Summary of DGS-3000 series

  • Page 2

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide i information in this document is subject to change without notice. © 2013 d-link corporation. All rights reserved. Reproduction of this document in any manner whatsoever without the written permission of d-link corporation is str...

  • Page 3: Table Of Contents

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide ii table of contents intended readers ............................................................................................................................................................ 1 typographical conventions ..........

  • Page 4

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide iii firmware upgrade ..................................................................................................................................................... 43 configuration file backup/restore .........................

  • Page 5

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide iv mac address aging time settings ........................................................................................................................... 90 mac address table .....................................................

  • Page 6

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide v 802.1x ......................................................................................................................................................................... 184 802.1x global settings ...........................

  • Page 7

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide vi authentication policy settings ................................................................................................................................. 230 application authentication settings .............................

  • Page 8

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide vii chapter 11 monitoring ......................................................................................................................................... 281 utilization .....................................................

  • Page 9: Intended Readers

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 1 intended readers typographical conventions notes, notices and cautions safety instructions general precautions for rack-mountable products protecting against electrostatic discharge the dgs-3000 series web ui reference guide con...

  • Page 10: Chapter 1

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 2 chapter 1 web-based switch configuration introduction login to the web manager web-based user interface web pages introduction most software functions of the dgs-3000 series switches can be managed, configured and monitored via ...

  • Page 11: Web-Based User Interface

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 3 web-based user interface the user interface provides access to various switch configuration and management windows, allows you to view performance statistics, and permits you to graphically monitor the system status. Areas of th...

  • Page 12: Web Pages

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 4 web pages when connecting to the management mode of the switch with a web browser, a login screen is displayed. Enter a user name and password to access the switch's management mode. Below is a list of the main folders available...

  • Page 13: Chapter 2

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 5 chapter 2 system configuration device information system information settings port configuration serial port settings warning temperature settings system log configuration time range settings time settings user accounts settings...

  • Page 14: Port Configuration

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 6 figure 2-2 system information settings window the fields that can be configured are described below: parameter description system name enter a system name for the switch, if so desired. This name will identify it in the switch n...

  • Page 15

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 7 figure 2-3 ddm settings window the fields that can be configured are described below: parameter description trap state specify whether to send the trap, when the operating parameter exceeds the alarm or warning threshold. Log st...

  • Page 16

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 8 figure 2-4 ddm temperature threshold settings window the fields that can be configured are described below: parameter description from port / to port select a range of ports to be configured. High alarm (-128- 127.996) this is t...

  • Page 17

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 9 figure 2-5 ddm voltage threshold settings window the fields that can be configured are described below: parameter description from port / to port select a range of ports to be configured. High alarm (0-6.55) this is the highest ...

  • Page 18

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 10 figure 2-6 ddm bias current threshold settings window the fields that can be configured are described below: parameter description from port / to port select a range of ports to be configured. High alarm (0-131) this is the hig...

  • Page 19

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 11 figure 2-7 ddm tx power threshold settings window the fields that can be configured are described below: parameter description from port / to port select a range of ports to be configured. High alarm (0- 6.5535) this is the hig...

  • Page 20

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 12 figure 2-8 ddm rx power threshold settings window the fields that can be configured are described below: parameter description from port / to port select a range of ports to be configured. High alarm (0- 6.5535) this is the hig...

  • Page 21: Port Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 13 figure 2-9 ddm status table window port settings this page used to configure the details of the switch ports. To view the following window, click system configuration > port configuration > port settings, as show below:.

  • Page 22

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 14 figure 2-10 port settings window to configure switch ports: 1. Choose the port or sequential range of ports using the from port and to port drop-down menus. 2. Use the remaining drop-down menus to configure the parameters descr...

  • Page 23: Port Description Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 15 the two physical layers. The timing control is set on a masterphysical layer by a local source. The slavesetting (1000m full_slave) uses loop timing, where the timing comes from a data stream received from the master. If one co...

  • Page 24: Port Error Disabled

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 16 figure 2-11 port description settings window the fields that can be configured are described below: parameter description from port / to port select the appropriate port range used for the configuration here. Medium type specif...

  • Page 25: Jumbo Frame Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 17 port state describe the current running state of the port, whether enabled or disabled. Connection status display the uplink status of the individual ports, whether enabled or disabled. Reason describe the reason why the port h...

  • Page 26: Eee Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 18 the fields that can be displayed are described below: parameter description port display the port number. Type display the port media type. Eee settings energy efficient ethernet (eee) is defined in ieee 802.3az. It is designed...

  • Page 27: Warning Temperature Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 19 figure 2-16 serial port settings window the fields that can be configured or displayed are described below: parameter description baud rate specify the baud rate for the serial port on the switch. There are four possible baud r...

  • Page 28: System Log Configuration

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 20 system log configuration system log settings the switch allows users to choose a method for which to save the switch log to the flash memory of the switch. To view the following window, click system configuration > system log c...

  • Page 29: System Log

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 21 severity use the drop-down menu to select the higher level of messages that will be sent. All messages which level is higher than selecting level will be sent. The options are emergency (0), alert (1), critical (2), error (3), ...

  • Page 30: System Severity Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 22 click the clear log button to clear the entries from the log in the display section. Click the clear attack log button to clear the entries from the attack log in the display section. The switch can record event information in ...

  • Page 31: Time Range Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 23 parameter description system severity choose how the alerts are used from the drop-down menu. Select log to send the alert of the severity type configured to the switch’s log for analysis. Choose trap to send it to an snmp agen...

  • Page 32: User Accounts Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 24 figure 2-24 time settings window the fields that can be configured are described below: parameter description date (dd / mm / yyyy) enter the current day, month, and year to update the system clock. Time (hh:mm:ss) enter the cu...

  • Page 33: Command Logging Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 25 user name enter a new user name for the switch. Password enter a new password for the switch. Confirm password re-type in a new password for the switch. Access right specify the access right for this user. Encryption specifies ...

  • Page 34: Chapter 3

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 26 chapter 3 management arp gratuitous arp ipv6 neighbor settings ip interface management settings session table single ip management snmp settings telnet settings web settings power saving arp static arp settings the address reso...

  • Page 35: Gratuitous Arp

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 27 to view the following window, click management > arp > arp table, as show below: figure 3-2 arp table window the fields that can be configured are described below: parameter description interface name enter or view the interfac...

  • Page 36: Gratuitous Arp Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 28 case, the system knows that somebody out there uses an ip address that is conflict with the system. In order to reclaim the correct host of this ip address, the system can send out the gratuitous arp request packets for this du...

  • Page 37: Ip Interface

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 29 figure 3-5 ipv6 neighbor settings window the fields that can be configured are described below: parameter description interface name enter the interface name of the ipv6 neighbor. Neighbor ipv6 address enter the neighbor ipv6 a...

  • Page 38

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 30 to view the following window, click management > ip interface > system ip address settings, as show below: figure 3-6 system ip address settings window the fields that can be configured are described below: parameter descriptio...

  • Page 39: Interface Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 31 switch to be accessible outside your local network, you can leave this field unchanged. Click the apply button to accept the changes made. Interface settings users can display the switch’s current ip interface settings. To view...

  • Page 40

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 32 click the apply button to accept the changes made. Click the button to discard the changes made and return to the previous page. Click the ipv4 edit button to see the following window. Figure 3-9 ipv4 interface settings – edit ...

  • Page 41: Management Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 33 parameter description interface name display the ipv6 interface name. Ipv6 state use the drop-down menu to enable or disable ipv6 state. Interface admin state use the drop-down menu to enable or disable the interface admin stat...

  • Page 42: Session Table

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 34 figure 3-12 management settings window the fields that can be configured are described below: parameter description cli paging state command line interface paging stops each page at the end of the console. This allows you to st...

  • Page 43: Single Ip Management

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 35 single ip management d-link single ip management is a concept that will stack switches together over ethernet instead of using stacking ports or modules. There are some advantages in implementing the “single ip management” feat...

  • Page 44: Single Ip Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 36 5. The user can manually configure a cas to become a cs 6. The cas can be configured through the cs to become a ms. After configuring one switch to operate as the cs of a sim group, additional dgs-3000 series switches may join ...

  • Page 45: Topology

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 37 figure 3-14 single ip settings window the fields that can be configured are described below: parameter description sim state use the drop-down menu to either enable or disable the sim state on the switch. Disabled will render a...

  • Page 46

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 38 figure 3-15 single ip management window - tree view the topology window holds the following information on the data tab: parameter description device name this field will display the device name of the switches in the sim group...

  • Page 47

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 39 figure 3-16 topology view this window will display how the devices within the single ip management group connect to other groups and devices. Possible icons on this window are as follows: icon description icon description group...

  • Page 48

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 40 figure 3-17 device information utilizing the tool tip setting the mouse cursor over a line between two devices will display the connection speed between the two devices, as shown below. Figure 3-18 port speed utilizing the tool...

  • Page 49

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 41 figure 3-19 right-clicking a group icon the following options may appear for the user to configure: • collapse – to collapse the group that will be represented by a single icon. • expand – to expand the sim group, in detail. • ...

  • Page 50

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 42 member switch icon figure 3-22 right-clicking a member icon the following options may appear for the user to configure: • collapse – to collapse the group that will be represented by a single icon. • expand – to expand the sim ...

  • Page 51: Firmware Upgrade

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 43 group 1. Add to group – add a candidate to a group. Clicking this option will reveal the following dialog box for the user to enter a password for authentication from the candidate switch before being added to the sim group. Cl...

  • Page 52: Upload Log File

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 44 configuration file, enter the server ip address where the file resides and enter the path/filename of the configuration file. Click restore to initiate the file transfer from a tftp server to the switch. Click backup to backup ...

  • Page 53: Snmp Global Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 45 snmpv3 uses a more sophisticated authentication process that is separated into two parts. The first part is to maintain a list of users and their attributes that are allowed to act as snmp managers. The second part describes wh...

  • Page 54: Snmp Traps Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 46 click the apply button to accept the changes made. Snmp traps settings users can enable and disable the snmp trap support function of the switch and snmp authentication failure trap support, respectively. To view the following ...

  • Page 55: Snmp View Table Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 47 figure 3-33 snmp linkchange traps settings window the fields that can be configured are described below: parameter description from port / to port select the starting and ending ports to use. State use the drop-down menu to ena...

  • Page 56

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 48 the fields that can be configured are described below: parameter description view name type an alphanumeric string of up to 32 characters. This is used to identify the new snmp view being created. Subtree oid type the object id...

  • Page 57: Snmp Group Table Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 49 snmp group table settings an snmp group created with this table maps snmp users (identified in the snmp user table) to the views created in the previous window. To view the following window, click management > snmp settings > s...

  • Page 58: Snmp User Table Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 50 to view the following window, click management > snmp settings > snmp engine id settings, as show below: figure 3-37 snmp engine id settings window the fields that can be configured are described below: parameter description en...

  • Page 59: Snmp Host Table Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 51 sha – specify that the hmac-sha authentication protocol will be used. This field is only operable when v3 is selected in the snmp version field and the encryption field has been checked. This field will require the user to ente...

  • Page 60: Rmon Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 52 3-40 snmp v6host table settings the fields that can be configured are described below: parameter description host ipv6 address type the ipv6 address of the remote management station that will serve as the snmp host for the swit...

  • Page 61: Telnet Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 53 telnet settings users can configure telnet settings on the switch. To view the following window, click management > telnet settings, as show below: figure 3-42 telnet settings window the fields that can be configured are descri...

  • Page 62: Power Saving Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 54 figure 3-44 led state settings window the fields that can be configured are described below: parameter description led state click the radio buttons to enable or disable the port led state. Click the apply button to accept the ...

  • Page 63: Power Saving Led Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 55 time range name specify the name of the schedule. Click the apply button to accept the changes made for each individual section. Click the clear time range to remove all the entries. Power saving led settings this window is use...

  • Page 64: Chapter 4

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 56 chapter 4 l2 features vlan qinq layer 2 protocol tunneling settings spanning tree link aggregation fdb l2 multicast control multicast filtering erps settings lldp nlb fdb settings vlan understanding ieee 802.1p priority priorit...

  • Page 65

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 57 vlans can enhance performance by conserving bandwidth, and improve security by limiting traffic to specific domains. A vlan is a collection of end nodes grouped by logic instead of physical location. End nodes that frequently c...

  • Page 66

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 58 the main characteristics of ieee 802.1q are as follows: • assigns packets to vlans by filtering. • assumes the presence of a single global spanning tree. • uses an explicit tagging scheme with one-level tagging. • 802.1q vlan p...

  • Page 67

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 59 figure 4-3 adding an ieee 802.1q tag port vlan id packets that are tagged (are carrying the 802.1q vid information) can be transmitted from one 802.1q compliant network device to another with the vlan information intact. This a...

  • Page 68

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 60 if a packet has previously been tagged, the port will not alter the packet, thus keeping the vlan information intact. Other 802.1q compliant devices on the network to make packet-forwarding decisions can then use the vlan infor...

  • Page 69: 802.1Q Vlan Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 61 on port-based vlans, nics do not need to be able to identify 802.1q tags in packet headers. Nics send and receive normal ethernet packets. If the packet’s destination lies on the same segment, communications take place using no...

  • Page 70

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 62 figure 4-5 802.1q vlan settings – add/edit vlan tab window the fields that can be configured are described below: parameter description vid allow the entry of a vlan id or displays the vlan id of an existing vlan in the add/edi...

  • Page 71

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 63 figure 4-6 802.1q vlan settings – find vlan tab window enter the vlan id number in the field offered and then click the find button. You will be redirected to the vlan list tab. To create, delete and configure a vlan batch entr...

  • Page 72: 802.1V Protocol Vlan

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 64 the port as forbidden. Click the apply button to accept the changes made. Note: the switch supports up to 4k static vlan entries. 802.1v protocol vlan 802.1v protocol group settings the user can create protocol vlan groups and ...

  • Page 73

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 65 note: the group name value should be less than 33 characters. 802.1v protocol vlan settings the user can configure protocol vlan settings. The lower half of the table displays any previously created settings. To view the follow...

  • Page 74: Gvrp

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 66 click the delete all button to remove all the entries listed. Click the edit button to re-configure the specific entry. Click the delete button to remove the specific entry. Gvrp gvrp global settings users can determine whether...

  • Page 75: Mac-Based Vlan Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 67 figure 4-11 gvrp port settings window the fields that can be configured are described below: parameter description from port / to port select the starting and ending ports to use. Pvid (1-4094) this field is used to manually as...

  • Page 76: Private Vlan Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 68 figure 4-12 mac-based vlan settings the fields that can be configured are described below: parameter description mac address specify the mac address. Vid (1-4094) select this option and enter the vlan id. Vlan name select this ...

  • Page 77

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 69 figure 4-13 private vlan settings window the fields that can be configured are described below: parameter description vlan name enter a vlan name. Vid (2-4094) enter a vid value. Vlan list enter a list of vlan id. Click the add...

  • Page 78: Pvid Auto Assign Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 70 pvid auto assign settings users can enable or disable pvid auto assign status. The default setting is enabled. To view the following window, click l2 features > vlan > pvid auto assign settings, as show below: figure 4-15 pvid ...

  • Page 79

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 71 reset and stop. Log state used to enable or disable sending of issue of voice vlan log. Click the apply button to accept the changes made for each individual section. Voice vlan port settings this window is used to show the por...

  • Page 80

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 72 figure 4-18 voice vlan oui settings window the fields that can be configured are described below: parameter description oui address user defined oui mac address. Mask user defined oui mac address mask. Description the descripti...

  • Page 81: Vlan Trunk Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 73 vlan trunk settings enable vlan on a port to allow frames belonging to unknown vlan groups to pass through that port. This is useful if you want to set up vlan groups on end devices without having to configure the same vlan gro...

  • Page 82: Show Vlan Ports

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 74 figure 4-23 browse vlan window click the find button to locate a specific entry based on the information entered. Enter a page number and click the go button to navigate to a specific page when multiple pages exist. Note: the a...

  • Page 83

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 75 double vlans are basically vlan tags placed within existing ieee 802.1q vlans which we will call spvids (service provider vlan ids). These vlans are marked by a tpid (tagged protocol id), configured in hex form to be encapsulat...

  • Page 84: Qinq Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 76 5. The switch cannot have both double and normal vlans co-existing. Once the change of vlan is made, all access control lists are cleared and must be reconfigured. 6. Once double vlans are enabled, gvrp must be disabled. 7. All...

  • Page 85: Vlan Translation Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 77 outer tpid enter an outer tpid in sp-vlan tag here. Add inner tag specifies that an inner tag will be added to the entry. By default the disabled option is selected. Click the apply button to accept the changes made for each in...

  • Page 86: Spanning Tree

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 78 figure 4-28 layer 2 protocol tunneling settings window the fields that can be configured are described below: parameter description layer 2 protocol tunneling state click to enable or disable the layer 2 protocol tunneling stat...

  • Page 87

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 79 established regions on the network, continuing to allow simple and full processing of frames, regardless of administrative errors in defining vlans and their respective spanning trees. Each switch utilizing the mstp on a networ...

  • Page 88

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 80 rstp is capable of a more rapid transition to a forwarding state - it no longer relies on timer configurations - rstp compliant bridges are sensitive to feedback from other rstp compliant bridge links. Ports do not need to wait...

  • Page 89: Stp Port Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 81 stp state use the radio button to globally enable or disable stp. Stp version use the drop-down menu to choose the desired version of stp: stp - select this parameter to set the spanning tree protocol (stp) globally on the swit...

  • Page 90

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 82 figure 4-30 stp port settings window the fields that can be configured are described below: parameter description from port / to port select the starting and ending ports to be configured. External cost (0=auto) this defines a ...

  • Page 91: Stp Instance Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 83 choosing the false parameter indicates that the port does not have edge port status. Alternatively, the auto option is available. Restricted role use the drop-down menu to toggle restricted role between true and false. If set t...

  • Page 92: Mstp Port Information

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 84 figure 4-32stp instance settings window the fields that can be configured are described below: parameter description msti id enter the msti id in this field. An entry of 0 denotes the cist (default msti). Priority enter the pri...

  • Page 93: Link Aggregation

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 85 priority enter a value between 0 and 240 to set the priority for the port interface. A higher priority will designate the interface to forward packets first. A lower number denotes a higher priority. Click the find button to lo...

  • Page 94: Port Trunking Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 86 and 802.1x must not be enabled on the trunk group. Further, the lacp aggregated links must all be of the same speed and should be configured as full duplex. The master port of the group is to be configured by the user, and all ...

  • Page 95: Lacp Port Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 87 click the apply button to accept the changes made. Click the clear all button to clear out all the information entered. Click the add button to add a new entry based on the information entered. Note: the maximum number of ports...

  • Page 96: Fdb

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 88 fdb static fdb settings unicast static fdb settings users can set up static unicast forwarding on the switch. To view the following window, click l2 features > fdb > static fdb settings > unicast static fdb settings, as show be...

  • Page 97: Mac Notification Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 89 figure 4-38 multicast static fdb settings window the fields that can be configured are described below: parameter description vid the vlan id of the vlan the corresponding mac address belongs to. Multicast mac address the stati...

  • Page 98

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 90 figure 4-39 mac notification settings window the fields that can be configured are described below: parameter description state enable or disable mac notification globally on the switch interval (1-2147483647) the time in secon...

  • Page 99: Mac Address Table

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 91 is allowed to remain idle). To change this option, type in a different value representing the mac address’ age-out time in seconds. The mac address aging time can be set to any value between 10 and 1000000 seconds. The default ...

  • Page 100: L2 Multicast Control

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 92 figure 4-42 arp & fdb table window the fields that can be configured are described below: parameter description port select the port number to use for this configuration. Mac address enter the mac address to use for this config...

  • Page 101

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 93 figure 4-43 igmp snooping settings window the fields that can be configured are described below: parameter description igmp snooping state click to enable or disable the igmp snooping state. Max learned entry value (1-1024) ent...

  • Page 102

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 94 expiry time (1-65535) proxy reporting source ip enter the source ip of proxy reporting integrated report. Proxy reporting state use the drop-down menu to enable or disable the proxy reporting. If enabled, multiple igmp reports ...

  • Page 103

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 95 propagate routing packets out. Dynamic router port displays router ports that have been dynamically configured. Ports select the appropriate ports individually to include them in the router port configuration. Click the select ...

  • Page 104

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 96 figure 4-47 igmp snooping static group settings window the fields that can be configured are described below: parameter description vlan name enter the vlan name of the multicast group. Vid list enter the vid list or of the mul...

  • Page 105

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 97 figure 4-49 igmp router port window the fields that can be configured are described below: parameter description vid enter the vlan id of the multicast group. Click the find button to locate a specific entry based on the inform...

  • Page 106

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 98 click the clear data driven button to delete the specific igmp snooping group which is learned by the data driven feature of the specified vlan. Click the view all button to display all the existing entries. Click the clear all...

  • Page 107

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 99 port list the port list of the multicast group. Click the find button to locate a specific entry based on the information entered. Click the view all button to display all the existing entries. Click the packet statistics link ...

  • Page 108

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 100 vid list enter the vlan id or the list of vlan ids. Port list enter the port or the list of ports. Group address enter the group address. Click the find button to locate a specific entry based on the information entered. Click...

  • Page 109: Mld Snooping

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 101 mld snooping multicast listener discovery (mld) snooping is an ipv6 function used similarly to igmp snooping in ipv4. It is used to discover ports on a vlan that are requesting multicast data. Instead of flooding all ports on ...

  • Page 110

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 102 mld snooping settings users can configure the settings for mld snooping. To view the following window, click l2 features > l2 multicast control > mld snooping > mld snooping settings, as show below: figure 4-56 mld snooping se...

  • Page 111

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 103 group listener interval - amount of time that must pass before a multicast router decides there are no more listeners of a group on a network. Other querier present interval - amount of time that must pass before a multicast r...

  • Page 112

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 104 static router port this section is used to designate a range of ports as being connected to multicast- enabled routers. This will ensure that all packets with such a router as its destination will reach the multicast-enabled r...

  • Page 113

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 105 figure 4-60 mld snooping static group settings window the fields that can be configured are described below: parameter description vlan name the name of the vlan on which the static group resides. Vid list the id of the vlan o...

  • Page 114

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 106 figure 4-62 mld router port window parameter description vid enter a vlan id. Click the find button to locate a specific entry based on the information entered. Enter a page number and click the go button to navigate to a spec...

  • Page 115

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 107 mld snooping forwarding table this page displays the switch’s current mld snooping forwarding table. It provides an easy way for user to check the list of ports that the multicast group comes from and specific sources that it ...

  • Page 116

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 108 click the view all button to display all the existing entries. Click the packet statistics link to view the mld snooping counter settings for the specific entry. After clicking the packet statistics link, the following page wi...

  • Page 117: Multicast Vlan

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 109 click the find button to locate a specific entry based on the information entered. Click the view all button to display all the existing entries. Multicast vlan in a switching environment, multiple vlans may exist. Every time ...

  • Page 118

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 110 click the delete all button to remove all the entries listed. Click the view all button to display all the existing entries. Click the group list link to configure the multicast group profile address settings for the specific ...

  • Page 119

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 111 is none. Replace priority specify that the packet’s priority will be changed by the switch, based on the remap priority. This flag will only take effect when the remap priority is set. Click the apply button to accept the chan...

  • Page 120: Multicast Filtering

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 112 click the apply button to accept the changes made. Click the button to discard the changes made and return to the previous page. After clicking the profile list link, the following page will appear: figure 4-72 igmp snooping m...

  • Page 121

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 113 click the find button to locate a specific entry based on the information entered. Click the delete all button to remove all the entries listed. Click the group list link to configure the multicast address group list settings ...

  • Page 122: Ipv6 Multicast Filtering

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 114 name permit or deny access to them. Click the apply button to accept the changes made. Click the add button to add a new entry based on the information entered. Click the delete button to remove the specific entry. Click the f...

  • Page 123

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 115 figure 4-77 ipv6 multicast profile settings window the fields that can be configured are described below: parameter description profile id (1-24) enter a profile id between 1 and 24. Profile name enter a name for the ip multic...

  • Page 124

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 116 figure 4-79 ipv6 limited multicast range settings window the fields that can be configured are described below: parameter description ports / vid list select the appropriate port(s) or vlan ids used for the configuration here....

  • Page 125: Multicast Filtering Mode

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 117 click the find button to locate a specific entry based on the information entered. Enter a page number and click the go button to navigate to a specific page when multiple pages exist. Multicast filtering mode users can config...

  • Page 126

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 118 rpl owner – node connected to rpl that blocks traffic on rpl during idle state and unblocks during protected state r-aps (ring – automatic protection switching) - protocol messages defined in y.1731 and g.8032 used to coordina...

  • Page 127

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 119 figure 4-83 erps settings - detail information window click on the edit button to re-configure the specific entry. Click on the button to return to the erps settings page. After click the edit button, the following window will...

  • Page 128: Lldp

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 120 operational east port display the operational east port value. Admin rpl port specify the rpl port used. Options to choose from are west port, east port, and none. Operational rpl port display the operational rpl port value. A...

  • Page 129

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 121 lldp forward message when lldp is disabled this function controls the lldp packet forwarding message based on individual ports. If lldp is enabled on a port it will flood the lldp packet to all ports that have the same port vl...

  • Page 130

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 122 the fields that can be configured are described below: parameter description from port / to port use the drop-down menu to select the ports used for this configuration. Notification use the drop-down menu to enable or disable ...

  • Page 131

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 123 advertisements. The mandatory data type includes four basic types of information (end of lldpdu tlv, chassis id tlv, port id tlv, and time to live tlv). The mandatory data types cannot be disabled. There are also four data typ...

  • Page 132

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 124 figure 4-89 lldp dot1 tlvs settings window the fields that can be configured are described below: parameter description from port / to port use the drop-down menu to select the port range to use for this configuration. Dot1 tl...

  • Page 133

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 125 figure 4-90 lldp dot3 tlvs settings window the fields that can be configured are described below: parameter description from port / to port use the drop-down menu to select the port range to use for this configuration. Mac / p...

  • Page 134

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 126 figure 4-91 lldp statistics system window the fields that can be configured are described below: parameter description port use the drop-down menu to select a port. Click the find button to locate a specific entry based on the...

  • Page 135

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 127 figure 4-93 lldp local port information – show normal window the fields that can be configured are described below: parameter description port use the drop-down menu to select a port. Click the find button to locate a specific...

  • Page 136: Lldp-Med

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 128 after clicking the show normal button, the following page will appear: figure 4-96 lldp remote port information – show normal window click the button to return to the previous page. Lldp-med lldp-med system settings this windo...

  • Page 137

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 129 figure 4-98 lldp-med port settings window the fields that can be configured are described below: parameter description from port / to port select the port range to use for this configuration. Ntcs use the drop-down menu to ena...

  • Page 138

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 130 figure 4-99 lldp-med local port information window the fields that can be configured are described below: parameter description port use the drop-down menu to select a port. Click the find button to locate a specific entry bas...

  • Page 139: Nlb Fdb Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 131 nlb fdb settings the switch supports network load balancing (nlb). This is a mac forwarding control for supporting the microsoft server load balancing application where multiple servers can share the same ip address and mac ad...

  • Page 140: Chapter 5

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 132 chapter 5 l3 features ipv4 static/default route settings ipv4 route table ipv6 static/default route settings ipv4 static/default route settings the switch supports static default routing for ipv4 formatted addressing. Users ca...

  • Page 141

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 133 figure 5-2 ipv4 route table window the fields that can be configured are described below: parameter description network address click the radio button and enter the destination network address of the route to be displayed. Cli...

  • Page 142: Chapter 6

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 134 chapter 6 qos 802.1p settings bandwidth control traffic control settings dscp scheduling settings the switch supports 802.1p priority queuing quality of service. The following section discusses the implementation of qos (quali...

  • Page 143: 802.1P Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 135 understanding qos the switch supports 802.1p priority queuing. The switch has eight priority queues. These priority queues are numbered from 7 (class 7) — the highest priority queue — to 0 (class 0) — the lowest priority queue...

  • Page 144

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 136 figure 6-2 default priority settings window the fields that can be configured are described below: parameter description from port / to port select the starting and ending ports to use. Priority use the drop-down menu to selec...

  • Page 145: 802.1P Map Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 137 802.1p map settings this window is used to the mapping of 802.1p to the packet’s initial color. To view the following window, click qos > 802.1p settings > 802.1p map settings, as show below: figure 6-4 802.1p map settings win...

  • Page 146

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 138 figure 6-5 bandwidth control settings window the fields that can be configured or displayed are described below: parameter description from port / to port use the drop-down menu to select the port range to use for this configu...

  • Page 147: Traffic Control Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 139 queue bandwidth control settings to view this window, click qos > bandwidth control > queue bandwidth control settings, as shown below. To view the following window, click qos > bandwidth control > queue bandwidth control sett...

  • Page 148

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 140 affect the overall performance of the switch network. To help rectify this packet storm, the switch will monitor and control the situation. Packet storms are monitored to determine if too many packets are flooding the network ...

  • Page 149

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 141 drop packets until the issue is resolved. Shutdown – utilizes the switch’s software traffic control mechanism to determine the packet storm occurring. Once detected, the port will deny all incoming traffic to the port except s...

  • Page 150: Dscp

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 142 note: ports that are in shutdown forever mode will be seen as link down in all windows and screens until the user recovers these ports. Note: the minimum granularity of storm control on each port is 1pps. Dscp dscp trust setti...

  • Page 151

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 143 the dscp-to-dscp mapping is used in the swap of dscp of the packet when the packet is ingresses to the port. The remaining processing of the packet will base on the new dscp. By default, the dscp is mapped to the same dscp. Th...

  • Page 152: Scheduling Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 144 figure 6-11 dscp map settings - dscp color window the fields that can be configured are described below: parameter description from port / to port use the drop-down menu to select a range of port to configure. Dscp map use the...

  • Page 153: Qos Scheduling Mechanism

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 145 to view this window, click qos > scheduling settings > qos scheduling as shown below: figure 6-12 qos scheduling window the following parameters can be configured: parameter description from port / to port enter the port or po...

  • Page 154

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 146 figure 6-13 qos scheduling mechanism the following parameters can be configured: parameter description from port / to port enter the port or port list you wish to configure. Scheduling mechanism strict – the highest class of s...

  • Page 155: Chapter 7

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 147 chapter 7 acl acl configuration wizard access profile list cpu access profile list acl finder acl flow meter acl configuration wizard the acl configuration wizard will aid the user in the creation of access profiles and acl ru...

  • Page 156: Access Profile List

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 148 ipv4 address – selecting this option will allow the user to enter a range of ipv4 addresses for this rule. Ipv6 – selecting this option will allow the user to enter a range of ipv6 addresses for this rule. Action select permit...

  • Page 157

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 149 click the delete all button to remove all access profiles from this table. Click the show details button to display the information of the specific profile id entry. Click the add/view rules button to view or add acl rules wit...

  • Page 158

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 150 packet content. This will change the window according to the requirements for the type of profile. Select ethernet acl to instruct the switch to examine the layer 2 part of each packet header. Select ipv4 acl to instruct the s...

  • Page 159

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 151 figure 7-6 add access rule window (ethernet acl) the fields that can be configured are described below: parameter description access id (1-256) type in a unique identifier number for this access. This value can be set from 1 t...

  • Page 160

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 152 a packet to the value entered in the priority field, which meets the criteria specified previously in this command, before forwarding it on to the specified cos queue. Otherwise, a packet will have its incoming 802.1p user pri...

  • Page 161

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 153 figure 7-8 add acl profile window (ipv4 acl) the fields that can be configured are described below: parameter description profile id (1-512) enter a unique identifier number for this profile set. This value can be set from 1 t...

  • Page 162

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 154 the following guidelines: select icmp to instruct the switch to examine the internet control message protocol (icmp) field in each frame's header. Select type to further specify that the access profile will apply an icmp type ...

  • Page 163

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 155 figure 7-10 access rule list window (ipv4 acl) click the add rule button to create a new acl rule in this profile. Click the button to return to the previous page. Click the show details button to view more information about t...

  • Page 164

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 156 destination ip address enter the destination ip address. Destination ip address mask select and enter the destination ip address mask. Dscp enter the dscp value. Protocol selecting this option instructs the switch to examine t...

  • Page 165

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 157 defined in the config mirror port command. Port mirroring must be enabled and a target port must be set. Priority (0-7) tick the corresponding check box if you want to re-write the 802.1p default priority of a packet to the va...

  • Page 166

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 158 figure 7-13 add acl profile window (ipv6 acl) the fields that can be configured are described below: parameter description profile id (1-512) enter a unique identifier number for this profile set. This value can be set from 1 ...

  • Page 167

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 159 icmp select icmp to instruct the switch to examine the internet control message protocol (icmp) field in each frame's header. Select type to further specify that the access profile will apply an icmp type value, or specify cod...

  • Page 168

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 160 figure 7-16 add access rule (ipv6 acl) the fields that can be configured are described below: parameter description access id (1-256) type in a unique identifier number for this access. This value can be set from 1 to 256. Aut...

  • Page 169

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 161 both the priority and dscp are set to be modified. Replace tos precedence (0-7) specify that the ip precedence of the outgoing packet is changed with the new value. If used without an action priority, the packet is sent to the...

  • Page 170

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 162 after clicking the show details button in the access rule list, the following page will appear: figure 7-17 access rule detail information (ipv6 acl) click the show all rules button to navigate back to the access rule list. Ad...

  • Page 171

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 163 type content. This will change the window according to the requirements for the type of profile. Select ethernet acl to instruct the switch to examine the layer 2 part of each packet header. Select ipv4 acl to instruct the swi...

  • Page 172

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 164 figure 7-20 access rule list (packet content acl) click the add rule button to create a new acl rule in this profile. Click the button to return to the previous page. Click the show details button to view more information abou...

  • Page 173: Cpu Access Profile List

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 165 select mirror to specify that packets that match the access profile are mirrored to a port defined in the config mirror port command. Port mirroring must be enabled and a target port must be set. Priority (0-7) tick the corres...

  • Page 174

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 166 note: cpu interface filtering is used to control traffic access to the switch directly such as protocols transition or management access. A cpu interface filtering rule won’t impact normal l2/3 traffic forwarding. However, an ...

  • Page 175

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 167 figure 7-24 add cpu acl profile (ethernet acl) the fields that can be configured are described below: parameter description profile id (1-5) enter a unique identifier number for this profile set. This value can be set from 1 t...

  • Page 176

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 168 figure 7-25 cpu access profile detail information (ethernet acl) click the show all profiles button to navigate back to the cpu acl profile list page. After clicking the add/view rules button, the following page will appear: f...

  • Page 177

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 169 100. Auto assign – select this check box will instruct the switch to automatically assign an access id for the rule being created. Vlan name enter the vlan name. Vlan id enter the vlan id. Source mac address enter the source m...

  • Page 178

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 170 figure 7-29 add cpu acl profile (ipv4 acl) the fields that can be configured are described below: parameter description profile id (1-5) enter a unique identifier number for this profile set. This value can be set from 1 to 5....

  • Page 179

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 171 specify code to further specify that the access profile will apply an icmp code value. Select igmp to instruct the switch to examine the internet group management protocol (igmp) field in each frame's header. Select type to fu...

  • Page 180

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 172 figure 7-31 cpu access rule list (ipv4 acl) click the add rule button to create a new cpu acl rule in this profile. Click the button to return to the previous page. Click the show details button to view more information about ...

  • Page 181

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 173 the following guidelines: select this option to specify that the rule will be applied to icmp traffic. Type – enter the icmp packet type value. Code – enter the icmp code value. Select igmp to instruct the switch to examine th...

  • Page 182

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 174 figure 7-33 cpu access rule detail information (ipv4 acl) click the show all rules button to navigate back to the cpu access rule list. Adding a cpu ipv6 acl profile the window shown below is the add cpu acl profile window for...

  • Page 183

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 175 select ethernet to instruct the switch to examine the layer 2 part of each packet header. Select ipv4 to instruct the switch to examine the ipv4 address in each frame's header. Select ipv6 to instruct the switch to examine the...

  • Page 184

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 176 figure 7-37 add cpu access rule (ipv6 acl) the fields that can be configured are described below: parameter description access id (1-100) enter a unique identifier number for this access. This value can be set from 1 to 100. A...

  • Page 185

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 177 figure 7-38 cpu access rule detail information (ipv6 acl) click the show all rules button to navigate back to the cpu access rule list. Adding a cpu packet content acl profile the window shown below is the add cpu acl profile ...

  • Page 186

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 178 select ipv4 to instruct the switch to examine the ipv4 address in each frame's header. Select ipv6 to instruct the switch to examine the ipv6 address in each frame's header. Select packet content mask to specify a mask to hide...

  • Page 187

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 179 figure 7-42 add cpu access rule (packet content acl) the fields that can be configured are described below: parameter description access id (1-100) type in a unique identifier number for this access. This value can be set from...

  • Page 188: Acl Finder

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 180 figure 7-43 cpu access rule detail information (packet content acl) click the show all rules button to navigate back to the cpu access rule list. Acl finder the acl rule finder helps you to identify any rules that have been as...

  • Page 189

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 181 cbs – committed burst size. Measured in bytes, the cbs is associated with the cir and is used to identify packets that exceed the normal boundaries of packet size. The cbs should be configured to accept the biggest ip packet t...

  • Page 190

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 182 access id (1-256) here the user can enter the access id for the flow meter. Click the find button to locate a specific entry based on the information entered. Click the add button to add a new entry based on the information en...

  • Page 191

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 183 pir – specify the peak information rate. The unit is kbps. Pir should always be equal to or greater than cir. Cbs – specify the committed burst size. The unit is in kilobyte. Pbs – specify the peak burst size. The unit is in k...

  • Page 192: Chapter 8

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 184 chapter 8 security 802.1x radius ip-mac-port binding (impb) mac-based access control (mac) compound authentication port security arp spoofing prevention settings bpdu attack protection traffic segmentation settings netbios fil...

  • Page 193

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 185 authentication server the authentication server is a remote device that is connected to the same network as the client and authenticator, must be running a radius server program and must be configured properly on the authentic...

  • Page 194

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 186 authentication process utilizing the three roles stated above, the 802.1x protocol provides a stable and secure way of authorizing and authenticating users attempting to access the network. Only eapol traffic is allowed to pas...

  • Page 195: 802.1X Global Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 187 host-based network access control in order to successfully make use of 802.1x in a shared media lan segment, it would be necessary to create “logical” ports, one for each attached device that required access to the lan. The sw...

  • Page 196: 802.1X Port Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 188 802.1x port settings users can configure the 802.1x authenticator port settings. To view this window, click security > 802.1x > 802.1x port settings as shown below: figure 8-10 802.1x port settings the fields that can be confi...

  • Page 197: 802.1X User Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 189 reauthperiod (1-65535) a constant that defines a nonzero number of seconds between periodic re- authentication of the client. The default setting is 3600 seconds. Reauthentication determines whether regular re-authentication w...

  • Page 198: Guest Vlan Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 190 figure 8-11 802.1x user settings window the fields that can be configured are described below: parameter description 802.1x user the user can enter an 802.1x user’s username in here. Password the user can enter an 802.1x user’...

  • Page 199: Authenticator State

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 191 2 a port cannot be a member of a guest vlan and a static vlan simultaneously. 3 once a client has been accepted into the target vlan, it can no longer access the guest vlan. Remember, to set an 802.1x guest vlan, the user must...

  • Page 200

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 192 to view this window, click security > 802.1x > authenticator statistics as shown below: figure 8-15 authenticator statistics - port-based window figure 8-16 authenticator statistics - mac-based window.

  • Page 201

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 193 the fields that can be configured are described below: parameter description time interval use the drop-down menu to select the interval to update the statistics. Click the ok button to accept the changes made. Note: the user ...

  • Page 202: Authenticator Diagnostics

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 194 figure 8-18 authenticator session statistics - mac-based window the fields that can be configured are described below: parameter description time interval use the drop-down menu to select the interval to update the statistics....

  • Page 203

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 195 figure 8-19 authenticator diagnostics - port-based window figure 8-20 authenticator diagnostics - mac-based window the fields that can be configured are described below:.

  • Page 204: Initialize Port(S)

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 196 parameter description time interval use the drop-down menu to select the interval to update the statistics. Click the ok button to accept the changes made. Note: the user must first globally enable authentication mode in the 8...

  • Page 205: Radius

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 197 figure 8-23 reauthenticate port(s) - port-based window if mac-based is selected in the authentication mode drop-down menu in 802.1x global settings window, the following window appears. Figure 8-24 reauthentiate port(s) - mac-...

  • Page 206: Radius Accounting Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 198 parameter description index choose the desired radius server to configure: 1, 2 or 3. Server ip set the radius server ip address. Authentication port (1- 65535) set the radius authentic server(s) udp port which is used to tran...

  • Page 207

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 199 to view this window, click security > radius > radius authentication as shown below: figure 8-27 raius authentication window the user may also select the desired time interval to update the statistics, between 1s and 60s, wher...

  • Page 208: Radius Account Client

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 200 server. Accesschallenges the number of radius access-challenge packets (valid or invalid) received from this server. Accessresponses the number of malformed radius access-response packets received from this server. Malformed p...

  • Page 209

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 201 figure 8-28 radius account client window the user may also select the desired time interval to update the statistics, between 1s and 60s, where “s” stands for seconds. The default value is 1s. The fields that can be configured...

  • Page 210: Ip-Mac-Port Binding (Impb)

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 202 pendingrequests the number of radius accounting-request packets sent to this server that have not yet timed out or received a response. This variable is incremented when an accounting-request is sent and decremented due to rec...

  • Page 211: Impb Port Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 203 mac-port binding configuration set on the switch. The default is disabled. Dhcp snooping (ipv4) click the radio buttons to enable or disable dhcp snooping (ipv4) for ip-mac-port binding. The default is disabled. Dhcp snooping ...

  • Page 212: Impb Entry Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 204 arp packet is detected. The default value is disabled. Ip inspection when both arp and ip inspections are enabled, all ip packets are checked. The legal ip packets are forwarded, while the illegal ip packets are dropped. When ...

  • Page 213: Mac Block List

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 205 click the delete button to remove the specified entry. Enter a page number and click the go button to navigate to a specific page when multiple pages exist. Mac block list this window is used to view unauthorized devices that ...

  • Page 214

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 206 figure 8-33 dhcp snooping max entry settings window the fields that can be configured are described below: parameter description from port / to port use the drop-down menus to select a range of ports to use. Maximum entry (1-5...

  • Page 215: Nd Snooping

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 207 ports specify the ports for dhcp snooping entries. Tick the all ports check box to select all entries for all ports. Tick the ipv4 check box to select ipv4 dhcp snooping learned entries. Tick the ipv6 check box to select ipv6 ...

  • Page 216

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 208 to view this window, click security > ip-mac-port binding (impb) > nd snooping > nd snooping entry as shown below: figure 8-36 nd snooping entry window the fields that can be configured are described below: parameter descripti...

  • Page 217

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 209 figure 8-37 mac-based access control settings window the fields that can be configured are described below: parameter description mac-based access control state toggle to globally enable or disable the mac-based access control...

  • Page 218

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 210 member ports enter the list of ports that have been configured for the guest vlan. From port / to port use the drop-down menus to select a range of ports to be configured for mac-based access control. State use this drop-down ...

  • Page 219

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 211 figure 8-39 mac-based access control local settings – edit by name window to change the selected mac address’ vid value, the user can click the edit by id button. Figure 8-40 mac-based access control local settings – edit by i...

  • Page 220: Jwac Global Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 212 japanese web-based access control (jwac) jwac global settings this window is used to enable and configure japanese web-based access control on the switch. To use the jwac feature, computer users need to pass through two stages...

  • Page 221: Jwac Port Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 213 to the quarantine server when it tries to access a random url. When the redirect jwac login page is enabled, the unauthenticated host will be redirected to the jwac login page in the switch to finish authentication. When redir...

  • Page 222: Jwac User Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 214 figure 8-43 jwac port settings window the fields that can be configured are described below: parameter description from port / to port use the drop-down menus to select a range of ports to be enabled as jwac ports. State use t...

  • Page 223: Jwac Authentication State

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 215 figure 8-44 jwac user settings window the fields that can be configured are described below: parameter description user name enter the user name of up to 15 alphanumeric characters of the guest wishing to access the web throug...

  • Page 224: Jwac Customize Page

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 216 click the find button to locate a specific entry based on the information entered. Click the clear button to remove entry based on the port list entered. Click the view all hosts button to display all the existing entries. Cli...

  • Page 225

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 217 figure 8-47 jwac customize page - japanese window figure 8-48 jwac customize page - english window.

  • Page 226: Compound Authentication

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 218 complete the jwac authentication information in this window to set the jwac page settings. Click the apply button to implement the changes made. Click the set to default button to go back to the default settings of all element...

  • Page 227

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 219 port security is a security feature that prevents unauthorized computers (with source mac addresses) unknown to the switch prior to locking the port (or ports) from connecting to the switch's locked ports and gaining access to...

  • Page 228

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 220 figure 8-51 port security port-vlan settings window the fields that can be configured are described below: parameter description vlan name click the button and enter the name of the vlan that the port security settings will be...

  • Page 229: Port Security Entries

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 221 port security entries users can remove an entry from the port security entries learned by the switch and entered into the forwarding database. To view this window, click security > port security > port security entries as show...

  • Page 230: Bpdu Attack Protection

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 222 the fields that can be configured are described below: parameter description gateway ip address enter the gateway ip address to help prevent arp spoofing. Gateway mac address enter the gateway mac address to help prevent arp s...

  • Page 231: Loopback Detection Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 223 figure 8-55 bpdu attack protection window the fields that can be configured are described below: parameter description bpdu attack protection state click the radio buttons to enable or disable the bpdu attack protection state....

  • Page 232

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 224 loopback detection port will restart (change to normal state) when the loopback detectionrecover time times out. The loopback detection function can be implemented on a range of ports at a time. The user may enable or disable ...

  • Page 233: Netbios Filtering Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 225 traffic segmentation settings traffic segmentation is used to limit traffic flow from a single or group of ports, to a group of ports. This method of segmenting the flow of traffic is similar to using vlans to limit traffic, b...

  • Page 234: Dhcp Server Screening

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 226 to view this window, click security > netbios filtering settings as shown below: figure 8-58 netbios filtering settings window the fields that can be configured are described below: parameter description netbios filtering sele...

  • Page 235

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 227 figure 8-59 dhcp server screening port settings window the fields that can be configured are described below: parameter description dhcp server screening trap log state click to enable or disable filtering dhcp server trap and...

  • Page 236

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 228 the fields that can be configured are described below: parameter description server ip address the ip address of the dhcp server to be permitted. Client’s mac address enter the client’s mac address. Leave it blank to received ...

  • Page 237: Enable Admin

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 229 order preferable, and defined by the user for normal user authentication on the switch, and may contain up to eight authentication techniques. When a user attempts to access the switch, the switch will select the first techniq...

  • Page 238

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 230 figure 8-62 log-in page authentication policy settings users can enable an administrator-defined authentication policy for users trying to access the switch. When enabled, the device will check the login method list and choose...

  • Page 239

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 231 application authentication settings users can configure switch configuration applications (console, telnet, ssh, http) for login at the user level and at the administration level (enable admin) utilizing a previously configure...

  • Page 240

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 232 figure 8-65 authentication server group settings – server group list window this window displays the authentication server groups on the switch. The switch has four built-in authentication server groups that cannot be removed ...

  • Page 241

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 233 note: the three built-in server groups can only have server hosts running the same tacacs daemon. Tacacs/xtacacs/tacacs+ protocols are separate entities and are not compatible with each other. Authentication server settings us...

  • Page 242

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 234 login method lists settings user-defined or default login method list of authentication techniques can be configured for users logging on to the switch. The sequence of techniques implemented in this command will affect the au...

  • Page 243

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 235 enable method lists settings users can set up method lists to promote users with user level privileges to administrator (admin) level privileges using authentication methods on the switch. Once a user acquires normal user leve...

  • Page 244: Ssl Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 236 none - adding this parameter will require no authentication needed to access the switch. Click the apply button to accept the changes made. Click the edit button to re-configure the specific entry. Click the delete button to r...

  • Page 245

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 237 cbc block ciphers – cbc refers to cipher block chaining, which means that a portion of the previously encrypted block of encrypted text is used in the encryption of the current block. The switch supports the 3des ede encryptio...

  • Page 246: Ssh

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 238 parameter description ssl status use the radio buttons to enable or disable the ssl status on the switch. The default is disabled. Cache timeout (60- 86400) this field will set the time between a new key exchange between a cli...

  • Page 247: Ssh Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 239 the steps required to use the ssh protocol for secure communication between a remote pc (the ssh client) and the switch (the ssh server) are as follows:  create a user account with admin-level access using the user accounts w...

  • Page 248

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 240 click the apply button to accept the changes made for each individual section. Ssh authentication method and algorithm settings users can configure the desired types of ssh algorithms used for authentication encryption. There ...

  • Page 249

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 241 is enabled. Blow-fish cbc use the check box to enable or disable the blowfish encryption algorithm with cipher block chaining. The default is enabled. Twofish128 use the check box to enable or disable the twofish128 encryption...

  • Page 250: Trusted Host Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 242 authentication method the administrator may choose one of the following to set the authorization for users attempting to access the switch. Host name – this parameter should be chosen if the administrator wishes to use a remot...

  • Page 251: Safeguard Engine Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 243 figure 8-75 trusted host window when the user clicks the edit button, one will be able to edit the service allowed to the selected host. The fields that can be configured are described below: parameter description ipv4 address...

  • Page 252

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 244 stop period. This doubling of time for stopping these packets will continue until the maximum time has been reached, which is 320 seconds and every stop from this point until a return to normal ingress flow would be 320 second...

  • Page 253

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 245 rising threshold (20% - 100%) used to configure the acceptable level of cpu utilization before the safeguard engine mechanism is enabled. Once the cpu utilization reaches this percentage level, the switch will move into exhaus...

  • Page 254

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 246 tcp null scan tick to check whether a received tcp packet contains a sequence number of 0 and no flags tcp xmascan tick to check whether a received tcp packet contains urg, push and fin flags. Tcp synfin tick to check whether ...

  • Page 255

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 247 figure 8-80 igmp access control settings window the fields that can be configured are described below: parameter description from port / to port use the drop-down menus to select a range of ports to be enabled as compound auth...

  • Page 256: Chapter 9

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 248 chapter 9 network application dhcp dns resolver pppoe circuit id insertion settings smtp settings sntp flash file system settings dhcp dhcp relay dhcp relay global settings this window is used to enable and configure dhcp rela...

  • Page 257

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 249 enabled –when this field is toggled to enabled, the relay agent will insert and remove dhcp relay information (option 82 field) in messages between dhcp servers and clients. When the relay agent receives the dhcp request, it a...

  • Page 258

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 250 servers. Enable – select this option to enable the dhcp relay option 61 state, in order to relay dhcp packets. Disable - select this option to disable the dhcp relay option 61 state. Click the apply button to accept the change...

  • Page 259

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 251 • length • mac address: the switch’s system mac address. Dhcp relay interface settings this window is used to set up a server, by ip address, for relaying dhcp information to the switch. The user may enter a previously configu...

  • Page 260

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 252 dhcp relay option 60 server settings this window is used to configure the dhcp relay option 60 server parameters. To view this window, click network application > dhcp > dhcp relay > dhcp relay option 60 server settings as sho...

  • Page 261

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 253 the system will relay the packet to all the matching servers. Server ip address here the user can enter the dhcp relay option 60 server ip address. Match type here the user can enter the dhcp relay option 60 match type value. ...

  • Page 262: Dhcp Local Relay Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 254 click the delete button to remove the specific entry based on the information entered. Click the delete all button to remove all the entries listed. Dhcp local relay settings the dhcp local relay settings allows the user to ad...

  • Page 263: Dns Resolver

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 255 figure 9-10 dhcp local relay option 82 settings window the fields that can be configured are described below: parameter description from port / to port use the drop-down menus to select a range of ports to use. Policy select h...

  • Page 264

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 256 parameter description dns resolver state click the radio buttons to enable or disable the dns resolver state. Name server timeout (1-60) the maximum time waiting for a response from a specified name server. Click the apply but...

  • Page 265

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 257 the window is used to create the static host name entry of the switch. To view this window, click network application > dns resolver > dns resolver static host name settings as shown below: figure 9-14 dns resolver static host...

  • Page 266: Smtp Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 258 figure 9-16 pppoe circuit id insertion settings window the fields that can be configured are described below: parameter description pppoe circuit id insertion click the radio buttons to enable or disable the pppoe circuit id i...

  • Page 267: Sntp

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 259 figure 9-17 smtp settings window the fields that can be configured are described below: parameter description smtp state use the radio button to enable or disable the smtp service on this device. Smtp server address enter the ...

  • Page 268: Time Zone Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 260 to view this window, click network application > sntp > sntp settings as shown below: figure 9-18 sntp settings window the fields that can be configured or displayed are described below: parameter description sntp state use th...

  • Page 269

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 261 figure 9-19 time zone settings window the fields that can be configured are described below: parameter description daylight saving time state use this drop-down menu to enable or disable the dst settings. Daylight saving time ...

  • Page 270: Flash File System Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 262 parameter description dst annual settings using annual mode will enable dst seasonal time adjustment. Annual mode requires that the dst beginning and ending date be specified concisely. For example, specify to begin dst on apr...

  • Page 271

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 263 figure 9-21 flash file system setting – search for drive window click the previous button to return to the previous page. Click the create directory to create a new directory within the file system of the switch. Click the cop...

  • Page 272: Chapter 10  Oam

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 264 chapter 10 oam cfm ethernet oam duld settings cable diagnostics cfm cfm settings this window is used to configure the cfm parameters. To view this window, click oam > cfm > cfm settings,as shown below: figure 10-1 cfm settings...

  • Page 273

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 265 address information. Click the apply button to accept the changes made for each individual section. Click the edit button to re-configure the specific entry. Click the delete button to remove the specific entry. Click the add ...

  • Page 274

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 266 figure 10-4 cfm ma settings - edit window the fields that can be configured are described below: parameter description mip this is the control creation of mips. None - don’t create mips. Defer - inherit the setting configured ...

  • Page 275

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 267 figure 10-5 cfm mep settings window the fields that can be configured are described below: parameter description mep name mep name. It is unique among all meps configured on the device. Mep id (1-8191) mep mepid. It should be ...

  • Page 276: Cfm Port Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 268 figure 10-7 cfm mep information - edit window the fields that can be configured are described below: parameter description mep state this is the mep administrative state. Enable - mep is enabled. Disable - mep is disabled. Thi...

  • Page 277: Cfm Mipccm Table

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 269 figure 10-8 cfm port settings window the fields that can be configured are described below: parameter description from port / to port use the drop-down menus to select a range of ports to be configuration. State use the drop-d...

  • Page 278: Cfm Linktrace Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 270 figure 10-10 cfm loopback settings window the fields that can be configured are described below: parameter description mep name select and enter the maintenance end point name used. Mep id (1-8191) select and enter the mainten...

  • Page 279: Cfm Packet Counter

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 271 figure 10-11 cfm linktrace settings window the fields that can be configured are described below: parameter description mep name select and enter the maintenance end point name used. Mep id (1-8191) select and enter the mainte...

  • Page 280

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 272 figure 10-12 cfm packet counter window the fields that can be configured are described below: parameter description port list enter a list of ports to be displayed. Tick the all ports check box to display all ports. Type trans...

  • Page 281: Cfm Fault Table

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 273 figure 10-13 cfm packet counter window cfm fault table this window is used to show the meps that have faults. To view this window, click oam > cfm > cfm fault table,as shown below: figure 10-14 cfm fault table window the field...

  • Page 282: Ethernet Oam

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 274 to view this window, click oam > cfm > cfm mp table,as shown below: figure 10-15 cfm mp table window the fields that can be configured are described below: parameter description port use the drop-down menu to select the port n...

  • Page 283

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 275 figure 10-16 ethernet oam settings window the fields that can be configured are described below: parameter description from port / to port select a range of ports you wish to configure. Mode use the drop-down menu to select to...

  • Page 284: Ethernet Oam Event Log

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 276 figure 10-17 ethernet oam configuration settings window the fields that can be configured are described below: parameter description from port / to port select a range of ports you wish to configure. Link event use the drop-do...

  • Page 285: Ethernet Oam Statistics

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 277 figure 10-18 ethernet oam event log window the fields that can be configured are described below: parameter description port use the drop-down menu to select the port number to view. Port list enter a list of ports. Tick the a...

  • Page 286: Duld Settings

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 278 figure 10-19 ethernet oam statistics window the fields that can be configured are described below: parameter description port list enter a list of ports. Tick the all ports check box to select all ports. Click the clear button...

  • Page 287: Cable Diagnostics

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 279 figure 10-20 duld settings window the fields that can be configured are described below: parameter description from port / to port select a range of ports you wish to configure. Admin state use the drop-down menu to enable or ...

  • Page 288

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 280 figure 10-21 cable diagnostics window the fields that can be configured are described below: parameter description port select a port you wish to display. Click the test button to view the cable diagnostics for a particular po...

  • Page 289: Chapter 11  Monitoring

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 281 chapter 11 monitoring utilization statistics mirror ping test trace route peripheral utilization cpu utilization users can display the percentage of the cpu being used, expressed as an integer percentage and calculated as a si...

  • Page 290: Port Utilization

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 282 figure 11-2 dram & flash utilization window port utilization users can display the percentage of the total available bandwidth being used on the port. To view this window, click monitoring > utilization > port utilization as s...

  • Page 291: Port Statistics

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 283 port statistics packets the web manager allows various packet statistics to be viewed as either a line graph or a table. Six windows are offered. Received (rx) to select a port to view these statistics for, select the port by ...

  • Page 292

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 284 figure 11-5 rx packets analysis table window the fields that can be configured or displayed are described below: parameter description port use the drop-down menu to choose the port that will display statistics. Time interval ...

  • Page 293

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 285 figure 11-6 umb_cast (rx) window (for unicast, multicast, and broadcast packets) click the view table link to display the information in a table rather than a line graph. Figure 11-7 rx packets analysis window (table for unica...

  • Page 294

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 286 multicast counts the total number of good packets that were received by a multicast address. Broadcast counts the total number of good packets that were received by a broadcast address. Show/hide check whether or not to displa...

  • Page 295

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 287 figure 11-9 tx packets analysis window (table for bytes and packets) the fields that can be configured or displayed are described below: parameter description port use the drop-down menu to choose the port that will display st...

  • Page 296

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 288 figure 11-10 received (rx) window (for errors) click the view table link to display the information in a table rather than a line graph. Figure 11-11 rx error analysis window (table) the fields that can be configured or displa...

  • Page 297

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 289 of 64 bytes and have a good crc. Undersize packets usually indicate collision fragments, a normal network occurrence. Oversize counts valid packets received that were longer than 1518 octets and less than the max_pkt_len. Inte...

  • Page 298: Packet Size

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 290 figure 11-13 tx error analysis window (table) the fields that can be configured or displayed are described below: parameter description port use the drop-down menu to choose the port that will display statistics. Time interval...

  • Page 299

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 291 figure 11-14 packet size window click the view table link to display the information in a table rather than a line graph. Figure 11-15 rx size analysis window (table) the fields that can be configured or displayed are describe...

  • Page 300: Mirror

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 292 65-127 the total number of packets (including bad packets) received that were between 65 and 127 octets in length inclusive (excluding framing bits but including fcs octets). 128-255 the total number of packets (including bad ...

  • Page 301: Ping Test

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 293 outgoing traffic. None click the radio buttons to select whether the port should not include any traffic. Click the apply button to accept the changes made. Note: you cannot mirror a fast port onto a slower port. For example, ...

  • Page 302: Trace Route

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 294 timeout select a timeout period between 1 and 99 seconds for this ping message to reach its destination. If the packet fails to find the ip address in this specified time, the ping packet will be dropped. Click the start butto...

  • Page 303: Peripheral

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 295 seeking the network path between two devices. The range for the ttl is 1 to 60 hops. Port (30000-64900) the port number. The value range is from 30000 to 64900. Timeout (1-65535) defines the timeout period while waiting for a ...

  • Page 304

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 296 to view this window, click monitoring > peripheral > external alarm settings as shown below: figure 11-22 external alarm settings window click the refresh button to refresh the display table so that new entries will appear. Cl...

  • Page 305: Save Configuration / Log

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 297 chapter 12 save and tools save configuration / log download firmware upload firmware download configuration upload configuration upload log file reset reboot system save configuration / log to view this window, click save > sa...

  • Page 306

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 298 figure 12-4 download firmware – tftp window the fields that can be configured are described below: parameter description tftp server ip enter the tftp server ip address used. Ipv4 click the radio button to enter the tftp serve...

  • Page 307: Upload Firmware

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 299 destination file enter the file name that will be stored in the flash of the switch, e.G. C:/runtime.Had. Boot up select this option to use this firmware as the boot-up firmware. Click download to initiate the download. Downlo...

  • Page 308: Upload Firmware To Ftp

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 300 ipv4 click the radio button to enter the tftp server ip address used. Ipv6 click the radio button to enter the tftp server ipv6 address used. Domain name click the radio button to enter the domain name. Destination file enter ...

  • Page 309: Download Configuration

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 301 parameter description source file enter the location and name of the source file. Click upload to initiate the upload. Download configuration the following window is used to download the configuration file for the switch. To v...

  • Page 310: Upload Configuration

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 302 figure 12-11 download configuration – ftp window the fields that can be configured are described below: parameter description ftp server ip enter the ftp server ip address used. User name enter the appropriate username used. P...

  • Page 311

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 303 upload configuration to tftp this window is used to upload the configuration file from the switch to a tftp server. Figure 12-13 upload configuration – tftp window the fields that can be configured are described below: paramet...

  • Page 312

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 304 the fields that can be configured are described below: parameter description ftp server ip enter the ftp server ip address used. User name enter the appropriate username used. Password enter the appropriate password used. Tcp ...

  • Page 313: Upload Log File

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 305 upload log file the following window is used to upload the log file from the switch. To view this window, click tools > upload log file, as shown below. Upload log to tftp this window is used to upload the log file from the sw...

  • Page 314: Upload Log To Http

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 306 the fields that can be configured are described below: parameter description ftp server ip enter the ftp server ip address used. User name enter the appropriate username used. Password enter the appropriate password used. Tcp ...

  • Page 315: Reboot System

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 307 figure 12-19 reset system window the fields that can be configured are described below: parameter description reset selecting this option will factory reset the switch but not the ip address, log, user account and banner. Rese...

  • Page 316

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 308 figure 12-22 system rebooting window.

  • Page 317

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 309 appendix a password recovery procedure this document describes the procedure for resetting passwords on d-link switches. Authenticating any user who tries to access networks is necessary and important. The basic authentication...

  • Page 318

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 310 appendix b system log entries the following table lists all possible entries and their corresponding meanings that will appear in the system log of this switch. Category event description log information severity system system...

  • Page 319

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 311 log message successfully uploaded log message successfully uploaded by console (username: , ip: ) informational log message upload was unsuccessful log message upload by console was unsuccessful! (username: , ip: ) warning fir...

  • Page 320

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 312 priority :) new root bridge cist region new root bridge selected ( mac: priority :) informational new root bridge msti region new root bridge selected (instance:, mac: priority :) informational new root bridge new root bridge ...

  • Page 321

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 313 authentication policy is disabled authentication policy is disabled (module: aaa) informational successful login through console authenticated by aaa local method successful login through console authenticated by aaa local met...

  • Page 322

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 314 successful login through web authenticated by aaa server successful login through web from authenticated by aaa server (username: ) informational login failed through web authenticated by aaa server login failed through web fr...

  • Page 323

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 315 authenticated by aaa local_enable method from authenticated by aaa local_enable method (username: ) enable admin failed through telnet authenticated by aaa local_enable method enable admin failed through telnet from authentica...

  • Page 324

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 316 successful enable admin through telnet authenticated by aaa server successful enable admin through telnet from authenticated by aaa server (username: ) informational enable admin failed through telnet authenticated by aaa serv...

  • Page 325

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 317 multicast storm occurrence port multicast storm is occurring warning multicast storm cleared port multicast storm has cleared informational port shut down due to a packet storm port is currently shut down due to a packet storm...

  • Page 326

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 318 , port: ) command logging command logging : execute command "" informational mbac a host passes the authentication mac-based access control host login successful (mac: , port: , vid: ) informational a host fails to pass the au...

  • Page 327

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 319 appendix c trap log entries this table lists the trap logs found on the switch. Trap name trap description oid risingalarm the snmp trap that is generated when an alarm entry crosses its rising threshold and generates an event...

  • Page 328

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 320 included value of ifoperstatus. Binding: 1.Ifindex 2.Ifadminstatus 3.Ifoperstatus newroot the newroot trap indicates that the sending agent has become the new root of the spanning tree; the trap is sent by a bridge soon after ...

  • Page 329

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 321 swpktstormoccurred this trap is sent when a packet storm is detected by a packet storm mechanism and a shutdown action is taken. Binding: 1: swpktstormctrlportindex 1.3.6.1.4.1.171.12.25.5.0.1 swpktstormcleared the trap is sen...

  • Page 330

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 322 attack state, a trap will be sent out. Binding: 1.Swbpduprotectionportindex 2.Swbpduprotectionportmode swbpduprotectionrecoverytr ap when the bpdu protection trap is enabled, if the specific port changes from an under attack s...

  • Page 331

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 323 authentation failure notification. Binding: 1: swsingleipmsid 2: swsingleipmsmacaddr swsingleipmsnewroot commander switch will send swsingleipmsnewroot notification to indicated host when it member generate new root notificati...

  • Page 332

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 324 disconnect -> overcurrent. Disconnect -> working. Disconnect -> connect. Binding : 1: swpowerunitindex 2: swpowerid 3: swpowerstatus swpowerfailure power failure notification. The notification is issued when the swpowerstatus ...

  • Page 333

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 325 appendix d radius attributes assignment the radius attributes assignment on the dgs-3000 is used in the following modules: 802.1x (port-based and host-based), and mac-based access control. The description that follows explains...

  • Page 334

    Dgs-3000 series layer 2 managed gigabit switch web ui reference guide 326 the table below shows the parameters for a vlan: radius tunnel attribute description value usage tunnel-type this attribute indicates the tunneling protocol(s) to be used (in the case of a tunnel initiator) or the tunneling pr...