D-Link DGS-3224TGR - Switch Command Line Interface Reference Manual

Other manuals for DGS-3224TGR - Switch: Command Line Interface Reference Manual, User Manual, User Manual
Manual is about: Layer 2 Switch

Summary of DGS-3224TGR - Switch

  • Page 1

    Dgs-3224tgr layer 2 gigabit ethernet switch command line interface reference manual (september 2004) 6s24tgrcli03 printed in china recyclable.

  • Page 2

    Trademarks copyright 2004 d-link corporation. Contents subject to change without prior notice. D-link is a registered trademark of d-link corporation/d-link systems, inc. All other trademarks belong to their respective proprietors. Copyright statement no part of this publication may be reproduced i...

  • Page 3

    Table of contents introduction....................................................................................................................................................................................1 using the console cli......................................................................

  • Page 5: Ntroduction

    Dgs-3224tgr gigabit ethernet switch cli reference manual 1 i ntroduction the switch can be managed through the switch’s serial port, telnet, or the web-based management agent. The command line interface (cli) can be used to configure and manage the switch via the serial port or telnet interfaces. Th...

  • Page 6

    Dgs-3224tgr gigabit ethernet switch cli reference manual figure 1-2. Boot screen the switch’s mac address can be found from the console program under the switch information menu item, as shown below. The ip address for the switch must be set before it can be managed with the web-based manager. The s...

  • Page 7

    Dgs-3224tgr gigabit ethernet switch cli reference manual figure 1-3. Assigning the switch an ip address in the above example, the switch was assigned an ip address of 10.24.22.8 with a subnet mask of 255.0.0.0. The system message “success”indicates that the command was executed successfully. The swi...

  • Page 8: Sing The

    Dgs-3224tgr gigabit ethernet switch cli reference manual 2 u sing the c onsole cli the dgs-3224tgr supports a console management interface that allows the user to connect to the switch’s management agent via a serial port and a terminal or a computer running a terminal emulation program. The console...

  • Page 9

    Dgs-3224tgr gigabit ethernet switch cli reference manual figure 2-1. Initial console screen commands are entered at the command prompt, dgs-3224tgr:4#. There are a number of helpful features included in the cli. Entering the ? Command will display a list of all of the top-level commands. Figure 2-2....

  • Page 10

    Dgs-3224tgr gigabit ethernet switch cli reference manual figure 2-3. Example command parameter help in this case, the command config account was entered with the parameter . The cli will then prompt you to enter the with the message, next possible completions:. Every command in the cli has this feat...

  • Page 11

    Dgs-3224tgr gigabit ethernet switch cli reference manual figure 2-5. The available commands prompt the top-level commands consist of commands like show or config. Most of these commands require one or more parameters to narrow the top-level command. This is equivalent to show what?Or config what? Wh...

  • Page 12: Ommand

    Dgs-3224tgr gigabit ethernet switch cli reference manual 3 c ommand s yntax the following symbols are used in this manual to describe how command entries are made and values and arguments are specified in this manual. The online help contained in the cli and available through the console interface u...

  • Page 16

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#config account dlink command: config account dlink enter a old password:**** enter a case-sensitive new password:**** enter the new password again for confirmation:**** success. Dgs-3224tgr:4# show account purpose used to display...

  • Page 17

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#delete account system command: delete account system success. Dgs-3224tgr:4# show session purpose used to display a list of currently logged-in users. Syntax show session description this command displays a list of all the users ...

  • Page 18

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#sh sw command: show switch device type : dgs-3224tgr gigabit-ethernet switch mac address : 00-01-02-03-04-00 ip address : 10.90.90.90 (manual) vlan name : default subnet mask : 255.0.0.0 default gateway : 0.0.0.0 boot prom versio...

  • Page 20

    Dgs-3224tgr gigabit ethernet switch cli reference manual disable jumbo_frame purpose used to disable support for jumbo frames. Syntax disable jumbo_frame description this command is used to disable support for jumbo frames of up to 9216 bytes. Parameters none. Restrictions only administrator-level u...

  • Page 21

    Dgs-3224tgr gigabit ethernet switch cli reference manual enable clipaging purpose used to pause the scrolling of the console screen when the show command displays more than one page. Syntax enable clipaging description this command is used when issuing the show command will cause the console screen ...

  • Page 22

    Dgs-3224tgr gigabit ethernet switch cli reference manual enable telnet purpose used to enable communication with and management of the switch using the telnet protocol. Syntax enable telnet description this command is used to enable the telnet protocol on the switch. The user can specify the tcp or ...

  • Page 23

    Dgs-3224tgr gigabit ethernet switch cli reference manual enable web purpose used to enable the http-based management software on the switch. Syntax enable web description this command is used to enable the web-based management software on the switch. The user can specify the tcp port number the swit...

  • Page 24

    Dgs-3224tgr gigabit ethernet switch cli reference manual save purpose used to save changes in the switch’s configuration to non-volatile ram. Syntax save description this command is used to enter the current switch configuration into non-volatile ram. The saved switch configuration will be loaded in...

  • Page 26

    Dgs-3224tgr gigabit ethernet switch cli reference manual logout purpose used to log out a user from the switch’s console. Syntax logout description this command terminates the current user’s session on the switch’s console. Parameters none. Restrictions none. Example usage: to terminate the current ...

  • Page 30

    Dgs-3224tgr gigabit ethernet switch cli reference manual show ports purpose used to display the current configuration of a range of ports. Syntax show ports {description} description this command is used to display the current configuration of a range of ports. Parameters − specifies a range of port...

  • Page 34

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#delete snmp community system command: delete snmp community system success. Dgs-3224tgr:4# delete trusted_host purpose used to delete a trusted host entry made using the create trusted_host command above. Syntax delete trusted _h...

  • Page 35

    Dgs-3224tgr gigabit ethernet switch cli reference manual config snmp system_location purpose used to enter a description of the location of the switch. Syntax config snmp system_location description this command is used to enter a description of the location of the switch. A maximum of 128 character...

  • Page 36

    Dgs-3224tgr gigabit ethernet switch cli reference manual enable rmon purpose used to enable rmon on the switch. Syntax enable rmon description this command is used, in conjunction with the disable rmoncommand below, to enable and disable remote monitoring (rmon) on the switch. Parameters none. Restr...

  • Page 37

    Dgs-3224tgr gigabit ethernet switch cli reference manual show trusted_host purpose used to display a list of trusted hosts entered on the switch using the create trusted_host command above. Syntax show trusted_host description this command is used to display a list of trusted hosts entered on the sw...

  • Page 38

    Dgs-3224tgr gigabit ethernet switch cli reference manual disable snmp traps purpose used to disable snmp trap support on the switch. Syntax enable snmp traps description this command is used to disable snmp trap support on the switch. Parameters none. Restrictions only administrator-level users can ...

  • Page 39

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to turn off snmp authentication trap support: dgs-3224tgr:4#disable snmp authenticate traps command: disable snmp authenticate traps success. Dgs-3224tgr:4# ping purpose used to test the connectivity between network devices. Syn...

  • Page 40: Ownload

    Dgs-3224tgr gigabit ethernet switch cli reference manual 7 d ownload /u pload c ommands the download/upload commands in the command line interface (cli) are listed (along with the appropriate parameters) in the following table. Command parameters download firmware configuration {increment} upload co...

  • Page 43: Etwork

    Dgs-3224tgr gigabit ethernet switch cli reference manual 8 n etwork m onitoring c ommands the network monitoring commands in the command line interface (cli) are listed (along with the appropriate parameters) in the following table. Command parameters show packet ports show error ports show utilitza...

  • Page 44

    Dgs-3224tgr gigabit ethernet switch cli reference manual show packet ports purpose used to display statistics about the packets sent and received by the switch. Syntax show packet ports description this command is used to display statistics about packets sent and received by ports specified in the p...

  • Page 45

    Dgs-3224tgr gigabit ethernet switch cli reference manual show error ports purpose used to display the error statistics for a range of ports. Syntax show error ports description this command will display all of the packet error statistics collected and logged by the swtich for a given port list. Para...

  • Page 47

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#clear counters ports 7-9 command: clear counters ports 7-9 success. Dgs-3224tgr:4# clear log purpose used to clear the switch’s history log. Syntax clear log description this command will clear the switch’s history log. Parameter...

  • Page 48

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4# show log command: show log index time log text ----- ---------------------------- ------------------------------------------------------------------------------------- 8 2003/09/18 09:03:45 successful login through console (user...

  • Page 52

    Dgs-3224tgr gigabit ethernet switch cli reference manual enable stp purpose used to globally enable stp on the switch. Syntax enable stp description this command allows the spanning tree protocol to be globally enabled on the switch. Parameters none. Restrictions only administrator-level users can i...

  • Page 53

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: status 1: stp enabled dgs-3224tgr:4#show stp command: show stp stp status : enabled max age : 20 hello time : 2 forward delay : 15 priority : 32768 default path cost : 802.1t stp version : rstp tx hold count : 3 forwarding bpdu ...

  • Page 54

    Dgs-3224tgr gigabit ethernet switch cli reference manual show stp ports purpose used to display the switch’s current per-port group stp configuration. Syntax show stp ports description this command displays the switch’s current per-port group stp configuration. Parameters − specifies a range of port...

  • Page 55: Ayer

    Dgs-3224tgr gigabit ethernet switch cli reference manual 10 l ayer 2 f orwarding d atabase c ommands the layer 2 forwarding database commands in the command line interface (cli) are listed (along with the appropriate parameters) in the following table. Command parameters create fdb port create multi...

  • Page 56

    Dgs-3224tgr gigabit ethernet switch cli reference manual create fdb purpose used to create a static entry to the unicast mac address forwarding table (database) syntax create fdb [port ] description this command will make an entry into the switch’s unicast mac address forwarding database. Parameters...

  • Page 60: Roadcast

    Dgs-3224tgr gigabit ethernet switch cli reference manual 11 b roadcast s torm c ontrol c ommands the broadcast storm control commands in the command line interface (cli) are listed (along with the appropriate parameters) in the following table. Command parameters config traffic control all broadcast...

  • Page 61

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#config traffic control 2-3 broadcast enable command: config traffic control 2-3 broadcast enable success. Dgs-3224tgr:4# show traffic control purpose used to display current traffic control settings. Syntax show traffic control d...

  • Page 65

    Dgs-3224tgr gigabit ethernet switch cli reference manual config scheduling purpose used to configure the traffic scheduling mechanism for each cos queue. Syntax config scheduling weight description the switch contains eight hardware priority queues. Incoming packets must be mapped to one of these ei...

  • Page 66

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4# show scheduling command: show scheduling qos output scheduling class id max. Weight ------------- ------------------ class-0 1 class-1 2 class-2 3 class-3 4 class-4 5 class-5 6 class-6 7 class-7 8 dgs-3224tgr:4# config schedulin...

  • Page 67

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to show the scheduling mechanism: dgs-3224tgr:4# show scheduling_mechanism command: show scheduling_mechanism scheduling mechanism : weight_fair dgs-3224tgr:4# config 802.1p user_priority purpose used to map the 802.1p user prio...

  • Page 68

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4# config 802.1p user_priority 1 3 command: config 802.1p user_priority 1 3 success. Dgs-3224tgr:4# show 802.1p user_priority purpose used to display the current 802.1p user priority to hardware priority queue mapping in use by the...

  • Page 69

    Dgs-3224tgr gigabit ethernet switch cli reference manual config 802.1p default_priority purpose used to configure the 802.1p default priority settings on the switch. If an untagged packet is received by the switch, the priority configured with this command will be written to the packet’s priority fi...

  • Page 70

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to show 802.1p default priority: dgs-3224tgr:4# show 802.1p default_priority command: show 802.1p default_priority port priority ------- ----------- 1 0 2 0 3 0 4 0 5 0 6 0 7 0 8 0 9 0 10 0 11 0 12 0 13 0 14 0 15 0 16 0 17 0 18 ...

  • Page 71

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4# enable hol_prevention command: enable hol_prevention success. Dgs-3224tgr:4# disable hol_prevention purpose used to disable hol prevention. Syntax disable hol_prevention description the disable hol_prevention command disables he...

  • Page 74

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#enable mirror command: enable mirror success. Dgs-3224tgr:4# disable mirror purpose used to disable a previously entered port mirroring configuration. Syntax disable mirror description this command, combined with the enable mirro...

  • Page 76

    Dgs-3224tgr gigabit ethernet switch cli reference manual config port_security restrictions only administrator-level users can issue this command. Example usage: to config port security: dgs-3224tgr:4#config port_security ports 1-6 admin_state enable max_learning_addr 10 lock_address_mode permanent c...

  • Page 77

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to clear port security entry by port(s): dgs-3224tgr:4#clear port_security_entry port 1-6 command: clear port_security_entry port 1-6 success. Dgs-3224tgr:4# show port_security purpose used to display the port security related i...

  • Page 82

    Dgs-3224tgr gigabit ethernet switch cli reference manual config gvrp restrictions only administrator-level users can issue this command. Example usage: to sets the ingress checking status and the gvrp status: dgs-3224tgr:4#config gvrp 1-5 state enable ingress_checking enable pvid 2 command: config g...

  • Page 83

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#disable gvrp command: disable gvrp success. Dgs-3224tgr:4# show vlan purpose used to display the current vlan configuration on the switch syntax show vlan {} description this command displays summary information about each vlan i...

  • Page 84

    Dgs-3224tgr gigabit ethernet switch cli reference manual to display 802.1q port setting: dgs-3224tgr:4#show gvrp command: show gvrp global gvrp : disabled port pvid gvrp ingress checking ---- -------- -------- -------------------- 1 1 enable enable 2 1 enable enable 3 1 enable enable 4 1 enable enab...

  • Page 85

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#enable asymmetric_vlan command: enable asymmetric_vlan success. Dgs-3224tgr:4# disable asymmetric_vlan purpose used to disable asymmetric vlans on the switch. Syntax disable asymmetric_vlan description this command disables asymm...

  • Page 90

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#show link_aggregation command: show link_aggregation link aggregation algorithm = mac-source group id : 1 type : trunk master port : 10 member port : 5-10 active port : status : disabled flooding port : 0 dgs-3224tgr:4# config la...

  • Page 91

    Dgs-3224tgr gigabit ethernet switch cli reference manual to show the lacp status for ports 1 to 3: dgs-3224tgr:4#show lacp_ports command: show lacp_ports 1-3 port activity -------- ------------ 1 active 2 active 3 active dgs-3224tgr:4# 87.

  • Page 93

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#config ipif system ipaddress 10.48.74.122/8 command: config ipif system ipaddress 10.48.74.122/8 success. Dgs-3224tgr:4# show ipif purpose used to display the configuration of an ip interface on the switch. Syntax show ipif {} de...

  • Page 94: Igmp S

    Dgs-3224tgr gigabit ethernet switch cli reference manual 19 igmp s nooping c ommands the switch port commands in the command line interface (cli) are listed (along with the appropriate parameters) in the following table. Command parameters config igmp_snooping all host_timeout router_timeout leave_t...

  • Page 96

    Dgs-3224tgr gigabit ethernet switch cli reference manual config igmp_snooping querier purpose used to configure the time in seconds between general query transmissions, the maximum time in seconds to wait for reports from members, the permitted packet loss that guarantees igmp snooping. Syntax confi...

  • Page 97

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#config igmp_snooping querier default query_interval 125 state enable command: config igmp_snooping querier default query_interval 125 state enable success. Dgs-3224tgr:4# config router_ports purpose used to configure ports as rou...

  • Page 98

    Dgs-3224tgr gigabit ethernet switch cli reference manual enable igmp_snooping purpose used to enable igmp snooping on the switch. Syntax enable igmp_snooping {forward_mcrouter_only} description this command allows you to enable igmp snooping on the switch. If forward_mcrouter_only is specified, the ...

  • Page 99

    Dgs-3224tgr gigabit ethernet switch cli reference manual show igmp_snooping purpose used to show the current status of igmp snooping on the switch. Syntax show igmp_snooping {vlan } description this command will display the current igmp snooping configuration on the switch. Parameters − the name of ...

  • Page 100

    Dgs-3224tgr gigabit ethernet switch cli reference manual show igmp_snooping group purpose used to display the current igmp snooping group configuration on the switch. Syntax show igmp_snooping group {vlan } description this command will display the current igmp snooping group configuration on the sw...

  • Page 101

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to display the router ports: dgs-3224tgr:4#show router_ports command: show router_ports vlan name : default static router port : 1-10 dynamic router port : total entries : 1 dgs-3224tgr:4# 97.

  • Page 102: Outing

    Dgs-3224tgr gigabit ethernet switch cli reference manual 20 r outing t able c ommands the routing table commands in the command line interface (cli) are listed (along with the appropriate parameters) in the following table. Command parameters create iproute default delete iproute default show iprout...

  • Page 103

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#create iproute 10.48.74.121/255.0.0.0 10.1.1.254 1 command: create iproute 10.48.74.121/8 10.1.1.254 1 success. Dgs-3224tgr:4# delete iproute purpose used to delete an ip route entry from the switch’s ip routing table. Syntax del...

  • Page 104

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#show iproute command: show iproute ip address /netmask gateway interface hops protocol ------------------------------ ----------------- ----------------- ----------- ------------- 10.0.0.0/9 0.0.0.0 system 1 local total entries :...

  • Page 105: 802.1X C

    Dgs-3224tgr gigabit ethernet switch cli reference manual 21 802.1x c ommands the dgs-3224tgr implements the server-side of the ieee 802.1x port-based network access control. This mechanism is intended to allow only authorized users, or other network devices, access to network resources by establishi...

  • Page 108

    Dgs-3224tgr gigabit ethernet switch cli reference manual config 802.1x auth_parameter purpose used to configure the 802.1x authentication parameters on a range of ports. The default parameter will return all ports in the specified range to their default 802.1x settings. Syntax config 802.1x auth_par...

  • Page 110

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to configure 802.1x reauthentication for ports 15-18: dgs-3224tgr:4# config 802.1x reauth port_based 15-18 command: config 802.1x reauth port_based 15-18 success. Dgs-3224tgr:4# config radius add purpose used to configure the se...

  • Page 111

    Dgs-3224tgr gigabit ethernet switch cli reference manual config radius delete purpose used to delete a previously entered radius server configuration. Syntax config radius delete description the config radius delete command is used to delete a previously entered radius server configuration. Paramete...

  • Page 112

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4# config radius add 1 10.48.74.121 key dlink default command: config radius add 1 10.48.74.121 key dlink default success. Dgs-3224tgr:4# show radius purpose used to display the current radius configurations on the switch. Syntax s...

  • Page 113

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4# show 802.1x user command: show 802.1x user index username ------- -------------------- 1 ctsnow dgs-3224tgr:4# create 802.1x user purpose used to create a new 802.1x user. Syntax create 802.1x user description the create 802.1x ...

  • Page 114

    Dgs-3224tgr gigabit ethernet switch cli reference manual show auth_statistics purpose used to display the switch’s authentication statistics. Syntax show auth_statistics {ports } description the show auth_statistics command is used to display authentication statistics. Parameters ports − specifies a...

  • Page 115

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4# show auth_diagnostics command: show auth_diagnostics port number : 1 entersconnecting 0 eaplogoffswhileconnecting 0 entersauthenticating 0 successwhileauthenticating 0 timeoutswhileauthenticating 0 failwhileauthenticating 0 reau...

  • Page 116

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4# show auth_session_statistics command: show auth_session_statistics port number : 1 sessionoctetsrx 0 sessionoctetstx 0 sessionframesrx 0 sessionframestx 0 sessionid sessionauthenticmethod remote authentication server sessiontime...

  • Page 117

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4# show radius auth_client command: show radius auth_client radiusauthclient ==> radiusauthclientinvalidserveraddresses 0 radiusauthclientidentifier d-link radiusauthserverentry ==> radiusauthserverindex :1 radiusauthserveraddress ...

  • Page 118

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4# show radius acct_client radiusacctclient ==> radiusaccclientroundtriptime 0 radiusaccclientresponses 0 radiusaccclientpendingrequests 0 command: show radius acct_client radiusacctclientinvalidserveraddresses 0 radiusacctclientid...

  • Page 119: Ccess

    Dgs-3224tgr gigabit ethernet switch cli reference manual 22 a ccess c ontrol l ist (acl) c ommands the dgs-3224tgr implements access control lists that enable the switch to deny network access to specific devices or device groups based on ip settings or mac address. Command parameters create access_...

  • Page 120

    Dgs-3224tgr gigabit ethernet switch cli reference manual command parameters add access_id ethernet source_mac destination_mac ethernet_type source_ip rst src_port vlan 802.1p ip vlan destination_ip dscp icmp type code igmp type tcp src_port dst_port flag_mask all urg ack psh syn fin udp dst_port pro...

  • Page 121

    Dgs-3224tgr gigabit ethernet switch cli reference manual command parameters packet_content_mask {offset_0-15 0x0-0xffffffff> offset_16-31 0xffffffff> offset_32-47 0xffffffff> offset_48-63 offset_64-79 0xffffffff>} permit user_define 0xffffffff> replace_priority_with replace_dscp_with deny delete acc...

  • Page 122

    Dgs-3224tgr gigabit ethernet switch cli reference manual create access_profile used to create an access profile on the switch and to define which parts of each incoming frame’s header the switch will examine. Masks can be entered that will be combined with the values the switch finds in the specifie...

  • Page 123

    Dgs-3224tgr gigabit ethernet switch cli reference manual create access_profile tcp − specifies that the switch will examine each frames transport control protocol (tcp) field. Dst_port_mask − specifies a udp port mask for the destination port. Src_port_mask − specifies a tcp port mask for the source...

  • Page 124

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4# delete access_profile profile_id 1 command: delete access_profile profile_id 1 success. Dgs-3224tgr:4# 120

  • Page 125

    Dgs-3224tgr gigabit ethernet switch cli reference manual config access_profile purpose used to configure an access profile on the switch and to define specific values that will be used to by the switch to determine if a given packet should be forwarded or filtered. Masks entered using the create acc...

  • Page 126

    Dgs-3224tgr gigabit ethernet switch cli reference manual config access_profile parameters profile_id − an integer between 1 and 8 that is used to identify the access profile that will be configured with this command. Type − specifies that the access profile will apply to this icmp type value. Add ac...

  • Page 127

    Dgs-3224tgr gigabit ethernet switch cli reference manual config access_profile parameters tcp − specifies that the switch will exmamine the transmission control protocol (tcp) field within each packet. User_define − specifies a mask to be combined with the value found in the frame header using a log...

  • Page 128

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#config access_profile profile_id 1 add access_id 1 ethernet vlan default 802.1p 5 permit command: config access_profile profile_id 1 add access_id 1 ethernet vlan default 802.1p 5 permit success. Dgs-3224tgr:4# show access_profil...

  • Page 134

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#show ssh server command: show ssh server the ssh server configuration: max session : 8 connection timeout : 300 authfail attempts : 2 rekey timeout : never ssh server status : disable listened port number : 22 dgs-3224tgr:4# enab...

  • Page 135: Ssl C

    Dgs-3224tgr gigabit ethernet switch cli reference manual 24 ssl c ommands secure sockets layer or ssl is a security feature that will provide a secure communication path between a host and client through the use of authentication, digital signatures and encryption. These security functions are imple...

  • Page 137

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#enable ssl version ssl_v3 command: enable ssl version ssl_v3 note: web will be disabled if ssl is enabled. Success. Dgs-3224tgr:4# note: enabling the ssl function on the switch will disable the port for the web manager (port 80)....

  • Page 139

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#disable ssl version ssl_v3 command: disable ssl version ssl_v3 ssl v3 successfully disabled. Dgs-3224tgr:4# success. To disable ciphersuite rsa_export_with_rc4_40_md5 only: command: disable ssl ciphersuite rsa_export with_rc4_40_...

  • Page 140

    Dgs-3224tgr gigabit ethernet switch cli reference manual show certificate purpose used to view the ssl certificate file status on the switch. Show certificate this command is used to view the certificate file status on the switch. Restrictions none. Syntax description parameters none. Usage example:...

  • Page 141

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#download certificate 172.18.211.69 certfilename cert.Der keyfilename pkey.Der command: download certificate 172.18.211.69 certfilename cert.Der keyfilename pkey.Der certificate loaded successfully! Dgs-3224tgr:4# 137.

  • Page 142: Ccess

    Dgs-3224tgr gigabit ethernet switch cli reference manual 25 a ccess a uthentication c ontrol c ommands • tacacs (terminal access controller access control system) —provides password checking and authentication, and notification of user actions for security purposes utilizing via one or more centrali...

  • Page 144

    Dgs-3224tgr gigabit ethernet switch cli reference manual each command is listed, in detail, in the following sections. Enable authentication_policy purpose used to enable system access authentication policy. Syntax enable authentication_policy description this command will enable an administrator-de...

  • Page 145

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to disable the system access authentication policy: dgs-3224tgr:4#disable authentication_policy command: disable authentication_policy success. Dgs-3224tgr:4# show authentication_policy purpose used to display the system access ...

  • Page 146

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to create the method list “trinity.”: command: create authentication login method_list_name trinity dgs-3224tgr:4#create authentication login method_list_name trinity success. Dgs-3224tgr:4# 142.

  • Page 148

    Dgs-3224tgr gigabit ethernet switch cli reference manual config authentication login method_list_name – enter a previously implemented method list name defined by the user. The user may add one, or a combination of up to four of the following authentication methods to this method list: note: enterin...

  • Page 149

    Dgs-3224tgr gigabit ethernet switch cli reference manual delete authentication login method_list_name purpose used to delete a previously configured user defined method list of authentication methods for users logging on to the switch. Syntax delete authentication login method_list_name description ...

  • Page 153

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to configure a tacacs authentication server host, with port number 4321, a timeout value of 12 seconds and a retransmit count of 4. Dgs-3224tgr:4#config authentication server_host 10.1.1.121 protocol tacacs port 4321 timeout 12 ...

  • Page 154

    Dgs-3224tgr gigabit ethernet switch cli reference manual show authentication server_host purpose used to view a user-defined authentication server host. Show authentication server_host description this command is used to view user-defined authentication server hosts previously created on the switch....

  • Page 155

    Dgs-3224tgr gigabit ethernet switch cli reference manual create authentication server_group purpose used to create a user-defined authentication server group. Syntax create authentication server_group description this command will create an authentication server group. A server group is a technique ...

  • Page 157

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: dgs-3224tgr:4#config authentication server_group group_1 add server_host 10.1.1.121 protocol tacacs+ success. To add an authentication host to server group “group_1”: command: config authentication server_group group_1 add serve...

  • Page 158

    Dgs-3224tgr gigabit ethernet switch cli reference manual show authentication server_group used to view authentication server groups on the switch. Syntax show authentication server_group this command will display authentication server groups currently configured on the switch. This command will disp...

  • Page 159

    Dgs-3224tgr gigabit ethernet switch cli reference manual config login_authentication response_timeout purpose used to configure the amount of time the switch will wait for a user to enter authentication before timing out. Syntax config login_authentication response_timeout description this command w...

  • Page 160

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to set the maximum number of authentication attempts at 5: dgs-3224tgr:4# config login_authentication attempt 5 command: config login_authentication attempt 5 success. Dgs-3224tgr:4# show login_authentication purpose used to dis...

  • Page 161

    Dgs-3224tgr gigabit ethernet switch cli reference manual config login_authentication method_list_name – enter an alphanumeric string of up to 15 characters to define the login_authentication method listthe user wishes to configure. Restrictions none. Dgs-3224tgr:4#config login_authentication console...

  • Page 162: Raffic

    Dgs-3224tgr gigabit ethernet switch cli reference manual 26 t raffic s egmentation c ommands the traffic segmentation commands in the command line interface (cli) are listed (along with the appropriate parameters) in the following table. Command parameters config traffic_segmentation forward_list [n...

  • Page 163

    Dgs-3224tgr gigabit ethernet switch cli reference manual show traffic_segmentation purpose used to display the current traffic segmentation table. Syntax show traffic_segmentation {} description this command displays the current traffic segmentation table. Parameters – specifes a range of ports to b...

  • Page 164: D-L

    Dgs-3224tgr gigabit ethernet switch cli reference manual 27 d-l ink s ingle ip m anagement c ommands simply put, d-link single ip management is a concept that will stack switches together over ethernet instead of using stacking ports or modules. Switches using single ip management (labeled here as s...

  • Page 165

    Dgs-3224tgr gigabit ethernet switch cli reference manual it is connected to the cs through the cs management vlan the following rules also apply to the above roles: when a cas becomes a ms, it automatically becomes a member of first snmp community (include read/write and read only) to which the cs b...

  • Page 166

    Dgs-3224tgr gigabit ethernet switch cli reference manual enable sim purpose used to enable single ip management (sim) on the switch syntax enable sim description this command will enable sim globally on the switch. Sim features and functions will not function properly unless this function is enabled...

  • Page 168

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to show the sim information in detail: dgs-3224tgr:4#show sim command: show sim sim version : ver-1 firmware version : build 3.00-b13 device name : mac address : 00-35-26-11-11-00 capabilities : l3 platform : dgs-3224tgr l3 swit...

  • Page 169

    Dgs-3224tgr gigabit ethernet switch cli reference manual port mac address role ------ ------------------ --------- 23 00-35-26-00-11-99 commander 23 00-35-26-00-11-91 member 24 00-35-26-00-11-90 candidate total entries: 3 dgs-3224tgr:4# to show other groups information in summary, if group is specif...

  • Page 170

    Dgs-3224tgr gigabit ethernet switch cli reference manual reconfig syntax reconfig {member_id description this command is used to reconnect to a member switch using telnet. Parameters member_id - select the id number of the member switch the user desires to configure. Exit – this command is used to e...

  • Page 171

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to add a member: dgs-3224tgr:4#config sim_group add 2 command: config sim_group add 2 please wait for ack... Sim config success !!! Success. Dgs-3224tgr:4# to delete a member: dgs-3224tgr:4#config sim delete 1 command: config si...

  • Page 173

    Dgs-3224tgr gigabit ethernet switch cli reference manual to change the hold time of the discovery protocol: dgs-3224tgr:4# config sim commander hold_time 120 command: config sim commander hold_time 120 success. Dgs-3224tgr:4# to transfer the commander switch to be a candidate: dgs-3224tgr:4#config s...

  • Page 175

    Dgs-3224tgr gigabit ethernet switch cli reference manual example usage: to download firmware: dgs-3224tgr:4# download sim firmware 10.53.13.94 c:/dgssri.Had members all command: download sim firmware 10.53.13.94 c:/dgssri.Had members all this device is updating firmware. Please wait... Download stat...

  • Page 176

    Dgs-3224tgr gigabit ethernet switch cli reference manual upload sim_ms configuration purpose user to upload a configuration file to a tftp server from a specified member of a sim group. Syntax upload sim_ms configuration description this command will upload a configuration file to a tftp server from...

  • Page 177: Ommand

    Dgs-3224tgr gigabit ethernet switch cli reference manual 28 c ommand h istory l ist the switch port commands in the command line interface (cli) are listed (along with the appropriate parameters) in the following table. Command parameters ? Show command_history dir config command_history each comman...

  • Page 178

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#? Command: ? .. ? Clear clear arptable clear counters clear fdb clear log clear port_security_entry port config 802.1p default_priority config 802.1p user_priority config 802.1x auth_mode config 802.1x auth_parameter ports config...

  • Page 179

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#show command_history command: show command_history ? ? Show show vlan config router_ports vlan2 add 1:1-1:10 config router_ports vlan2 add config router_ports vlan2 config router_ports show vlan create vlan vlan2 tag 3 create vla...

  • Page 180

    Dgs-3224tgr gigabit ethernet switch cli reference manual dgs-3224tgr:4#dir command: dir .. ? Clear clear arptable clear counters clear fdb clear log clear port_security_entry port config 802.1p default_priority config 802.1p user_priority config 802.1x auth_mode config 802.1x auth_parameter ports co...

  • Page 181: Echnical

    Dgs-3224tgr gigabit ethernet switch cli reference manual a t echnical s pecifications performance transmission method store-and-forward ram buffer 2 mb per device packet filtering/ forwarding rate full-wire speed for all connections. 1,488,095 pps per port (for 1000mbps) mac address learning automat...

  • Page 182

    Dgs-3224tgr gigabit ethernet switch cli reference manual general standards ieee 802.3 10base-t ethernet ieee 802.3x full-duplex flow control ieee 802.3u 100base-tx fast ethernet ieee 802.3z gigabit ethernet ieee 802.1q tagged vlan ieee 802.1p tagged packets ieee 802.3ab 1000base-t ansi/ieee 802.3 nw...

  • Page 183

    Dgs-3224tgr gigabit ethernet switch cli reference manual 179.