IP Filtering

Page 36

Chapter 5

Configuration Using the Web-based Utility

Disabled ports can be reactivated from the Port Settings screen of the Port Management tab.

Interface  Select Unit No. or LAG, then select the desired interface from the appropriate drop-down menu.

Lock Interface  Select this option to lock the interface. The default is not selected (interface not locked).

Learning Mode  Defines the locked port type. This field is enabled only if Lock Interface is not selected. The possible values are:

Classic Lock  Locks the port using the classic lock mechanism. The port is immediately locked, regardless of how many addresses have already been learned.

Limited Dynamic Lock  Locks the port by deleting the current dynamic MAC addresses associated with the port. The port learns up to the maximum number of addresses allowed on the port. Both relearning and aging MAC addresses are enabled.

In order to change the Learning Mode, the Lock Interface must be unselected. Once the Learning Mode is changed, the Lock Interface can be reinstated.

Max Entries  Specifies the number of MAC addresses that can be learned on the port. This field is enabled only if Learning Mode is set to Limited Dynamic Lock. The default value is 1.

Action on Violation  Indicates the action to be applied to packets arriving on a locked port. The possible values are:

Discard  Discards packets from any unlearned source. This is the default value.

Forward  Forwards packets from an unknown source without learning the MAC address.

Discard Disable  Discards packets from any unlearned source and shuts down the port. The port remains shut down until reactivated, or until the device is reset.

Enable Trap  Enables traps when a packet is received on a locked port.

Trap Frequency  The amount of time (in seconds) between traps. The default value is 10 seconds.

Update  If you click this button, your changes are saved and appear immediately in the table at the bottom of the Port Security screen.

The lower portion of the Port Security screen displays a summary of the settings in the upper portion of the screen. The settings are displayed for each of the ports on the Switch.

Click Save Settings to apply the changes, or Cancel Changes to cancel the changes.

Security > Management Access List

Use the Management Access List screen to specify IP addresses that are to be allowed to manage the device, using an IP address and wildcard mask.

Security > IP Access List

Web IP Filtering

The Management Access List screen contains two sections, Web IP Filtering and SNMP IP Filtering. These sections are identical except for the types of IP addresses that they relate to.

IP Address  Enter the web IP address or SNMP IP address to be allowed.

Wildcard Mask  Enter the wildcard mask for the web IP address or SNMP IP address. Wildcard masks specify which bits are used and which bits are ignored. A wild card mask of 255.255.255.255 indicates that no bit is important. A wildcard of 0.0.0.0 indicates that all the bits are important. For example, if the source IP address is 149.36.184.198 and the wildcard mask is 255.36.184.00, the first eight bits of the IP address are ignored, while the last eight bits are used.

Add to List  Click this button to save the IP address and Wildcard Mask. The information will appear in the list at the bottom of the screen.

The bottom portions of both the Web IP Filtering and SNMP IP Filtering sections displays the current IP access list, where each entry consists of an IP Address and Wildcard Mask. To delete an entry from the list, select it and click Delete.

Click Save Settings to apply the changes, or Cancel Changes to cancel the changes.

24/48-Port 10/100 + 4-Port Gigabit Resilient Clustering Smart Switch with 2 Combo SFPs

30

Image 36
Contents Port or 48-Port 10/100 + About This Guide About This GuideIcon Descriptions Online ResourcesTable of Contents Snmp Appendix B About Switch Stacking Appendix C GlossaryGigabit Ethernet Fiber Optic Cabling Appendix D Specifications Appendix G Contact InformationChapter IntroductionChapter Product Overview Product OverviewFront Panel Back PanelSLM248G4S Chapter Installation InstallationPre-Installation Considerations Placement OptionsHardware Installation Desktop PlacementRack-Mount Placement Uplinking the Switch Configuring Stacking ModeReplacing a Stacked Switch Connect port G1 on Unit 2 to port G2 on UnitConnect port G1 on Unit 3 to port G2 on Unit Chapter Configuration Using Console Interface Using the HyperTerminal ApplicationUsing telnet Login screen appears. Proceed to the Login section belowHow to Use the Console Interface LoginSwitch Main Menu System Configuration MenuManagement Settings User & Password SettingsSystem Information Security Settings IP ConfigurationNetwork Configuration File ManagementRestore System Default Settings Reboot SystemStack Configuration Port Configuration System ModePort Status HelpChapter Configuration Using Web-based Utility SetupSetup Summary Device InformationSetup Zoom Setup Network SettingsDefault Gateway The IP address default 0.0.0.0 DNS Server The IP address of your ISP’s server thatSetup Time IdentificationLocal Time Daylight SavingSetup Stack Management Port Management Port SettingsPort Management Sntp ServersPort Configuration LAG Configuration Port Management Link AggregationLacp screen contains fields for configuring Lacp LAGs Port Management LacpGlobal Parameter Port PriorityVlan Management Port Settings Vlan ManagementVlan Management Create Vlan Lacp Port TableVlan Management Port to Vlan Vlan Management Vlan to PortJoin Vlan to Port Statistics Statistics Rmon StatisticsStatistics Rmon History Rmon HistoryLog Table Rmon History TableStatistics Rmon Alarms Add AlarmStatistics Port Utilization Statistics Rmon EventsStatistics Interface Statistics Security 802.1x Settings SecurityInterface Ethernet-likeSetting Timer Security Port SecuritySecurity Management Access List Web IP FilteringSecurity Storm Control Security RadiusBroadcast Only Counts only Broadcast traffic QoS CoS Settings CoS SettingsCoS Default CoS Settings screen is used to enable or disable CoSQoS Queue Settings QoS Dscp SettingsQoS Bandwidth QoS Basic Mode Spanning TreeSpanning Tree STP Status Spanning Tree STP Port Settings Global SettingBridge Settings Spanning Tree Global STPVlan Igmp Settings MulticastMulticast Igmp Snooping Igmp GlobalMulticast Bridge Multicast Multicast Bridge Multicast Forward AllSnmp Global Parameters Snmp ViewsSnmp Group Profile Snmp Group MembershipUser Name Provides a user-defined local user list Snmp Communities Snmp Notification Filter Snmp Notification RecipientBase Table Advanced TableAdmin Admin User AuthenticationUser Authentication Local User EditAdmin Static Address Admin Dynamic AddressSecure The entry is defined for locked ports Clear Table If selected, this clears the MAC Address tableAdmin Port Mirroring Admin Cable TestQuery Admin Save Configuration Admin Firmware Upgrade Admin RebootAdmin Factory Default Admin Logging Admin Server LogsAdmin Memory Logs Admin Flash Logs LogoutAppendix a Appendix a About Gigabit Ethernet Fiber Optic CablingGigabit Ethernet Fiber Optic CablingAppendix B About Switch Stacking About Switch StackingAppendix B Stack Building Quick StartAdvanced Stacking Stack ResiliencyUnit IDs Unit ID AllocationStack Units Startup Process Master DiscoveryMaster Election Unit and Port Configuration User ControlsStacking Examples Replacing a Failed Stack Member in a Running StackStack Master Failure and Replacement Subgroup Contains Both Master Unit and Backup Master Unit Splitting a StackMerging Two Stacks Both Stacks Kept Running During InsertionStacking Cable Failure Inserting Too Many UnitsAppendix C Appendix C GlossaryGlossary Glossary Packet a unit of data sent over a network Mail protocol on the InternetAppendix C Appendix D Specifications SpecificationsAppendix D Dimensions HOL Blocking Head of line blocking preventionSupports up to 9K byte frames 802.3 10BASE-T EthernetWarranty Information Limited WarrantyObtaining Warranty Service Appendix EWarranty Information Technical SupportAppendix F Regulatory InformationRegulatory Information Appendix F Norsk Norwegian Miljøinformasjon for kunder i EU Appendix F Appendix G Contact Information

SLM224G4S specifications

The Linksys SLM224G4S is a sophisticated Layer 2 managed switch designed for businesses and institutions that demand high performance, reliability, and advanced networking features. This model stands out due to its blend of robustness and manageability, making it ideal for expanding networks.

One of the primary features of the SLM224G4S is its 24 Gigabit Ethernet ports, allowing for high-speed data transfers essential for bandwidth-intensive applications. Supporting auto-negotiation, these ports can detect the capabilities of connected devices and configure themselves accordingly, ensuring optimal performance without manual intervention. With four additional shared Gigabit SFP (Small Form-factor Pluggable) ports, this switch provides flexibility in network design and enhances scalability.

The SLM224G4S supports VLAN (Virtual Local Area Network) capabilities, which can segment network traffic to improve security and performance. This is particularly useful in environments where different departments or teams require distinct network segments for operational efficiency. By implementing VLANs, organizations can enhance their network management while isolating sensitive information from potential threats.

Quality of Service (QoS) is another critical technology integrated into the SLM224G4S. It prioritizes network traffic, ensuring that critical applications receive the bandwidth they need for optimal performance. This is particularly important for VoIP and video conferencing applications, where latency and jitter can significantly impact user experience.

The switch also features advanced Layer 2 management functionalities, including SNMP (Simple Network Management Protocol), allowing IT administrators to monitor network performance and quickly troubleshoot issues. The embedded web-based management interface makes configuration straightforward, enabling quick adjustments to settings without deep networking knowledge.

Security is a paramount consideration in today’s networking landscape. The SLM224G4S provides robust security features, including port security that limits the number of MAC addresses allowed on a port, reducing the risk of unauthorized access. Moreover, it supports802.1X port-based authentication, ensuring that only authenticated devices can connect to the network.

In summary, the Linksys SLM224G4S managed switch boasts features such as 24 Gigabit Ethernet ports, VLAN support, QoS, SNMP management, and advanced security protocols. These characteristics make it an excellent choice for businesses looking to enhance their network's performance, safety, and reliability, paving the way for seamless connectivity in today’s digital age.