Security
N4131
Web-Based Management
Content
Installation
Introduction
Troubleshooting
Switch Operation Power Over Ethernet Overview
What is PoE?
Chapter
Product Description
Package Contents
Powerful Security
Remote and Centralize Management installation
Physical Port
How to Use this Manual
Product Features
Power over Ethernet of GE-DS-82-PoE
GE-DS-82-PoE
Layer 2 Features
Quality of Service
Priority queues on all switch ports Traffic classification
Management
Multicast
Security
Dram
Product Specifications
Power over Ethernet GE-DS-82-PoE Only
Vlan
LED
PoE Power Supply Type
Quality of Service
Access Control List
Power over Ethernet PoE Standard
Standards Compliance
Power Pin Assignment
PoE Power Budget
Max. number of Class Standards Conformance Safety
10/100Mbps TP Interface GE-DS-82, GE-DS-82-PoE
Switch Front Panel
Hardware Description
Gigabit SFP Slots
Reset button
LED Indications
Gigabit TP Interface
Per 10/100/1000Base-T port/SFP interfaces
System
Per 10/100Base-T RJ-45 port
Per 10/100Base-TX, PoE interfaces Port-1 to Port-8
Switch Rear Panel
Console Port
Power Notice
Desktop/Shelf Installation
Switch Installation
Secure the brackets tightly, but do not over tighten screws
Rack-mount Installation
Mounting the GE-DS-82 in a rack
SFP Transceiver Installation
1000Base-SX/LX SFP transceiver
Approved GE Security SFP Transceivers
Remove the transceiver module
Connect the fiber cable
Pulling out the SFP transceiver
Installation
This chapter covers the following topics
Requirements
Summary
Management Access Overview
Management Methods Comparison
Web Browser Management
PC / Workstation With IE Browser RJ-45/UTP-Cable IP Address
Web Browser Setup
Login to the managed Switch
Login screen
IP Address
Administration Console
SNMP-Based Network Management
PC / Workstation With Snmp application
PC connected to Switch with RS-232 serial cable
Direct Access
Virtual Terminal Protocols
Telnet Setup
Protocols
New Connection dialog window
Log on to the Console
Management Architecture
Snmp Protocol
About Web-based Management
Web-Based Management
Requirements
Http//192.168.0.100
Logging on to the Switch
Panel Display
Main Web
Port states are illustrated as follows
Main Menu
System Information
System
This page includes the following fields
Misc Config
Basic
Mode
Object Description
Broadcast Storm Filter
How do I get one for this box?
IP Configuration
What is an IP address?
Objectdescription
IP Configuration
Gateway
Snmp Configuration
Snmp Overview
Subnet Mask
System Options
Snmp Community
Snmp Status
System Name
System Location
System Contact
Trap Managers
Community strings serve as passwords. See the table below
Community Strings
Group Name
SNMPv3 Groups
Enter the IP address of the trap manager
Community Enter the community string for the trap station
Included Excluded
SNMPv3 View
Security Name
View Name
Digits
SNMPv3 Access
View Subtree
View Mask Hexadecimal
SNMPv3 usm-user
This page include the following fields
Firmware Upgrade
Tftp Firmware Upgrade
Firmware Upgrade screen is displayed as in Figure
Http Firmware Upgrade
To open the Firmware Upgrade screen, do the following
Click System then Web Firmware Upgrade
Tftp Restore Configuration
Configuration Backup
Configuration Backup interface
Tftp Backup Configuration
Reboot the switch. Click reboot to reboot the system
Factory Default
System Reboot
Port Control
Syslog Setting
Port Configuration
This page includes the following settings
Port Control interface
BSF
Port Statistics
Port Status
Via this port
Port Port number Link Status of linking-Up or Down State
Or receive any packet
Tx Bad Packet
Port Mirror application
Port Sniffer
Monitored Port
Sniffer Type
Protected
Protected Port
Vlan Overview
Vlan Configuration
Web-Based Management
802.1Q Tag
Static Vlan Configuration
Static Vlan interface
Port-Based Vlan
Port-based Vlan interface
Create a Vlan and add member ports to it
Member
Vlan Name
Group ID
Port
Untagged
Understand nomenclature of the Switch
802.1Q Vlan
Tagged
Vlan Group Configuration
Vlan Group Configuration
Vlan Group Configuration interface
UnTag Member
Vlan ID
Pvid
Vlan Filter
Ingress Filtering
Ieee 802.1Q Tunneling Q-in-Q
QinQ Vlan \ QinQ Port Setting screen in appears
In-Q Port Setting
Object
In-Q Tunnel Setting
In-Q Tunnel Setting interface
To configure Gvrp
Gvrp Setting
Object Description Gvrp
Enable global Gvrp function
Object Description Vlan ID
Gvrp Table
Theory
Rapid Spanning Tree
Creating a Stable STP Topology
Bridge Protocol Data Units
STP Port States
STP Port State Transitions
Illustration of STP
Before Applying the STA Rules
This example, only the default STP values are used
Parameter Description
Default Value
STP Parameters
STP Operation Levels
Port Priority
Rstp System Configuration
Parameter Description Default Value
128
RSTP, 802.1w
Rstp mode
Forward Delay Time
Protocol Version
Rstp Bridge Status page screenshot
Root Bridge Information
Costs on the least cost path to the Root Bridge
Rstp Port Configuration interface
Path Cost
Admin P2P
Admin Edge
Admin Non STP
Recommended STP Path Cost Range
Trunking
Aggregator Setting
Work ports
Aggregator Information
System Priority
Lacp
Assigning 2 ports to a trunk group with Lacp disabled
Trunk group
Lacp enabled
Switch 1 configuration
Switch 2 configuration interface
Switch 2 configuration
State Activity
Switch 1 Aggregator Information
Dynamic MAC Table
Forwarding and Filtering
Add the Static MAC Address
You can add static MAC address in the switch MAC table here
Static MAC Table
MAC Table Entries
Vlan ID for the entry
MAC Filtering
MAC Address Enter the MAC address that you want to filter
MAC Filtering interface
About the Internet Group Management Protocol Igmp Snooping
Igmp Snooping
Multicast flooding
Octets Type Response Time
Igmp Versions 1
Igmp State Transitions
Igmp Querier
Will be displayed in Igmp status section
Igmp Configuration
Understand QOS
QoS Configuration
802.1Q Tag and 802.1p priority
QoS Configuration
Priority Queue Service settings
802.1p priority
First Come First Service
Weighted Round Robin
All High before Low
TOS/DSCP
QoS PerPort Configuration
DiffServ
TOS/DSCP Configuration
Precedence
TOS MBZ
Dscp
TOS/DSCP Port Configuration
Object Description TOS/DSCP
QoS Configuration TOS/DSCP Port Status
Access Control List
Packet Type
Object Description Default Value
IPv4 ACL
Action
TCP
Type
Non-IPv4 ACL
Packet Type/Binding box should select Non-IPv4
Ether Type
Port Id
Binding
Limit
MAC Limit Configuration
MAC Limit
MAC Limit
This table displays current MAC Limit status of each port
MAC Limit Port Status
Understanding Ieee 802.1X Port-Based Authentication
802.1X Configuration
802.1x device role
125
EAP message exchange
System information \ Misc Configuration\ 802.1x Protocol
System Configuration
NAS, Identifier Set the identifier for the Radius client
802.1x Port Configuration
Shared Key
On the Radius Server
802.1x Per Port Setting interface
Misc Configuration
Power Management
Power Over Ethernet
Power over Ethernet Powered Device
PoE Configuration
PoE PSU Status
PoE Temperature Unit
Power limit mode
Power Allocation
PD Classifications
Power Limit
Dhcp Relay and Option
To configure Dhcp Relay
Lldp
Value is
Lldp Configuration
PerPort Configuration
Use this page to change Lldp parameters
Lldp Status
Lldp Per Port Configuration
Console Management
Login in to the Console Interface
GE-DS-82-PoEConsole Login screen
Show the current IP address
Configure IP address
Subnet Mask Gateway
Configure IP address
Exec
Commands Level
Following table lists the CLI commands and description
144
Operation Notice
Switch# configure
Switch config #
Key Function
System Commands
Command Line Editing
Command Help
Parameters
Switch Static Configuration
Port Configuration and show status
Syntax
Set port effective ingress or egress rate
Enable or disable port flow control
Port flow enable disable enable disable port-list
Port priority disable low high port-list
Port jumboframe enable disable port-list
Port-id specifies the port to be shown
Show protected port information
Show trunking information
Trunk Configuration
Trunking Commands
Lacp Commands
Syntax Lacp system-priority Parameters
Port-idspecifies the port to be shown
Virtual LANs
Show Lacp information by port
Syntax Show lacp port port-idParameters
Display the current Vlan mode
Vlan Mode Port-based
Ingress filters configuration
Advanced 802.1Q Vlan Configuration
Change Vlan mode
Disabled port-based dot1q specifies the Vlan mode
Delete Vlan entry
Add or edit Vlan entry
Syntax Vlan add 1-4094 Name cpu-portno-cpu-port List List
Specifies the Vlan id, null means all valid entries. e.g
Show Vlan entry information
Vlan
Syntax Show vlan pvid List Parameters
Show port default Vlan id
Show static Vlan entry information
162
Syntax Show vlan filter List Parameters
Show Vlan filter setting
Set ingress filter rules
Forward
Mac-age-time Parameters
Misc Configuration
No mac-age-time Description
Syntax Collision-Retry off 16 32 Parameters
Collision-Retry setting
No hostname
Administration Configuration
Change Username / Password
Syntax Hostname name-str Parameters
Show IP address, subnet mask, and the default gateway
User can configure the IP setting and fill in the new value
Set the default gateway IP address
Syntax Ip default-gateway ip-addr
Show dhcp enable/disable
Reboot switch
Reset to Default
Set switch as dhcp client, it can get ip from dhcp server
Download firmware from Tftp server
Tftp Update Firmware
Restore Configure File
Copy tftp running config flash Description
Ip-addr specifies the IP address of the Tftp server
Backup Configure File
Copy running config flash tftp Description
Syntax Mac-limit port-list
No mac-limit Description
Mac-limit Description
Show port monitoring information
Port Mirroring Configuration
Syntax Mirror-port rx tx both port-idport-list Parameters
Quality of Service
Set 802.1p priority
Per Port Priority
Syntax Port priority disable 0-7 port-list Parameters
Syntax No mac-address-table static mac-addrvlan-id
MAC Address Configuration
Mac-address-table static Description
No mac-address-table static mac-addr Description
Show smac-address-table multicast Description
Show mac-address-table static Description
Show mac-address-table multicast Description
Smac-address-table static Description
Spanning-tree hello-time Description
STP/RSTP Commands
Spanning-tree forward-delay Description
Syntax Spanning-tree forward-delay 4-30 Parameters
Syntax Spanning-tree priority 0-61440 Parameters
Spanning-tree maximum-age Description
Syntax Spanning-tree maximum-age 6-40 Parameters
Spanning-tree priority Description
Spanning-tree debug Description
Show spanning-tree port Description
Syntax Show spanning-tree port port-list Parameters
Syntax No spanning-tree port mcheck port-list Parameters
Spanning-tree protocol version Description
Syntax Spanning-tree protocol-version stp rstp Parameters
No spanning-tree port mcheck Description
Spanning-tree point-to-point mac Description
No spanning-tree port non-stp Description
Syntax No spanning-tree port non-stp port-list Parameters
Snmp system-name Description
System Options
Snmp /no snmp Description
Show snmp status Description
Syntax Snmp system-contact contact-str Parameters
Snmp system-location Description
Syntax Snmp system-location location-str Parameters
Snmp system-contact Description
Syntax No snmp community community-str Parameters
Community Strings
Set Snmp community string
Delete Snmp community string
Syntax No snmp trap ip-addr 1..65535 Parameters
Trap Managers
Syntax Snmp trap ip-addr community-str 1..65535 Parameters
Remove trap receiver IP address and port number
Syntax No igmp CrossVLAN
Syntax No igmp fastleave
Syntax No igmp querier
Syntax Show igmp status router groups table Parameters
Enable/disable Igmp snooping debugging output
Syntax No igmp debug
Show Igmp snooping information
Radius-server key Description
802.1x Protocol
Dot1x Description
Radius-server host Description
Radius-server nas Description
Syntax Dot1x timeout quiet-period 0..65535 Parameters
Dot1x timeout tx-period Description
Syntax Dot1x timeout tx-period 0..65535 Parameters
Syntax Dot1x timeout radius-server 1..300 Parameters
Dot1x timeout supplicant Description
Syntax Dot1x timeout supplicant 1..300 Parameters
Dot1x timeout radius-server Description
Show 802.1x per port information
Set 802.1x per port information
Syntax Dot1x port fu fa au no port-list Parameters
Syntax No acl 1-220 Parameters
Ipv4 ACL commands
Show ACL group information
Add or edit ACL group for Ipv4
Acl addedit 1-220 permitdeny 0-4094 ipv4 0-255 Description
Acl addedit 1-220 qosvoip 0-4094 Description
Non-Ipv4 ACL commands
Commands
Add or edit ACL group for non-Ipv4
Binding
SIP/SMAC binding commands
Syntax Bind add 1-220 Abcdef 0-4094 A.B.C.D 1-26 Parameters
Show Binding group information
Add Binding group
Global Configuration Example
Power over Ethernet Commands GE DS-82-PoE
Show System Power over Ethernet information
Command Level
Syntax Show poe status port-list Parameters
Global Configuration
Show per PoE port information
Configure System PoE power limit mode information
Configure PoE Over Temperature Protection
Configure PoE System
Poe temperature-protection enablex4 Description
No Limit
Enabling or disabling the port POE injects function
Configure PoE -- Port
Syntax Poe priority Critical High Low port-list Parameters
Poe maximum-power Description
208
Forwarding & Filtering
Address Table
Learning
Auto-Negotiation
Store-and-Forward
What is PoE?
Power Over Ethernet Overview
PoE System Architecture
How Power is Transferred Through the Cable
References
When to install PoE?
Consider the following scenarios
PoE Provision Process
Stages of powering up a PoE link
Microsemi /PowerDsine Linear Tech
Operation
Line Detection
Classification
Start-up
AC Disconnect
Power Overloads
Power Disconnection Scenarios
DC Disconnect
Why the Switch doesnt connect to the network? Solution
Link LED is not lit Solution
Performance is poor Solution
While IP Address be changed or forgotten admin password
Switch does not power up Solution
1000Mbps, 1000Base T
Switchs RJ-45 Pin Assignments
Tx + transmit Rx + receive Tx transmit Rx receive Not used
10/100Mbps, 10/100Base-TX
Standard cable, RJ-45 pin assignment
Crossover Cable
Straight Cable
Side SIDE2
Side