Juniper Networks EX2500 manual Documentation Conventions, Icon Meaning Description

Page 12

EX2500 Ethernet Switch Configuration Guide

Documentation Conventions

Table 1 describes the notice icons used in this manual.

Table 2 describes the EX2500 text and syntax conventions.

Table 1:

Notice Icons

 

Icon

Meaning

Description

 

Informational note

Indicates important features or instructions.

 

Caution

Indicates a situation that might result in loss of data or

 

 

hardware damage.

 

Warning

Alerts you to the risk of personal injury or death.

 

Laser warning

Alerts you to the risk of personal injury from a laser.

Table 2: EX2500 Text and Syntax Conventions

Convention

Usage

Examples

 

 

 

Bold text like this

Names of windows, dialog boxes, buttons, tabs,

Click the Submit button on the bottom of the form.

 

and other objects in a user interface that you

 

 

click or select.

 

 

 

 

Bold text like this

In syntax descriptions and set-off command

Main# sys

 

examples, text you must type exactly as shown

 

 

 

 

Braces { }

Required elements in syntax that has more

show portchannel {<1-12> hash information}

 

than one option. You must choose one of the

(For example, you can enter either show portchannel 3,

 

options. Do not type the braces.

show portchannel hash, or show portchannel

 

 

information.)

 

 

 

Brackets [ ]

Optional elements in syntax descriptions. Do

copy running config tftp [data-port mgt-port]

 

not type the brackets.

(You enter either copy running config tftp data-port,copy

 

 

running config tftp mgt-port, or copy running config tftp.)

 

 

 

Fixed-width text

Onscreen computer output

ex2500(config)# reload

like this

 

Reset will use software “image2”...

 

 

 

Italic text like this

Book titles, special terms, and words to be

See the EX2500 Ethernet Switch Command Reference.

 

emphasized

 

 

 

 

<Italic text like this in

Variables in command syntax. Replace the

To establish a Telnet session, enter

angle brackets>

italic text with the appropriate real name or

host# telnet <IP address>

 

value when entering the command. Do not

 

(For example, you can enter telnet 192.32.10.12.)

 

type the brackets.

 

 

 

 

 

Plain text like this

Names of commands, files, and directories

View the readme.txt file.

 

used within the text

 

Vertical line

Separates choices for command keywords and

 

arguments. Enter only one choice. Do not type

 

the vertical line.

copy running config tftp [data-port mgt-port]

(You enter either copy running config tftp data-port,copy running config tftp mgt-port, or copy running config tftp.)

xii„ Documentation Conventions

Image 12
Contents Configuration Guide North Mathilda Avenue Sunnyvale, CAIi „ Table of Contents Chapter VLANs Chapter Ports and Trunking Rmon Overview Rmon Group 1-Statistics Rmon Group 2-HistoryPort Mirroring Overview Configuring Port Mirroring AppendixesIndexes Default Vlan Settings Port-Based Vlan AssignmentPage List of Tables EX2500 Ethernet Switch Configuration Guide „ List of Tables About This Guide ObjectivesAudience Supported PlatformsDocumentation Conventions Icon Meaning DescriptionList of Technical Publications Documentation FeedbackRequesting Technical Support Self-Help Online Tools and Resources Opening a Case with JtacEX2500 Ethernet Switch Applications Page Accessing the Switch Configuring the Management InterfaceDynamic Host Configuration Protocol Configure the default gateway. Enable the gatewayUsing Telnet Using the EX2500 Web Device ManagerConfiguring EX2500 Web Device Manager Access via Http Configuring EX2500 Web Device Manager Access via HttpsUsing Snmp SNMPv1, SNMPv2Default Configuration User ConfigurationSNMPv3 Configuring Snmp Trap Hosts SNMPv1 Trap Host ConfigurationSNMPv2 Trap Host Configuration Configure an entry in the notify tableSecuring Access to the Switch SNMPv3 Trap Host ConfigurationRadius Authentication and Authorization How Radius Authentication WorksConfiguring Radius on the Switch Configure the Radius secretRadius Authentication Features in the EX2500 Switch Switch User Accounts Radius Attributes for EX2500 User PrivilegesTACACS+ Authentication How TACACS+ Authentication WorksTACACS+ Authentication Features in the EX2500 Switch „ starttime „ stoptime „ elapsedtime „ disccause Command Authorization and Logging Configuring TACACS+ Authentication on the SwitchConfigure the TACACS+ secret and second secret Configuring SSH Features on the Switch Generating RSA Host and Server Keys for SSH AccessSecure Shell SSH Encryption of Management MessagesEnd User Access Control SSH Integration with Radius and TACACS+ AuthenticationConsiderations for Configuring End User Accounts User Access ControlListing Current Users Logging In to an End User AccountVLANs Vlan Overview„ Port configuration VLANs and Port Vlan ID NumbersVlan Numbers Pvid NumbersIllustrates the default Vlan settings on the switch Vlan TaggingDefault Vlan Settings Port-Based Vlan Assignment Vlan Configuration Rules Vlan Topologies and Design ConsiderationsMultiple VLANs Configuration Example Multiple VLANs example in is described in TableEnable tagging on uplink ports that support multiple VLANs Private VLANs Private Vlan PortsPrivate Vlan Configuration Guidelines Private Vlan Configuration ExampleConfigure a secondary Vlan and map it to the primary Vlan Verify the configurationSpanning Tree Protocol Spanning Tree OverviewBridge Protocol Data Units BPDUs Determining the Path for Forwarding BPDUsBridge Priority Spanning Tree Group Configuration Guidelines Changing the Spanning Tree ModePort Priority Port Path CostCreating a Vlan Rules for Vlan Tagged PortsAdding and Removing Ports from STGs Rapid Spanning Tree Protocol Port State ChangesRstp Configuration Guidelines Rstp Configuration ExamplePort Type and Link Type Edge PortDefault Spanning Tree Configuration Why Do We Need Multiple Spanning Trees?Per Vlan Rapid Spanning Tree Pvrst Configuration Guidelines Configuring PvrstMstp Configuration Guidelines Multiple Spanning Tree ProtocolMstp Region Common Internal Spanning TreeMultiple Spanning Tree Groups Configuration Example Implementing Multiple Spanning Tree GroupsFast Uplink Convergence VlanConfiguration Guidelines Configuring Fast Uplink ConvergencePorts and Trunking Trunking OverviewStatistical Load Distribution Built-In Fault Tolerance Before Configuring Static TrunksTrunk Group Configuration Rules Port Trunking Configuration Example Port Trunk Group Configuration ExampleFollow these steps on the EX2500 switch Define a trunk group Configurable Trunk Hash Algorithm Link Aggregation Control Protocol„ Destination MAC Dmac „ Destination IP DIP48 „ Link Aggregation Control Protocol Lacp Configuration Guidelines Configuring LacpOptionally Reducing Lacp Timeout Set the Lacp modeEx2500config-if# lacp timeout short ex2500config-if# exit Quality of Service QoS OverviewUsing ACL Filters COSMAC Extended ACLs IP Standard ACLsTo delete a MAC Extended ACL To delete an IP Standard ACLIP Extended ACLs To delete an IP Extended ACLUnderstanding ACL Priority TCP/UDPACL Configuration Examples Assigning ACLs to a PortViewing ACL Statistics ACL Example 1-Blocking Traffic to a HostACL Example 3-Blocking Http Traffic Add the ACL to a portACL Example 4-Blocking All Except Certain Packets Assign the ACLs to a portUsing Storm Control Filters Configuring Storm ControlBroadcast Storms Using Dscp Values to Provide QoS Differentiated Services ConceptsPer Hop Behavior Assured Forwarding Drop Precedence ClassUse the following command to perform Dscp mapping QoS LevelsDscp Mapping Using 802.1p Priority to Provide QoS Shows the priority bits in a VLAN-tagged packetQueuing and Scheduling Remote Monitoring Rmon OverviewConfigure the Rmon statistics on a port Rmon Group 1-StatisticsConfiguring Rmon History Configure the Rmon History parameters for a portThis configuration enables Rmon History collection on port Rmon Group 2-HistoryRmon Group 3-Alarms Alarm MIB ObjectsConfiguring Rmon Alarms Configure the Rmon Alarm parameters to track Icmp messagesEx2500config# rmon event 110 type log-only Rmon Group 9-EventsPage Igmp Igmp SnoopingFastLeave Igmp Snooping Configuration Example IGMPv3 SnoopingStatic Multicast Router Ex2500# show ip igmp groupsHigh Availability Through Uplink Failure Detection High Availability OverviewSpanning Tree Protocol with UFD UFD Configuration Guidelines Failure Detection PairUFD Configuration Example Monitoring UFDPage Appendixes EX2500 Ethernet Switch Configuration Guide 80 „ Appendixes „ Port Mirroring Overview on „ Configuring Port Mirroring on Port Mirroring OverviewConfiguring Port Mirroring Indexes „ Index onEX2500 Ethernet Switch Configuration Guide 84 „ Indexes Index NumericsManagement interface, configuring Multi-links between switches, port trunkingPhysical. See switch ports Internet Group Management Protocol. See IgmpQuality of Service. See QoS QoSSecurity Segmentation. See IP subnets Segments. See IP subnetsVirtual Local Area Networks. See VLANs Example showing multiple VLANs