Congratulations for purchasing the Web Smart Ethernet Switch. Before you
install and use this product, please read this manual carefully for full exploiting
the functions of this product.
1.1 Product Overview
This is 48 10/100/1000Mbps RJ45 ports + 4 100/1000Mbps SFP ports Ethernet
Switch. The Switch provides the seamless network connection. This device
integrates 1000Mbps Gigabit Ethernet, 100Mbps Fast Ethernet and 10Mbps
Ethernet network capabilities in a highly flexible package. With
48-10/100/1000Mbps Auto-Negotiation RJ45 ports, all UTP ports support Auto
MDI/MDIX function. The Switch with a low-cost, easy-to-use, high performance
upgrade your old network to a 1000Mbps Gigabit network. It is essential to
helping solve network bottlenecks that frequently develop as more advanced
computer users and newer applications continue to demand greater network
resources.
The Switch is easy to install and use. It is a great selection for office network.
1.2 Features
Comply with IEEE802.3, IEEE802.3u, IEEE802.3ab, IEEE802.3x, IEEE802.3z,
IEEE802.3ad standards
Supports IEEE802.3x flow control for Full-duplex Mode and backpressure for
Half-duplex Mode
Supports MAC address auto-learning and auto-aging
Store and forward mode operates
Support SNMP/RMON/TELENT
Supports IEEE802.1Q VLAN, 4K VLAN Table
Support IEEE802.1p Priority Queues
Support 2K+256-entry ingress and egress ACL
Support Storm Control
Support QoS, Port Mirroring, Link Aggregation Protocol
LED indicators for monitoring power, link/activity ,Speed
Web-based Management Support
Internal power adapter supply
The front panel of the Switch consists of 48 x 10/100/1000Mbps RJ-45 ports, 4 x
1000Mbps SFP ports, 1 x Console port, 1 x Reset button and a series of LED
indicators as shown as below.
10/100/1000Mbps RJ-45 ports (1~48):
Designed to connect to the device with a bandwidth of 10Mbps, 100Mbps or
1000Mbps. Each has a corresponding 10/100/1000Mbps LED.
SFP ports (49~52):
Designed to install the SFP module and connect to the device with a bandwidth
of 100Mbps or 1000Mbps.Each has a corresponding 100/1000Mbps LED.
Console port (Console):
Designed to connect with the serial port of a computer or terminal for
monitoring and configuring the Switch.
Reset button (Reset):
Keep the device powered on and press down the button for about 6 seconds. The
system restores the factory default settings.
LED indicators:
The LED Indicators will allow you to monitor, diagnose and troubleshoot any
potential problem with the Switch, connection or attached devices.
The following chart shows the LED indicators of the Switch along with
explanation of each indicator.
The rear panel of the Switch contains AC power connector and one marker
shown as below.
AC Power Connector:
Power is supplied through an external AC power adapter. It
supports AC
100-240V, 50/60Hz.
Grounding Terminal:
The Switch already comes with Lightning Protection Mechanism. You can also
ground the Switch through the PE (Protecting Earth) cable of AC cord or with
Ground Cable.
Before installing the Switch, make sure that the following the "packing list"
listed OK. If any part is lost and damaged, please contact your local agent
immediately. In addition, make sure that you have the tools install Switches and
cables by your hands.
One Web Smart Ethernet Switch
Four rubber feet, two mounting ears and eights screws
This part describes how to install your Web Smart Ethernet Switch and make
connections to it. Please read the following topics and perform the procedures in
the order being presented.
2.1 Installation
Please follow the following instructions in avoid of incorrect installation causing
device damage and security threat.
Put the Switch on stable place or desktop in case of falling damage.
Make sure the Switch works in the proper AC input range and matches the
voltage labeled on the Switch.
To keep the Switch free from lightning, do not open the Switch’s shell even
in power failure.
Make sure that there is proper heat dissipation from and adequate
ventilation around the Switch.
Make sure the cabinet to enough back up the weight of the Switch and its
accessories.
2.1.1 Desktop Installation
Sometimes users are not equipped with the 19-inch standard cabinet. So when
installing the Switch on a desktop, please attach these cushioning rubber feet
provided on the bottom at each corner of the Switch in case of the external
vibration. Allow adequate space for ventilation between the device and the
objects around it.
2.1.2 Rack-mountable Installation in 19-inch Cabinet
The Switch can be mounted in an EIA standard-sized, 19-inch rack, which can be
placed in a wiring closet with other equipment. To install the Switch, please
follow these steps:
a. Attach the mounting brackets on the Switch’s side panels (one on each side)
and secure them with the screws provided.
b. Use the screws provided with the equipment rack to mount the Switch on
the rack and tighten it.
2.1.3 Power on the Switch
The Switch is powered on by the AC 100-240V 50/60Hz internal
high-performance power supply. Please follow the next tips to connect:
AC Electrical Outlet:
It is recommended to use single-phase three-wire receptacle with neutral outlet
or multifunctional computer professional receptacle. Please make sure to
connect the metal ground connector to the grounding source on the outlet.
AC Power Cord Connection:
Connect the AC power connector in the back panel of the Switch to external
receptacle with the included power cord, and check the power indicator is on or
not. When it is on, it indicates the power connection is OK.
Please insert the NIC into the computer, after installing network card driver,
please connect one end of the twisted pair to RJ-45 jack of your computer, the
other end will be connected to any RJ-45 port of the Switch, the distance
between Switch and computer is around 100 meters. Once the connection is OK
and the devices are power on normally, theLNK/ACT/Speed status indicator lights
corresponding ports of the Switch.
Use standard Cat.5/5e Ethernet cable (UTP/STP) to connect the Switch to end
nodes as described below. Switch ports will automatically adjust to the
characteristics (MDI/MDI-X, speed, duplex) of the device to which is connected.
Please refer to the LED Indicator Specification. The LINK/ACT/Speed LEDs for each
port lights on when the link is available.
3.2 How to Login the Switch
As the Switch provides Web-based management login, you can configure your
computer’s IP address manually to log on to the Switch. The default settings of
the Switch are shown below.
Parameter Default Value
Default IP address 192.168.2.1
Default username admin
Default password admin
The Web Smart Ethernet Switch Managed switch software provides rich layer 2
functionality for switches in your networks. This chapter describes how to use
Web-based management interface (Web UI) to thisswitchconfigure managed
switch software features.
In the Web UI, the left column shows the configuration menu. Above you can see
the information for switch system, such as memory, software version. The middle
shows the switch’s current link status. Green squares indicate the port link is up,
while black squares indicate the port link is down. Below the switch panel, you
can find a common toolbar to provide useful functions for users. The rest of the
screen area displays the configuration settings.
4.1 Quickly setting
In the navigation bar to select “Quick Setup”, can create a VLAN in this module,
add the port in the VLAN, set the basic information and modify the switch login
password. The following picture:
Parameter Description
VLAN ID VLAN number,48GE default VLAN 1
VLAN name VLAN mark
Manage IP Manage the IP address of the VLAN
device name Switch name
Manage VLAN Switches management in use of the VLAN
【instructions】Native VLAN: as a Trunk, the mouth will belong to a Native VLAN. The so-called
Native VLAN, is refers to UNTAG send or receive a message on the interface, is
considered belongs to the VLAN. Obviously, the interface of the default VLAN ID
(PVID) in the IEEE 802.1 Q VLAN ID is the Native VLAN. At the same time, send
belong to Native VLAN frame on the Trunk, must adopt UNTAG way.
Allowed VLAN list: a Trunk can transport the equipment support by default all
the VLAN traffic (1-4094). But, also can by setting the permission VLAN Trunk at
the mouth of the list to limit the flow of some VLAN can't through the Trunk.
【Configuration example】
1) VLAN setting:such as create VLAN 2 ,Sets the port 8 to Trunk ,Native VLAN 2
In the navigation bar to select “PORT”. You may conduct basic config, port
aggregation, port mirroring , port limit and port isolation.
4.2.1 Basic config
In the navigation bar to select “PORT>basic config”. For panel port to port
described, port speed, port status, working mode, flow control, cross line order
configuration, the following picture:
parameterdescription
port Select the current configuration port number
port status Choose whether to close link port
flow control Whether open flow control
ALL-SG8452M – User Manual
Can choose the following kinds:
Aggregation
port speed
10 M
100 M
1000 M
Can choose the following kinds:
Self negotiated
working mode
10 M
100 M
1000 M
port described The port is described
Cross line sequence Whether open intersection line sequence
【instructions】
Open flow control should be negotiated will close, negotiated close is to set port
speed rate and working mode; Set the port rate more than actual rate of port, the
port will be up.
【Configuration example】
Such as:The port is set to 10 M, half duplex, open flow control and cross line
sequence and port state
In the navigation bar to select “PORT>port aggregation”. In order to expand the
port bandwidth or achieve the bandwidth of the redundancy backup, the following
picture:
【parameter description】
parameter description
52GE switch can be set up eight link trunk group, group_1
Aggregation port
to group_8
For each of the members of the group and add your own
Member port
port, and with members of other groups
【instructions】
Open the port of the ARP check function, the port of the important device ARP, the
port of the VLAN MAC function, and the monitor port in the port image can’t be
Such as: set the port 9, 10, for aggregation port 1, lets this aggregation port 1
connected to other switch aggregation port 1 to build switch links .
4.2.3 Port mirroring
In the navigation bar to select “PORT>port mirroring”,Open port mirror feature,All
packets on the source port are copied and forwarded to the destination
port,Destination port is usually connected to a packet analyzer to analyze the source
port,Multiple ports can be mirrored to a destination port,the following picture:
【parameter description】
parameterdescription
Source port To monitor the port in and out of flow
Destination port
Set destination port,All packets on the source port are copied
and forwarded to the destination port
【instructions】
The port of the aggregate port can not be used as a destination port and the source
port, destination port and source port can not be the same.
【Configuration example】
Such as: set a mirror group for port 10 regulatory port 4, 6, 8 on and out flow
conditions
4.2.4 Port rate-limit
In the navigation bar to select “PORT>port rate-limit”.
To port output, input speed limit, the following picture:
In the navigation bar to select “PORT>port isolation”, ports are isolated. The
following picture:
【parameter description】
parameter
description
Source port Choose a port, to configure the isolated port
Isolated port
Port will be isolated
【instructions】
Open port isolation function, All packets on the source port are not forwarded from
the isolated port, the selected ports are isolated.
Ports that have been added to the aggregate port aren't also capable of being a
destination port and source port, destination port and source port cannot be the
same
【Configuration example】
Such as: the port 3, 4, 5, and 6 ports are isolated
In the navigation bar to select “VLAN”. You can manage the VLAN config, Trunk
Settings and Hybrid Settings. The following picture:
4.3.1 VLAN config
In the navigation bar to select “VLAN config”. VLANs can be created and set the
port to the VLAN (port default state for the access mode) ,the following picture
【parameter description】
parameterdescription
VLAN ID VLAN number,48GE default VLAN 1
VLAN name VLAN mark
Native VLAN: as a Trunk, the mouth will belong to a Native VLAN. The so-called
Native VLAN, is refers to UNTAG send or receive a message on the interface, is
considered belongs to the VLAN. Obviously, the interface of the default VLAN ID
(PVID) in the IEEE 802.1 Q VLAN ID is the Native VLAN. At the same time, send belong
to Native VLAN frame on the Trunk, must adopt UNTAG way.
Allowed VLAN list: a Trunk can transport the equipment support by default all the
VLAN traffic (1-4094). But, also can by setting the permission VLAN Trunk at the
mouth of the list to limit the flow of some VLAN can't through the Trunk.
【Configuration example】
Such as:PVID=VLAN2
PC1:192.168.2.122, port 8, access VLAN2
PC2:192.168.2.123, port 9, Trunk allowed VLAN 1-2
PC3:192.168.2.124, port 10, access VLAN1(The default port belongs to VLAN1)
Can let the PC2 PING PC1, cannot PING PC3
In the navigation bar to select “VLAN config>hybrid-port setting”, Can set the
port to take the tag and without the tag ,the following picture:
【instructions】
Hybrid port to packet:
Receives a packet, judge whether there is a VLAN information: if there is no play in
port PVID, exchanged and forwarding, if have, whether the Hybrid port allows the
VLAN data into: if can be forwarded, or discarded (untag on port configuration is not
considered, untag configuration only work when to send it a message)
Hybrid port to send packet:
1, determine the VLAN in this port attributes (disp interface can see the port to which
VLAN untag, which VLAN tag)
2, if it is untag stripping VLAN information, send again, if the tag is sent directly
【Configuration example】
Such as: create vlans 10, 20, VLAN sets the Native VLAN port 1 to 10, to tag VLAN for
10, 20, sets the Native VLAN port 2 to 20, to tag VLAN for 10, 20
This system e0/1 and the receive system e0/2 PC can be exchanged, but when each
data taken from a VLAN is different.
Data from the pc1, by inter0/1 pvid VLAN10 encapsulation VLAN10 labeled into
switches, switch found system e0/2 allows 10 data through the VLAN, so the data is
forwarded to the system e0/2, because the system e0/2 VLAN is untagged 10, then
switches at this time to remove packet VLAN10 tag, in the form of ordinary package
sent to pc2, pc1 - > p2 is VLAN10 walking at this time
Again to analyze pc2 gave pc1 package process, data from the pc2, by inter0/2 pvid
VLAN20 encapsulation VLAN20 labeled into switch, switch found system e0/1 allows
VLAN by 20 data, so the data is forwarded to the system e0/1, because the system
e0/1 on the VLAN is untagged 20, then switches remove packets on VLAN20 tag at
this time, in the form of ordinary package sent to pc1, pc2 at this time - > pc1 is VLAN
20
4.4 Fault/Safety
In the navigation bar to select “fault/safety”. You can set anti attack、channel
detection and ACL access control configuration 。
4.4.1 Anti attack
4.4.1.1 Anti DHCP attack
In the navigation bar to select “fault/safety>anti attack>anti dhcp attack”. Open
the DHCP anti-attack function, intercepting counterfeit DHCP server and address
depletion attack packets ban kangaroo DHCP server, the following picture: