TL-SG3424P JetStream L2 Managed PoE Switch
REV2.0.0 1910010781
Copyright & Trademarks FCC Statement
Safety Information
Contents
Gvrp
VII
Viii
177
220
Package Contents
Conventions
About this Guide
Intended Readers
Overview of This Guide
System Switching Vlan Spanning Tree Multicast
QoS PoE ACL Network Security Snmp
Return to Contents
Introduction
Overview of the Switch
Main Features
¾ LEDs
Appearance Description
Front Panel
LED
Status Indication
Rear Panel
Configuration
Login to the Switch
Login
Return to Contents
System Summary
System
System Info
¾ Port Status
Speed
Port
Type
Status
¾ Device Description
Device Description
System Time
Daylight Saving Time
Recurring Mode
¾ DST Config
Predefined Mode
Date Mode
¾ IP Config
System IP
User Table
User Config
User Management
User Status
User ID, Name, Access Level and status Operation
¾ User Info
¾ User Table
¾ Config Restore
Config Restore
Config Backup
System Tools
Firmware Upgrade
¾ Config Backup
System Reset
Access Security
System Reboot
Access Control
IP Address&Mask
¾ Access Control Config
¾ Session Config
MAC Address
SSL Config
¾ Access User Number
¾ Certificate Download
SSH Config
¾ Global Config
¾ Key Download
Max Connect
Idle Timeout
Protocol
Download
¾ Configuration Procedure
Key Type
¾ Network Requirements
Application Example 2 for SSH
Page
Return to Contents
Port
Switching
Port Config
Port Select
Speed and Duplex
Port Mirror
Description
Flow Control
Mode
Group
Mirroring
Mirrored Port
Ingress
Port Security
¾ Mirrored Port
Egress
Learned Num
¾ Port Security
Max Learned MAC
¾ Port Isolation Config
Port Isolation
Forward Portlist Display the forwardlist
Loopback Detection
¾ Port Isolation List
Interval It’s 3 seconds
Operation Mode
LAG
LAG Table
LAG Table
Group Number
Static LAG
¾ LAG Table
Member
Lacp Config
Member Port
10 Lacp Config
¾ Lacp Config
Traffic Summary
Admin Key
Traffic Monitor
Port Priority
Octets Rx
Packets Rx
Packets Tx
Octets Tx
Traffic Statistics
Bound
Type Configuration Way Aging out
MAC Address
Address and the port
Address Table
Relationship
¾ Address Table
Static Address
¾ Search Option
Displays the corresponding Vlan ID of the MAC address
¾ Create Static Address
¾ Static Address Table
Dynamic Address
¾ Aging Config
¾ Dynamic Address Table
Filtering Address
Bind
¾ Create Filtering Address
¾ Filtering Address Table
Vlan
802.1Q Vlan
¾ Link Types of ports
¾ Pvid
Vlan ID Select:
Vlan Config
¾ Vlan Table
Select:
Is valid or not
¾ Vlan Config
Enter the ID number of Vlan
¾ Vlan Members
¾ Vlan Port Config
Port Displays the port number
Vlan Description
Required. On the VLAN→802.1Q VLAN→Port Config page, set
¾ Vlan of Port
Step Operation Description
Required. On the VLAN→802.1Q VLAN→VLAN Config
Optional. On the VLAN→802.1Q VLAN→VLAN Config
MAC Select
Protocol Vlan
¾ MAC Vlan Table
¾ Encapsulation Format of Ethernet Data
802.3 raw 802.2 LLC Snap Protocol
Vlan packets are processed in the following way
Protocol Group Table
Protocol Group
¾ Protocol Group Table
¾ Protocol Group Member
¾ Protocol Group Config
Protocol Template
¾ Protocol Template Table
Required. On the VLAN→802.1Q VLAN→Port Config
¾ Create Protocol Template
Required. On the VLAN→Protocol VLAN→Protocol
¾ Network Diagram
Application Example for 802.1Q Vlan
Optional. On the VLAN→Protocol VLAN→Protocol Vlan
Application Example for MAC Vlan
Required. On VLAN→802.1Q VLAN→Port Config page, configure
Required. On VLAN→802.1Q VLAN→VLAN Config page, create a
Operation Description
¾ Network Diagram ¾ Configuration Procedure
Application Example for Protocol Vlan
Required. On VLAN→Protocol VLAN→Protocol Template
Gvrp
On VLAN→Protocol VLAN→Protocol Group page, create protocol
¾ Gvrp
Registration Mode
Gvrp
Configuration Procedure
Spanning Tree
¾ STP Elements
¾ STP Generation
¾ STP Timers
¾ Bpdu Comparing Principle in STP mode
Step Operation
Tips :
¾ Rstp Elements
¾ Mstp Elements
¾ Port States
¾ Port Roles
STP Config
STP Config
Hello Time
Forward Delay
Version
Max Age
STP Summary
Port Config
STP Summary
IntPath
Priority
ExtPath
Edge Port
Port Status
Region Config
Mstp Instance
Instance Config
¾ Region Config
Instance
Instance Port Config
¾ Instance Table
Clear
Port Role
Instance ID
Path Cost
STP Security
Port Protect
¾ Bpdu Filter
¾ TC Protect
¾ Bpdu Protect
TC Protect
Loop Protect
Root Protect
Bpdu Protect
Application Example for STP Function
TC Protect
On Spanning Tree→MSTP Instance→Instance
On Spanning Tree→STP Config→STP Config
On Spanning Tree→STP Config→Port Config
Configure Switch D
¾ Suggestion for Configuration
Multicast
¾ Multicast Overview
Multicast IP Port
¾ Multicast Address
¾ Multicast Address Table
¾ Igmp Snooping Process
Igmp Snooping
¾ Igmp Snooping
¾ Igmp Messages
Snooping Config
¾ Igmp Snooping Fundamentals
¾ Igmp Snooping Status
Description Displays Igmp Snooping status Member
Igmp Snooping
Fast Leave
Leave Time
Router Port Time
Member Port Time
Static Router Port
Multicast Vlan
Snooping→Snooping Config and Port Config
Multicast→IGMP Snooping→VLAN Config
Multicast→IGMP
¾ Multicast Vlan
Vlan
On the Multicast→IGMP Snooping→Snooping Config
Multicast→IGMP Snooping→Multicast Vlan
Multicast IP
Snooping→Port Config
Snooping→Snooping Config
Multicast IP Table
Static Multicast IP
¾ Create Static Multicast
Multicast Filter
IP-Range
¾ Static Multicast IP Table
Start Multicast IP
Port Filter
IP Range ID
End Multicast IP
Filter
¾ Port Filter Config
Action Mode
Bound IP-Range ID
Multicast→Multicast Filter→Port Filter
Packet Statistics
Multicast→Multicast Filter→IP-Range
¾ Igmp Statistics
¾ QoS
¾ Priority Mode
QoS
¾ Schedule Mode
117
Port Priority
¾ Port Priority Config
DiffServ
Displays the LAG number which the port belongs to
Dscp Priority
Required. On QoS→DiffServ→Schedule Mode
¾ Dscp Priority Config
Required. On QoS→DiffServ→Port Priority
Required. On QoS→DiffServ→DSCP Priority
3 802.1P/CoS mapping
¾ Priority Level
¾ Schedule Mode Config
Schedule Mode
¾ Priority and CoS-mapping Config
Bandwidth Control
Rate Limit
Ingress Rate Kbps
¾ Rate Limit Config
Storm Control
Egress RateKbps
Multicast Rate
¾ Storm Control Config
Port Broadcast Rate bps
Bps
Number OUI Address Vendor
¾ Port Voice Vlan Mode
Voice Vlan
¾ Security Mode of Voice Vlan
Security Packet Type Processing Mode
Global Config
12 Global Configuration
Port Mode
13 Port Config
OUI Config
Required. On VLAN→802.1Q VLAN→Port Config page, click
Mask
¾ Composition
PoE Config
PoE
¾ Advantage
PoE Priority
PoE Config
PoE Status
PoE Profile
¾ PoE Profile
PoE Time-Range
Time-Range Summary
Profile Name
PoE Time-Range Create
End Time
PoE Holiday Config
Index
Delete
¾ Time-Range Table
ACL
Time-Range
Index Displays the index of the time-slice Start Time
Time-Range Create
Holiday
ACL Config
Holiday Config
¾ Rule Table
ACL Summary
ACL Create
¾ Create ACL
EtherType
MAC ACL
Rule ID
User Priority
¾ Create Standard-IP ACL
Standard-IP ACL
Extend-IP ACL
TCP Flag :
¾ Create Extend-IP ACL
IP Protocol
IP ToS
Policy Create
Policy Config
Policy Summary
¾ Create Action
Action Create
¾ Create Policy
¾ Policy Bind Table
Policy Binding
Binding Table
Vlan Binding
¾ Port-Bind Config
Port Binding
Direction Displays the binding direction
Enter the ID of the Vlan you want to bind
¾ VLAN-Bind Config
Application Example for ACL
¾ VLAN-Bind Table
On ACL→ACL Config→ACL Create page, create ACL
On ACL→ACL Config→Standard-IP ACL page, select ACL
Network Security
IP-MAC Binding
Manual Binding
Protect Type Select the Protect Type for the entry
¾ Manual Binding Option
Enter the Vlan ID
¾ Manual Binding Table
ARP Scanning
End IP Address
Dhcp Snooping
Start IP Address
Scan
Network diagram for DHCP-snooping implementation
¾ Dhcp Working Principle
¾ Option
Dhcp Cheating Attack Implementation Procedure
¾ Dhcp Cheating Attack
¾ Dhcp Snooping Config
Customization Circuit ID Remote ID
¾ Option 82 Config
¾ Port Config Port Select
¾ Cheating Gateway
ARP Inspection
¾ Imitating Gateway
10 ARP Attack Cheating Gateway
¾ Cheating Terminal Hosts
¾ Man-In-The-Middle Attack
¾ ARP Flooding Attack
¾ Trusted Port
ARP Detect
¾ ARP Detect
Network Security→ARP
ARP Defend
Required. On the Network Security→IP-MAC
Current Speed
¾ ARP Defend
Defend
¾ Illegal ARP Packet
DoS Defend
ARP Statistics
DoS Attack Type Description
12.4
¾ Configure
¾ Architecture of 802.1X Authentication
¾ Defend Table
¾ The Mechanism of an 802.1X Authentication System
¾ 802.1X Authentication Procedure
19 PAP Authentication Procedure
¾ 802.1X Timer
¾ Guest Vlan
Guest Vlan
Authentication Method
802.1X
Guest Vlan ID
Retry Times
Supplicant Timeout
Server Timeout
Radius Server
Control Mode
¾ Authentication Config
Control Type
Required. On the Network Security→802.1X→Port
On the Network Security→802.1X→Global Config
Required. On the Network Security→802.1X→Radius
¾ Snmp Management Frame
Snmp
¾ Snmp Overview
¾ Snmp Versions
¾ Snmp Configuration Outline
¾ MIB Introduction
¾ Remote Engine
Snmp Config
¾ Local Engine
MIB Object ID
Snmp View
View Name
View Type
¾ Group Config
Snmp Group
Snmp User
Privacy Mode
Auth Mode
Auth Password
Privacy Password
Snmp Community
¾ Community Config
Access
MIB View
Required. On the SNMP→SNMP Config→Global
Required. On the SNMP→SNMP Config→SNMP
¾ Community Table
On the SNMP→SNMP Config→SNMP
Notification
User
Timeout
UDP Port
Retry
¾ Rmon Group
Rmon
¾ Notification Table
Rmon Group Function
¾ History Control Table
Event Config
History Control
Alarm Config
¾ Event Table
Sample Type
Alarm Type
Variable
Rising Threshold
194
Lldp
¾ Lldpdu Format
¾ TLV
TLV type TLV Name Description Usage
Basic Management TLV
Organizationally Specific TLV
Port Description TLV
Configuration/Status TLV
Power Via MDI TLV
System Capabilities TLV
Basic Config
Lldp
¾ Lldp Port Config
Lldp Port Config
Details
Device Info
Local Info
¾ Neighbor Info
Neighbor Info
¾ Local Info
Device Statistics
¾ Global Statistics
Receive Total
Errors
Transmit Total
Discards
Location Identification TLV
Extended Power-Via-MDI TLV
¾ LLDP-MED Parameters Config
Inventory TLV
¾ LLDP-MED Port Config
LLDP-MED Port Configuration
Emergency
¾ Included TLVs
¾ Location Identification Parameters
Civic Address
LLDP-MED Local Information
LLDP-MED Neighbor Information
Cluster
¾ Cluster Role
15.1 NDP
¾ Introduction to Cluster
NDP Summary
¾ Neighbor
Send NDP Packets
Error NDP Packets
Aging Time
Receive NDP Packets
NDP Config
Detail :
Ntdp
Enable
Disable
Device Table
Ntdp Summary
Port Displays the port number of the switch
Ntdp Summary
Ntdp Interval Time
Ntdp Config
Ntdp Hop Delay
Ntdp Hops
¾ Global
Cluster
Cluster Summary
Cluster
Cluster Config
¾ Global Config Cluster
¾ Current Role
¾ Role Change
14 Cluster Configuration for Individual Switch
Application Example for Cluster Function
On Cluster→NDP→NDP Config page, enable NDP
On Cluster→NTDP→NTDP Config page, enable
On Cluster→Cluster→Member Config page, select
On Cluster→Cluster→Cluster Topology
CPU Monitor
Maintenance
System Monitor
Memory Monitor
16.2 Log
Time
Log Table
¾ Log Info
Module
Remote Log
¾ Local Log Config
Local Log
Log Buffer
Host IP
Backup Log
¾ Log Host
Cable Test
Device Diagnostics
Error
Pair
Ping
Network Diagnostics
Loopback
¾ Ping Config
Tracert
¾ Tracert Config
Appendix a Specifications
Appendix B Configuring the PCs
Figure B-2
Now
Configure the Hyper Terminal
Appendix C Load Software Using FTP
Hardware Installation
239
Download Firmware via bootUtil menu
Figure C-5 Port Settings
TP-LINK upgrade You can only use the port 1 to upgrade
Are you want to upgrade the firmwareY/N y
TP-LINK start Start
User
Installation Guide
Appendix D 802.1X Client Software
244
245
Uninstall Software
Figure D-7 InstallShield Wizard Complete
Configuration
Figure D-11 Uninstall Complete
248
Figure D-16 Connection Status
FAQ
Appendix E Glossary
Group Attribute Registration Protocol Garp
Multicast Switching
Generic Multicast Registration Protocol Gmrp
Ieee 802.1D
Layer
Port Authentication
Remote Authentication Dial-in User Service Radius
Link Aggregation
Simple Network Time Protocol Sntp
Secure Shell SSH
Simple Network Management Protocol Snmp
Spanning Tree Algorithm STA