Asante Technologies 3500 Series Snmp and Rmon Management, Duplicated IP Detection and Trap

Page 46

4.2 SNMP and RMON Management

The Simple Network Management Protocol (SNMP) may be used to manage the IntraCore 3524. The SNMP agent supports database objects that are defined in the following management information bases (MIBs):

MIB II (RFC 1213)

Bridge MIB (RFC 1493)

RMON (RFC 1757) 4 groups - Ethernet Statistics, Ethernet History, Alarm, and Events (See next section for details)

Private Asanté 3524 MIB

Any SNMP-based network management application can be used to manage the switch. For information on management of switches, refer to your SNMP software manual. Also, see Chapter 6. SNMP Management for more information on SNMP protocol.

For details on console-based SNMP settings, see “SNMP Configuration” in Chapter 3.

RMON Management

Remote Network Monitoring (RMON) allows the network manager to gather data on the network’s traffic for future retrieval. RMON is an Internet Standard defined in RFC1757.

Using RMON, a network monitor (also called a probe) listens to traffic on the network and gathers statistics that may be retrieved later by a network management station using SNMP, as described in the previous section.

The four groups of RMON that are supported by the switch are described in Chapter 6. SNMP Management.

The IntraCore 3524 switches provide control of the RMON groups only through SNMP. For information on controlling RMON groups, please refer to the documentation for your SNMP management application.

4.3 Security Management

To access the Security Management Menu, type t in the Configuration Menu. A screen similar to that below will appear.

IntraCore

3524 Security Management Menu

Duplicated-IP Monitoring Status : Enable

Duplicated-IP Trap Status

: Enable

Station Movement Trap Status

: Disable

<Cmd>

<Description>

 

p

Port Security Configuration

d

Toggle Duplicated-IP Detection Enable/Disable

i

Toggle Duplicated-IP Trap Enable/Disable

l

Display Duplicated-IP List

s

Toggle Station Movement Trap Enable/Disable

r

Reset All Security Configuration to Factory Default

q

Return to previous menu

Command>

Important! For any traps (alerts) to be sent, you must designate one or more devices as trap receivers. See “SNMP Configuration” in Chapter 3.

4.3.1 Duplicated IP Detection and Trap

The duplicated IP detection and duplicated IP trap security measures allow you to monitor the use of a single IP address by two stations.

If you enable duplicated IP detection, the switch starts monitoring the broadcast Address Resolution Protocol (ARP) traffic from all of its ports, to detect duplicated IP address conditions. When duplicate IP

46

Image 46
Contents IntraCore 3500 Series Quick Start Guide Gigabit Ethernet Switches User’s Manual IntraCore 3500 SeriesTable of Contents Page Package Contents IntroductionLEDs 1 IC3524 Models2 IC3548-2GT 4810/100Front and Back Panel Descriptions #49Management and Configuration Web-Based Interface Console InterfaceSnmp Management Installation Overview Hardware Installation and SetupSafety Overview Power Requirements Installation into an Equipment RackRecommended Installation Tools Environmental RequirementsGbic Interfaces Installing a GbicEquipment Rack Guidelines Removing a Gbic Installing Optional Hardware ModulesConnecting Power Gbic Care and HandlingConnecting to the Network 1 10/100BaseT Ports Cabling ProceduresGigabit Ethernet Ports Cabling Procedures SetupConnecting to a Console Connecting Via the Web Browser Changing the PasswordConnecting Via Telnet IP Assignment Snmp ManagementUsing the Stacking Feature IC3524 only Toggle Stacking Enable/Disable Accessing a Submenu ConfigurationLogging General Information Configuration MenuExiting a Submenu System Administration Configuration Changing System Administration InfoBootstrap Configuration System IP ConfigurationChanging System IP Information Snmp Configuration Changing Community StringsAdding or Updating a Trap Receiver Enabling Authentication TrapsDeleting a Trap Receiver Port Configuration Basic Port Configuration Menu appearsConfiguring Auto-Negotiation Enabling or Disabling a PortToggling Port Link Speed Configuring a Port ManuallyConfiguring 1000BaseX Ports Toggling Half to Full DuplexSetting Port Class of Service Advanced Port ConfigurationEnabling or Disabling 802.3x Flow Control Setting Port Default Priority Global Port ConfigurationUnicast Forwarding Database Configuration Displaying the Forwarding DatabaseSetting the MAC Address Age-Out Time Searching for a MAC AddressVlan Management Port Mirroring ConfigurationSecurity Management IP Multicast Traffic ManagementSetting the Monitor Port File Up/Downloading ConfigurationImage Downloading through Tftp Serial Downloading Configuration Performing a Software Upgrade at RuntimeResetting the Switch System Reset ConfigurationPerforming a Software Upgrade Scheduling a System Reset System LogUser Interface Configuration Clearing the System LogSetting Console Idle Time-out Period Setting Telnet Idle Time-out PeriodSystem Utility Changing the PasswordEnabling or Disabling the Web Server Viewing Statistics Spanning Tree Protocol Configuring Spanning Tree ParametersAdvanced Management Enabling and Disabling STPSpanning Tree Port Configuration Setting Port Priority and Path CostDuplicated IP Detection and Trap Snmp and Rmon ManagementRmon Management Enabling and Disabling Duplicated IP Trap Enabling and Disabling Station Movement TrapEnabling and Disabling Duplicated IP Detection Viewing a List of Duplicated IP AddressesConfiguring Port Security Configuring Port New Node Detection TrapConfiguring Security Level 2 or Level Configuring Port Lock and Intruder LockSetting the Intruder Trap Other Vlan Features of the switch Vlan Specifications for the IntraCore 3500 SeriesResetting Security to Defaults Inserting/Modifying a Port Trusted MAC AddressConfiguring Static Vlan Groups Kkxxxxxx KxxxxxxxAdvanced Static Vlan Configuration Setting the Port Vlan ID Configuring Vlan Port AttributesSpecifying Tagging or No Tagging for a Port Displaying a Vlan Port Summary Configuring Port Receive Frame TypeDisplaying a Summary of Vlan Groups Adding and Deleting VLANs from the PortResetting Vlan Configuration to Defaults Multicast AddressesEnabling and Disabling Igmp Snooping Configuring IP Multicast Traffic ManagementIgmp Snooping Displaying a Summary of Group AddressesInserting a Multicast Group Address IP Multicast Forwarding Database ConfigurationAdding Ports to the Selected Address Removing a Multicast Group Address To remove an addressAccessing with a Web Browser Web-Based ManagementFront Panel Button Genl Info General Information ButtonStatistics Button Port Config Port Configuration Button Span Tree Spanning Tree Button Snmp Button Addr Address Table ButtonVlan Button Port Configuration Creating or Modifying a Vlan Vlan ConfigurationAdding and Deleting Port Members Page Security Button Duplicate IP Button Snmp Management Operations Snmp ManagementSnmp Protocol Name Space Path Community Name and SecurityMIB Tree MIB Groups SupportedPage Port-Based VLANs Switching ConceptsVLANs Vlan ID and Tagged FramesHow It Works Port Vlan IDSpanning Tree Parameters Full Duplex Forward DelayFull Duplex, Flow Control and Auto-negotiation Port PriorityFlow Control Auto-NegotiationAppendix A. Troubleshooting Problem Possible SolutionsFeatures Appendix B. Features and SpecificationsSpecifications Environmental Range Physical CharacteristicsTechnical Support and Warranty Standards ComplianceFCC Compliance Statement Important Safety Instructions Appendix C. FCC Compliance and Warranty StatementsIntraCare Warranty Statement Page Pin Number Signal Name Appendix D. Console Port Pin OutsAppendix E. Online Warranty Registration Image Banks Appendix F. BootP ConfigurationBootstrap Configuration Loading Software Locally