Force10 Networks IP Router, 770-0015-BL User Manual

IP Router
MENU-DRIVEN USER INTERFACE
USER MANUAL
Part Number: 770-0015-BL
Product Release: 2.97
August 2009
Copyright © 2009 Force10 Networks Inc. All rights reserved.
®
reserves the right to change, modify, revise this publication without notice.
The hardware and software described herein are furnished under a license or non-disclosure agreement. The hardware, software, and manual may be used or copied only in accordance with the terms of this agreement. It is against the law to reproduce, transmit, transcribe, store in a retrieval system, or translate into any medium
- electronic, mechanical, magnetic, optical, chemical, manual, or otherwise - any part of this manual or software supplied with the product for any purpose other than the purchaser’s personal use without the express written permission of Force10 Networks Inc.
Trademarks
Adit and Force10 Networks are registered trademarks of Force10 Networks, Inc. Force10 and the Force10 logo are trademarks of Force10 Networks, Inc. or its affiliates in the United States and other countries and are protected by U.S. and international copyright laws. All other brand and product names are trademarks or registered trademarks of their respective holders.
Statement of Conditions
In the interest of improving internal design, operational function, and/or reliability, Force10 Networks reserves the right to make changes to products described in this document without notice. Force10 Networks does not assume any liability that may occur due to the use or application of the product(s) described herein.
Corporate Contact Information:
Force10 Networks, Inc. 350 Holger Way San Jose, CA 95134-1362 Phone: +1 (866) 571-2600 or +1 (408) 571-3500
www.Force10Networks.com
Supporting Software Versions:
IP Router Release 2.97
Adit 600 Controller Release 10.1.1
Technical Assistance Center:
E-mail: access-support@Force10Networks.com Phone: (US) 866-887-4638 Phone (International/Direct): 1-707-665-4355
Warranty
Force10 Networks, Inc. warrants to BUYER that Product Hardware will be free from substantial defect in material and workmanship under normal use in accordance with its Documentation and given proper installation and maintenance for period of five years from the date of shipment by Force10 Networks.
Force10 Networks warrants that the Licensed Software, when used as permitted under its License Terms and in accordance with the instructions and configurations described in the Documentation (including use on Force10 Networks product or a computer hardware and operating system platform supported by Force10 Networks), will operate substantially as described in the Documentation for a period of ninety (90) days after date of shipment of the Licensed Software to BUYER.
This warranty shall not apply to Products or Software that have been either resold or transferred from BUYER to any other party. Any such transfer voids the above warranty and related licenses. Force10 Networks offers expanded product care beyond what is covered by the warranty through different support plans. The plans are designed to maximize network availability through advance replacement for defective equipment. Please contact your Force10 Networks representative for support program details.
PREFACE
Preface
Warranty Procedure
BUYER must promptly notify Force10 Networks of any defect in the Product or Software and comply with Force10 Networks' return/repair policy and procedures. Force10 Networks or its agent will have the right to inspect the Product or workmanship on BUYER's premises. With respect to a warranty defect in Product hardware reported to Force10 Networks by BUYER during the warranty period, Force10 Networks, as its sole obligation and BUYER's exclusive remedy for any breach of warranty, will use commercially reasonable efforts, at its option, to:
a. repair, replace, or service at its factory or on the BUYER's premises the Product, or
component therein, or workmanship found to be defective so that the Product hardware operates substantially in accordance with Force10 Networks Documentation; or
b. credit BUYER for the Product in accordance with Force10 Networks' depreciation
policy.
Preface
With respect to a warranty defect in the Licensed Software reported to Force10 Networks by BUYER during the 90-day software warranty period, Force10 Networks, at its own expense and as its sole obligation and BUYER's exclusive remedy for any breach of the software warranty, will use commercially reasonable efforts to, at its option,
a. correct any reproducible error in the Licensed Software, or
b. replace the defective Licensed Software, as follows:
Should a Severity 1 or 2 warranty defect with the Software occur during the 90-day warranty period, Force10 Networks will provide, in its sole determination, either
1. software to resolve the defect to be downloaded into the affected units by the BUYER or
2. a documented workaround to address the issue.
Severity 1 issues are failures of the Licensed Software to comply with the Force10 Networks software specifications and that completely or severely affect the Force10 Networks Product and its traffic or service capacity, or maintenance or monitoring capabilities.
Severity 2 issues are failures of the Licensed Software to comply with the Force10 Networks software specifications and that result in a major degradation of the Force10 Networks Product so as to impact its system or service performance, or significant impairments to network operator control or effectiveness. Should a Severity 3 warranty defect with the Licensed Software occur during the 90-day warranty period, Force10 Networks will provide assistance to Buyer to determine if a solution or workaround will be provided in a subsequent software release following the reported issue.
Severity 3 issues are defined as failures of the Licensed Software to comply with the Force10 Networks software specifications but that do not significantly impair the function or service of the Force10 Networks Product or the system.
Determination of Severity 1, 2 or 3 shall be made solely by Force10 Networks following receipt of the reported problem. Refurbished material may be used to repair or replace the Product. BUYER shall bear the risk of loss for Products or Software returned to Force10 Networks for repair, replacement, or service, and the same must be shipped pre-paid by BUYER.
Requests for warranty services and troubleshooting must be made to, and will be provided by, the Force10 Networks Customer Support Center via telephone during the warranty period and during normal business hours. Normal business hours for Force10 Networks Customer Support Center are 7:00 a.m. to 6:00 p.m. Mountain Standard Time, Monday through Friday, excluding weekends and standard Force10 Networks recognized holidays.
iv IP Router - Release 2.97
Preface
Limitation of Warranty & Limitation of Remedies
Correction of defects by repair, replacement, or service will be at Force10 Networks' option and constitute Force10 Networks' sole obligation and BUYER's sole and exclusive remedy under the limited warranty. Any such error correction or replacement provided to BUYER does not extend the original warranty period for hardware or software, respectively.
Force10 Networks assumes no warranty or other liability with respect to defects in the Product or Software caused by:
a. modification, repair, storage, installation, operation, or maintenance of the Product or
Software by anyone other than Force10 Networks or its agent, or as authorized and in accordance with the Force10 Networks Documentation; or
b. the negligent, unlawful or other improper use or storage of the Product or Software,
including its use with incompatible equipment or software; or
c. fire, explosion, power failures, acts of God, or any other cause beyond Force10
Networks' reasonable control; or
d. handling or transportation after title of the Product passes to BUYER.
Other manufacturer's equipment or software purchased by Force10 Networks and resold to BUYER will be limited to that manufacturer's warranty. Force10 Networks assumes no warranty liability for other manufacturer's equipment or software furnished by BUYER.
BUYER UNDERSTANDS AND AGREES AS FOLLOWS: Except for the limited warranty set forth above, the Product, License Software and all services performed by Force10 Networks hereunder are provided "as is," without representations or warranties of any kind. Force10 Networks does not warrant that the Product, License Software, any hardware or software, or any update, upgrade, fix or workaround furnished to BUYER will meet BUYER's requirements, that the operation thereof, including any maintenance or major releases thereto will be uninterrupted or error-free.
THE WARRANTIES IN THIS AGREEMENT REPLACE ALL OTHER WARRANTIES, EXPRESSED OR IMPLIED, AND ALL OTHER OBLIGATIONS OR LIABILITIES OF FORCE10 NETWORKS, INCLUDING ANY WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, NONINFRINGEMENT AND/OR ANY IMPLIED WARRANTIES ARISING OUT OF COURSE OF PERFORMANCE OR COURSE OF DEALING. ALL OTHER WARRANTIES ARE DISCLAIMED AND EXCLUDED BY FORCE10 NETWORKS.
THE REMEDIES CONTAINED IN THIS AGREEMENT WILL BE THE SOLE AND EXCLUSIVE REMEDIES WHETHER IN CONTRACT, TORT, OR OTHERWISE, AND FORCE10 NETWORKS WILL NOT BE LIABLE FOR INJURIES OR DAMAGES TO PERSONS OR PROPERTY RESULTING FROM ANY CAUSE WHATSOEVER, WITH THE EXCEPTION OF INJURIES OR DAMAGES CAUSED BY THE GROSS NEGLIGENCE OF FORCE10 NETWORKS. THIS LIMITATION APPLIES TO ALL SERVICES, SOFTWARE, AND PRODUCTS DURING AND AFTER THE WARRANTY PERIOD. IN NO EVENT WILL FORCE10 NETWORKS BE LIABLE FOR ANY SPECIAL, INCIDENTAL, OR CONSEQUENTIAL DAMAGES, LOSS OF DATA, OR COMMERCIAL LOSSES EVEN IF FORCE10 NETWORKS HAS BEEN ADVISED THEREOF.
IP Router - Release 2.97 v
Preface
No agent, BUYER, or representative is authorized to make any warranties on behalf of Force10 Networks or to assume for Force10 Networks any other liability in connection with any of Force10 Networks' Products, software, or services.
The foregoing summarizes Force10 Networks' entire product and software warranties, which are subject to change without notice.
Warranty Product Returns
Before returning any equipment to Force10 Networks, Inc., first contact the distributor or dealer from which you purchased the product.
A Return Material Authorization (RMA) number is required for all equipment returned to Force10 Networks, Inc. Call Force10 Networks Customer Support at 1-866-887-4638 (US) or 1-707-665­4355 (International/Direct) for RMA number, repair/warranty information and shipping instructions. Be prepared to provide the following information:
Force10 Networks serial number(s) from the system chassis or circuit card(s)
Name of distributor or dealer from which you purchased the product
Description of defect
vi IP Router - Release 2.97
Preface
Notices
This manual contains important information and warnings that must be followed to ensure safe operation of the equipment.
DANGER! A DANGER NOTICE INDICATES THE PRESENCE OF A HAZARD THAT
CAN OR WILL CAUSE DEATH OR SEVERE PERSONAL INJURY IF THE HAZARD IS NOT AVOIDED.
CAUTION! A CAUTION NOTICE INDICATES THE POSSIBILITY OF
INTERRUPTING NETWORK SERVICE IF THE HAZARD IS NOT AVOIDED.
WARNING! A WARNING NOTICE INDICATES THE POSSIBILITY OF EQUIPMENT
DAMAGE IF THE HAZARD IS NOT AVOIDED.
NOTE: A Note indicates information to help you understand how to
perform a procedure or how the system works. Notes should be read before performing the required action.
IP Router - Release 2.97 vii
Preface
viii IP Router - Release 2.97
TABLE OF CONTENTS
Table of Contents
Preface
Warranty . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . iii
Warranty Procedure . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . iii
Limitation of Warranty & Limitation of Remedies . . . . . . . . . . . . . . . v
Warranty Product Returns . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . vi
Notices . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . vii
1 Introduction
Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-2
Installation. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-2
Install a Router Card . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-2
Maneuvering in the System. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-2
Fields . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-3
Scroll Field. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-3
Select Field. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-3
Edit Field . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-3
Help Bar . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-4
Connecting to the Router. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-5
Establish a Telnet Session . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-5
Set a New Password. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-6
Table of Contents
2 Management Window
Management Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2-2
System Time/Login . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .2-3
System Date and Time . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .2-4
Daylight Savings Time Adjustment . . . . . . . . . . . . . . . . . . . . . . . . . .2-5
Auto-Logout Timer . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .2-5
View Password . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .2-5
Config Password . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2-5
Admin Password . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .2-5
Enhanced Security. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .2-6
Upload/Download. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2-8
Set up the Router for Uploads/Downloads . . . . . . . . . . . . . . . . . . . . .2-9
Upload/Download Setup Menu Fields . . . . . . . . . . . . . . . . . . . . . . . 2-12
Load Defaults . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2-14
Software Images . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2-15
Options . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .2-16
3 Profile Directory: Router Card Profile
Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-2
Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .3-2
RIP Mode Receive . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-4
RIP Mode Send. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-4
Trunk . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-4
Security. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .3-7
SNMP . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-11
DNS Proxy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3-16
Spanning Tree Protocol . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .3-18
Network Time Protocol . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .3-20
SysLog . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .3-23
DNS Resolver. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .3-25
iv IP Router - Release 2.97
Table of Contents
4 Profile Directory: Local Profile
Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-2
LAN (Local) Profile Setup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-4
To Set Up a Local Profile: . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-5
LAN IP: . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-8
LAN IPX:. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-8
Setup < > . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-9
Link Speed . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-10
Static Networks . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-11
To Set Up Static Networks. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-13
Static Addresses . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-18
Filters. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-22
Defining Custom Filters. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-25
Defining Protocol Filters . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-27
Defining Address Filters . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-29
Firewall Filters (Local Profile) . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-31
Advertise Network/Server. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-39
IPX Server Advertising . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-43
DHCP Server/Client/Relay . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-45
LAN Collision Threshold . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-53
Spanning Tree . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-56
Secondary IP Address . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-59
Link Speed. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4-62
5 Profile Directory:Remote Profile
Remote (WAN) Profile Overview. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 5-2
Transmission Options . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 5-6
Security/Options . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 5-16
Static/VPN Networks . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 5-19
GRE Tunnel set to <All> . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 5-21
GRE Tunnel set to <By Network>. . . . . . . . . . . . . . . . . . . . . . . . . . 5-23
Static NAT Addresses . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 5-27
NAT Bypass Subnets . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 5-30
Static Addresses . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 5-32
IP Router - Release 2.97 v
Table of Contents
6 Basic Configuration
Firewall Filters (Remote Profile) . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 5-36
Filter Network/Server. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .5-43
Spanning Tree. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .5-48
Trunk Port. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .5-51
Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 6-2
Start Basic Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .6-2
Local Unit Identification . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .6-4
Routing Protocol/Security . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 6-5
WAN Interface Connections . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .6-7
Remote Unit Profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 6-9
SNMP Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .6-12
Setup Complete . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .6-13
7 Verification Window
Ping Utility . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .7-2
Trace Route . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 7-6
Port Monitor . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .7-9
8 Statistics Window
Run-Time . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 8-2
9 System Reports Window
Events . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 9-2
Alarms . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .9-4
Networks/Servers . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .9-6
Address Tables . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 9-11
10 Exit Window
Logout . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .10-2
Reinitialize . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 10-3
vi IP Router - Release 2.97
Table of Contents
11 Router Configuration
Basic Setup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-2
PPP Internet Connection and
Public IP Address Routing. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-3
Frame Relay Internet Connection and
Public IP Address Routing. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-4
Internet Connection using PPP, NAT/PAT and Firewall Filters . . . . . . 11-5
Internet Connection using NAT and Static NAT Addresses. . . . . . . . . . 11-7
Back-to-Back with PPP. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-9
Back-to-Back with Multi-Link PPP . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-11
Boulder Router in Slot 1 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-11
Denver Router in Slot 1 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-12
Back-to-Back with Frame Relay . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-13
A User Events
User Events . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . A-2
Authenticate Events. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . A-3
Triggered Events . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . A-4
Alarms . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . A-5
B Protocol Types
Protocol Number in Firewall Filters . . . . . . . . . . . . . . . . . . . . . . . . . . . . . B-2
Ethernet Protocol Types . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . B-7
C Troubleshooting
Communication Related Issues . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . C-2
Excessive Triggered Update Events on the Events screen . . . . . . . . C-2
LAN Related Issues. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . C-2
Unable to add data filters, advertise networks or create static
route entries . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . C-2
Unable to access the Local (LAN) Router unit via Telnet. . . . . . . . . C-4
Unable to access a remote unit via Telnet . . . . . . . . . . . . . . . . . . . . . C-4
IP Router - Release 2.97 vii
Table of Contents
Diagnostics and Performance Tools. . . . . . . . . . . . . . . . . . . . . . . . . . . . . C-5
Verification . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . C-6
Statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . C-6
System Reports . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . C-7
Alarms . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . C-8
Identify Alarm . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . C-8
Clear Alarm . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . C-10
Glossary
Index
viii IP Router - Release 2.97
CHAPTER
In this Chapter
Overview
Installation
Maneuvering in the System
1
Introduction
Fields
Help Bar
Connecting to the Router
Introduction
Overview
Overview
The IP Router can be configured using CLI via telnet or through the Router Menu-driven Software.
This manual covers the Router menu-driven user interface only. All other information for the Router can be found in the Adit 600 User Manual.
Installation
The IP Router card can be installed into any of the service card slots (1-6) of the Adit 600 chassis. This card is hot-swappable, therefore the card can be removed and replaced without bringing down the system or with or without power to the unit.
Install a Router Card
1. Slide the Router card into a service card slot of the chassis.
2. Press firmly into slot to engage, until card is seated completely.
3. Card has completed bootup when a solid Red CRD light (an LED) is displayed.
Maneuvering in the System
[TAB] moves from one field to the next.
Keyboard arrows move to the next field in the direction of the arrow.
[ ] Items in brackets are scrollable options. With the Spacebar the operator can move through the selections.
[E
NTER] displays the window for the selected feature or to enter a alphanumeric value.
[E
SC] Exit and return to previous window or to the Main Menu.
Help Bar - is displayed along the bottom of the window and lists options for the
selected feature.
The Router software contains three different field types that may be used in entering information: scroll, select and edit.
1-2 IP Router - Release 2.97
Introduction
Fields
Fields
Scroll Field
A field enclosed in angle brackets is a scrollable option field. While the field is selected use the following keystrokes:
PACEBAR] will scroll forward through the options
[S
[E
NTER] will open the option’s window or accept the entered value.
Example: Terminal: <generic>
Select Field
A field followed by –> is a selectable field, which causes an action to be performed, highlight the field and press [E
NTER] to perform the action, for example, to enter
the Trunk Port Setup screen.
Example: SETUP <Trunk> –>
Some selectable fields, such as Main Menu options, are also a scrollable option field. For example, <Events>–>. Press the [S and then press [E
NTER] to perform the action.
PACEBAR] to select the desired option
Edit Field
A field value enclosed in parentheses ( ) may be modified by entering an alphanumeric character.
Example: SYSTEM NAME: (Adit 600)
You will note that many editable fields are displayed with a default value. To change this value, highlight the field and type over the existing entry or press
[D
ELETE] and then enter new value. Note: these fields are case sensitive. To enter
this value press [E
NTER].
IP Router - Release 2.97 1-3
Introduction
Help Bar
Help Bar
The IP Router provides field specific help that is displayed at the bottom of the window. The help text will indicate if the field is scrollable or editable and provide a brief description of the field. If it is a selectable field, it will state what to do to invoke the action to be performed.
1-4 IP Router - Release 2.97
Introduction
Connecting to the Router
Connecting to the Router
Establish a Telnet Session
1. Use the telnet {rtr_card-addr} CLI command to connect to the Router card. The following example is when the router is located in slot 6.
> telnet 6 Connected. Escape character is '^]'. Attempting Force10 Networks Router connection... Router [Sat Apr 10, 2004 10:51:23] (<CR> to login)
2. Select [ENTER] or <CR> to log in.
Password >
3. Enter default password (admin) and press [ENTER].
Password >***** Select a terminal type... (<space> or <back-space> to toggle, <CR> to accept)
Terminal: <VT100>
4. Select Terminal Type: scroll through options with the [SPACEBAR] and then
NTER] to select. Recommended <generic>.
[E
Terminal: <generic>
IP Router - Release 2.97 1-5
Introduction
Connecting to the Router
Set a New Password
If you have logged in with a default password, for security reasons the password should be changed, the system directs the user to do so.
> telnet 3 Connected. Escape character is '^]'. Attempting Force10 Networks Router connection... Router [Wed Apr 10, 2004 5:51:21] (<CR> to login) Password >***** Select a terminal type... (<space> or <back-space> to toggle, <CR> to accept)
Terminal: <generic> You have logged in with a default password. For security reasons the password should be changed. Complete the change request and record your new password
for future use.
Password Change Request
(Valid Router passwords are from 5 to 15 alpha-numeric characters)
NEW Password >****** RETYPE Password >******
After a successful login, the system prompts the user to change the password from the default.
1. Type in New Password, and press [E
2. Retype in New Password, and press [E
1-6 IP Router - Release 2.97
NTER]
NTER]
CHAPTER
Management Window
In this Chapter
Management Overview
System Time/Login
Upload/Download
2
Load Defaults
Software Images
Management Window
Management Overview
Management Overview
The Management Menu contains the system components of the IP Router software. This section is used to define security parameters, factory default settings, as well as providing software loading and configuration settings for the Router
Management Menu options allow the user to:
Establish the system security features
Install and backup system software
Backup and install configuration settings
Default system parameters to factory settings
NOTE: Two simultaneous sessions are allowed to access the Router software. For example, one local and one remote (one must be accessing with the VIEW level).
2-2 IP Router - Release 2.97
Management Window
System Time/Login
System Time/Login
1. Select Management <System Time/Login> from the Main Menu, and select
NTER].
[E
IP Router - Release 2.97 2-3
Management Window
System Time/Login
This screen provides the basic system and security options for the Router card.
The IP Router is equipped with three password levels and an enhanced security password.
Level 1 VIEW allows the user to view only, no changes are allowed.
Level 2 CONFIG allows the user to view and change all screens.
Level 3 ADMIN allows the user to view and change all screens, terminate
users, as well as change all three passwords.
The Enhanced Security option provides an additional level of security for the network administrator.
System Date and Time
The time and date values are used for reporting purposes. Enter the date in the following format: Mmm DD, YYYY. Immediately follow the date with the desired time entry. The appropriate time format is HH:MM:SS (hour:minute:second). Press [T
AB] to proceed to the next field.
2-4 IP Router - Release 2.97
Management Window
System Time/Login
Daylight Savings Time Adjustment
Use this field to enable or disable automatic adjustment of the system clock for Daylight Savings Time.
Auto-Logout Timer
This field defines the minutes of inactivity before the current session is terminated. The default time is 30 minutes. Type the desired auto-logout time (between 1-255).
NOTE: Any changes that have not been saved will be lost when the timer is activated.
View Password
Users assigned to this level may view only, no changes are allowed. The default
VIEW password is "public". This field must be unique from the CONFIG and ADMIN passwords. The field may be a 5-15 characters alphanumeric value.
Config Password
Users assigned to this level may view and change all screens. The default
CONFIG password is "config". This entry must be unique from the VIEW and ADMIN passwords. The field may be a 5-15 character alphanumeric value.
Admin Password
Users assigned to this level may view and change all screens, as well as change all three password levels. The default ADMIN password is "admin". This entry must be unique from the VIEW and CONFIG passwords. The field value may be a 5-15 character alphanumeric value.
NOTE: If the default login passwords are not changed, the user will be prompted, at each login, to enter new passwords at the CONFIG and ADMIN levels.
IP Router - Release 2.97 2-5
Management Window
System Time/Login
Enhanced Security
The Enhanced Security option provides another level of password security that restricts access to the Main Menu via Telnet or the Async port. It can be used by a Network Administrator to only allow those with the Enhanced Security password to make configuration changes. When enabled, this option hides the system login prompt until the appropriate password is entered.
1. Use the [S
PACEBAR] to select Enable and [TAB] to enter this selection.
2. The Change Enhanced Security Password - > field will display. Select
NTER] to change password. You will be requested to enter the password
[E
twice to confirm.
2-6 IP Router - Release 2.97
Management Window
System Time/Login
When Telneting into the Router with Enhanced Security enabled, the following will appear:
> telnet 6 Connected. Escape character is '^]'.
1. Type the Enhanced Security Password here.
NOTE: There will be no effect to the screen here until the correct password is typed in. When the correct password is typed, no return or other keystroke is needed, the following will appear:
Password >
WARNING! IF ENHANCED SECURITY IS ENABLED, AND THE ADMINISTRATOR
DOES NOT NOTE THE PASSWORD THERE IS NO WAY TO ACCESS THE ROUTER UNTIL YOU HAVE RESET THE ROUTER BACK TO ITS DEFAULT SETTINGS, LOSING ALL CONFIGURATION SETTINGS. SEE set [rtr_card-addr} default.
2. At this point the Router is requesting your Level 1, 2 or 3 User Password. Enter your password and select [E
NTER] and continue as you would Telnet into the
Router normally.
Password >****** Select a terminal type... (<space> or <back-space> to toggle, <CR> to accept)
Terminal: <generic>
IP Router - Release 2.97 2-7
Management Window
Upload/Download
Upload/Download
WARNING! BEFORE LOADING A DOWN-LEVEL OF ROUTER CODE, SAVE THE
CONFIGURATION TO A FILE. CONFIGURATION MAY BE RESET TO THE DEFAULT SETTING AND CURRENT CONFIGURATION LOST.
This window allows the network administrator management of devices and users authorized to perform:
Installation of software
Backup of software and configuration settings (via tftp)
The IP Router management enables a network administrator to perform a Router Code Upload from a central location via the LAN or WAN connection using TFTP. A Code Download can also be performed as a backup (binary image) of the software. Config Upload and Config Download can be performed remotely via TFTP to install and
backup the IP Router’s configuration to and from a binary file.
There is an additional option to upload code to the IP Router, with the CLI command
load {slot-number} tftp {ip-addr}{"file-name"}
2-8 IP Router - Release 2.97
Management Window
Upload/Download
Set up the Router for Uploads/Downloads
1. Select Management: <Upload/Download> from the Main Menu, and
NTER].
[E
IP Router - Release 2.97 2-9
Management Window
Upload/Download
2. Select [CTRL A] to add a TFTP Upload/Download User.
NOTE: The IP Address 1. (* ) will display. The * denotes any IP Address on
the defined Client Site. The user may define a specific IP Address for Uploads/ Downloads, by replacing the *, or by Adding another Upload/Download User.
3. Select the Client Site
Selections are: <Local LAN> (default) or RemoteUnits that have been set up.
2-10 IP Router - Release 2.97
Loading...
+ 260 hidden pages