LevelOne IES-1081 User Manual

IES-1081
8 FE + 2 GE SFP Managed Switch -40 to 75C, DIN-rail
User Manual
v1.00 - 1206
Preface
This manual describes how to install and use the Hardened Managed Ethernet Switch. This switch introduced here is designed to deliver full scalability with SNMP/RMON web-based management functions by providing:
To get the most out of this manual, you should have an understanding of Ethernet networking concepts.
In this manual, you will find: Features on the Hardened Managed Ethernet Switch
Illustrative LED functions Installation instructions Management Configuration Specifications
Table of Contents
PREFACE .................................................................................................................................................. 2
QUICK START GUIDE ..................................................................................................................................... 5
PHYSICAL DESCRIPTION ............................................................................................................................................ 5
FUNCTIONAL DESCRIPTION ....................................................................................................................................... 7
CONSOLE CONFIGURATION ....................................................................................................................................... 7
WEB CONFIGURATION ............................................................................................................................................. 9
OVERVIEW .............................................................................................................................................. 10
HARDENED MANAGED ETHERNET SWITCH ................................................................................................................. 10
PACKAGE CONTENTS .............................................................................................................................................. 10
PRODUCT HIGHLIGHTS ........................................................................................................................................... 11
FRONT PANEL DISPLAY ........................................................................................................................................... 13
PHYSICAL PORTS ................................................................................................................................................... 14
SWITCH MANAGEMENT ......................................................................................................................................... 15
INSTALLATION ....................................................................................................................................... 16
SELECTING A SITE FOR THE SWITCH ........................................................................................................................... 16
CONNECTING TO POWER ........................................................................................................................................ 17
CONNECTING TO YOUR NETWORK ............................................................................................................................ 19
SWITCH MANAGEMENT ....................................................................................................................... 20
MANAGEMENT ACCESS OVERVIEW ........................................................................................................................... 20
ADMINISTRATION CONSOLE (CLI) ............................................................................................................................ 21
WEB MANAGEMENT ............................................................................................................................................. 22
SNMP-BASED NETWORK MANAGEMENT ................................................................................................................. 22
PROTOCOLS ......................................................................................................................................................... 22
MANAGEMENT ARCHITECTURE ................................................................................................................................ 23
SNMP & RMON MANAGEMENT ........................................................................................................... 24
OVERVIEW ........................................................................................................................................................... 24
SNMP AGENT AND MIB-2 (RFC 1213) .................................................................................................................. 24
RMON MIB (RFC 2819) AND BRIDGE MIB (RFC 1493) ........................................................................................... 25
WEB-BASED BROWSER MANAGEMENT ........................................................................................... 27
LOGGING ON TO THE SWITCH ................................................................................................................................... 27
UNDERSTANDING THE BROWSER INTERFACE ............................................................................................................... 28
SYSTEM ............................................................................................................................................................... 30
PORT .................................................................................................................................................................. 37
SWITCHING .......................................................................................................................................................... 40
TRUNKING ........................................................................................................................................................... 43
STP / RING ......................................................................................................................................................... 44
VLAN ................................................................................................................................................................ 51
QOS ................................................................................................................................................................... 55
SNMP ............................................................................................................................................................... 57
802.1X .............................................................................................................................................................. 61
OTHER PROTOCOLS ............................................................................................................................................... 64
COMMAND LINE CONSOLE MANAGEMENT ..................................................................................... 68
ADMINISTRATION CONSOLE .................................................................................................................................... 68
SYSTEM ............................................................................................................................................................... 77
PORT .................................................................................................................................................................. 86
SWITCHING .......................................................................................................................................................... 91
TRUNKING ........................................................................................................................................................... 96
STP / RING ......................................................................................................................................................... 97
VLAN .............................................................................................................................................................. 110
QOS ................................................................................................................................................................. 116
SNMP ............................................................................................................................................................. 119
802.1X ............................................................................................................................................................ 126
OTHER PROTOCOLS ............................................................................................................................................. 131
SPECIFICATIONS .................................................................................................................................. 142
APPENDIX A .......................................................................................................................................... 143
APPENDIX B .......................................................................................................................................... 144
Quick Start Guide
Front Panel
Rear Panel
Terminal Block
PW1
+
12 48VDC
Power Ground
PW2
+
12 48VDC
Power Ground
Earth Ground
Relay Output
1A @ 24VDC
Relay Alarm warning signal disable for following:
1. The relay contact closes if Power1 and Power2 are both failed but Power3 on
2. The relay contact closes if Power3 is failed but Power1 and Power2 are both on
This quick start guide describes how to install and use the Hardened Managed Ethernet Switch. This is the switch of choice for harsh environments constrained by space.
Physical Description
The Port Status LEDs and Power Inputs
The relay output is normal open position when there is no power to the switch. Please do
LED
Status
Description
PW 1,2,3 Steady
Power On
Off
Power Off
10/100Base-TX & 100Base-FX
LNK/ACT Steady
Network connection established
Flashing
Transmitting or Receiving data
100
Steady
Connection at 100Mbps
10/100/1000Base-TX & 1000Base-FX & SFP
LNK/ACT Steady
Network connection established
Flashing
Transmitting or Receiving data
1000
Steady
Connection at 1000Mbps
not connect any power source to this terminal to prevent shorting your power supply.
There are three power inputs can be used. Redundant power function is supported
PW3 is DC Jack type with 12VDC input
Functional Description
Complies with EN50121-4 environmental requirements for railway applications. Meets NEMA TS1/TS2 Environmental requirements such as temperature, shock, and
vibration for traffic control equipment.
Meets EN61000-6-2 & EN61000-6-4 EMC Generic Standard Immunity for industrial
environment.
Manageable via SNMP, Web-based, Telnet, and RS-232 console port. Supports IEEE802.3/802.3u/802.3ab/802.3z/802.3x. Auto-negotiation:
1000Mbps-full-duplex; 10/100Mbps-full/half-duplex; Auto MDI/MDIX.
100Base-FX: Multi mode SC or ST type, Single mode SC or ST type. 100Base-BX: WDM
Single mode SC type.
1000Base-SX/LX: Multi mode SC type, Single mode SC type. 1000Base-BX: WDM Single
mode SC type.
Supports 8192 MAC addresses. Provides 2M bits memory buffer.
Store-and-forward mechanism. Full wire-speed forwarding rate. Alarms for power and port link failure by relay output. Power Supply: Redundant DC Terminal Block power inputs and 12VDC DC JACK with
100-240VAC external power supply.
Operating voltage and Max. current consumption: 0.92A @ 12VDC, 0.46A @ 24VDC,
0.23A @ 48VDC. Power consumption: 11W Max.
-40 to 75 (-40 to 167) operating temperature range. Tested for functional
operation @ -40 to 85 (-40 to 185).
Supports DIN-Rail and Panel Mounting installation.
Console Configuration
Connect to the switch console:
Connect the DB9 straight cable to the RS-232 serial port of the device and the RS-232 serial port of the terminal or computer running the terminal emulation application. Direct access to the administration console is achieved by directly connecting a terminal or a PC equipped with a terminal-emulation program (such as HyperTerminal) to the switch console port.
Configuration settings of the terminal-emulation program:
- Baud rate: 115,200bps
- Data bits: 8
- Parity: none
- Stop bit: 1
- Flow control: none
Press the Enter key. The Command Line Interface (CLI) screen should appear as below: Logon to Exec Mode (View Mode):
Mode (or View Mode). > reen.
Logon to Privileged Exec Mode (Enable Mode):
screen.
Logon to Configure Mode (Configure Terminal Mode):
will show on the screen.
Web Configuration
Login the switch: Specify the default IP address (192.168.1.10) of the switch in the web browser. A login window will be shown as below:
Enter the factory default login ID: root.
Enter the factory default password (no password). Then click on the Login button to log on to the switch.
Overview
Hardened Managed Ethernet Switch
Front View
Package Contents
When you unpack the product package, you shall find the items listed below. Please inspect the contents, and report any apparent damage or missing items immediately to your authorized reseller.
IES-1081
Quick Installation Guide CD User Manual RS232 cable
Product Highlights
Basic Features
Complies with EN50121-4 environmental requirements for railway applications. Meets NEMA TS1/TS2 Environmental requirements such as temperature, shock, and
vibration for traffic control equipment.
Meets EN61000-6-2 & EN61000-6-4 EMC Generic Standard Immunity for industrial
environment.
Manageable via SNMP, Web-based, Telnet, and RS-232 console port. Supports IEEE802.3/802.3u/802.3ab/802.3z/802.3x. Auto-negotiation:
1000Mbps-full-duplex; 10/100Mbps-full/half-duplex; Auto MDI/MDIX.
100Base-FX: Multi mode SC or ST type, Single mode SC or ST type. 100Base-BX: WDM
Single mode SC type.
1000Base-SX/LX: Multi mode SC type, Single mode SC type. 1000Base-BX: WDM Single
mode SC type.
Supports 8192 MAC addresses. Provides 2M bits memory buffer.
Store-and-forward mechanism. Full wire-speed forwarding rate. Alarms for power and port link failure by relay output. Power Supply: Redundant DC Terminal Block power inputs and 12VDC DC JACK with
100-240VAC external power supply.
Operating voltage and Max. current consumption: 0.92A @ 12VDC, 0.46A @ 24VDC,
0.23A @ 48VDC. Power consumption: 11W Max.
-40 to 75 (-40 to 167) operating temperature range. Tested for functional
operation @ -40 to 85 (-40 to 185).
Supports DIN-Rail and Panel Mounting installation.
Management Support
VLAN
Port-based VLAN IEEE802.1Q tagged VLAN
TRUNKING
MAC-based Trunking with automatic link fail-over
PORT-SECURITY
Per-port programmable MAC address locking Up to 24 Static Secure MAC addresses per port IEEE802.1x Port-based Network Access Control
PORT-MIRRORING
Port-mirroring
QOS (IEEE802.1p Quality of Service)
4 priority queues
INTERNETWORKING PROTOCOLS
Bridging:
IEEE802.1s Multiple Spanning Tree IEEE802.1w Rapid Spanning Tree IEEE802.1D Spanning Tree compatible IEEE802.1Q GVRP Ring
IP Multicast:
IGMP Snooping
Rate Control NTP
NETWORK MANAGEMENT METHODS
Console port access via RS-232 cable (CLI, Command Line Interface) Telnet remote access SNMP agent:
MIB-2 (RFC1213) Bridge MIB (RFC1493) RMON MIB (RFC2819) statistics, history, alarm and events VLAN MIB (IEEE802.1Q/RFC2674) Private MIB
Web browser TFTP software-upgrade capability
Front Panel Display
LED
Status
Description
PW 1,2,3 Steady
Power On
Off
Power Off
10/100Base-TX & 100Base-FX
LNK/ACT Steady
Network connection established
Flashing
Transmitting or Receiving data
100
Steady
Connection at 100Mbps
10/100/1000Base-TX & 1000Base-FX & SFP
LNK/ACT Steady
Network connection established
Flashing
Transmitting or Receiving data
1000
Steady
Connection at 1000Mbps
POWER
This LED comes on when the switch is properly connected to power and turned on.
Port Status LEDs
The LEDs are located on the front panel, displaying status for each respective port. Please refer to the following table for more details.
Physical Ports
Number of ports
10/100Base-TX
100Base-FX/BX 100Base SFP
Gigabit: 10/100/1000Base-TX 1000Base-SX/LX/BX 1000Base SFP
8 0 0, 1, 2
6 2 0, 1, 2
4 2 0, 1, 2
4 4 0
The Hardened Managed Ethernet Switch provides:
CONNECTIVITY
RJ-45 connectors on TX ports ST or SC connector on 100Base-FX fiber port SC connector on 100Base-BX fiber port Duplex LC connector on SFP 100Base-FX/BX fiber transceiver SC connector on 1000Base-SX/LX/BX fiber port Duplex LC connector on SFP 1000Base-SX/LX/BX fiber transceiver
MODE SELECTION
10Base-T full-duplex mode 10Base-T half-duplex mode
100Base-TX full-duplex mode
100Base-TX half-duplex mode 100Base-FX full-duplex mode 1000Base-T/SX/LX full-duplex mode Auto-negotiating mode
Switch Management
Web-based browser interface
The switch also boasts a point-and-click browser-based interface that lets user access full switch configuration and functionality from a Netscape or Internet Explorer browser.
Administration console via RS-232 serial port (CLI)
The switch provides an onboard serial port, which allows the switch to be configured via a directly connected terminal.
External SNMP-based network management
application
The switch can also be configured via SNMP.
Installation
This chapter gives step-by-step instructions about how to install the switch:
Selecting a Site for the Switch
As with any electric device, you should place the switch where it will not be subjected to extreme temperatures, humidity, or electromagnetic interference. Specifically, the site you select should meet the following requirements:
-The ambient temperature should be between -40°C to 75 (-40 to 167).
-The relative humidity should be less than 95 percent, non-condensing.
-Surrounding electrical devices should not exceed the electromagnetic field (RFC) standards.
-Make sure that the switch receives adequate ventilation. Do not block the ventilation holes on each side of the switch.
Connecting to Power
Redundant DC Terminal Block Power Inputs or 12VDC DC Jack:
12VDC DC Jack
Step 1: Connect the supplied AC to DC power adapter to the receptacle on the topside of
the switch.
Step 2: Connect the power cord to the AC to DC power adapter and attach the plug into a
standard AC outlet with the appropriate AC voltage.
Redundant DC Terminal Block Power Inputs
There are two pairs of power inputs for use with redundant power sources. You only need to have one power input connected to run the switch.
Step 1: Connect the DC power cord to the plug-able terminal block on the switch, and
then plug it into a standard DC outlet.
Step 2: Disconnect the power cord if you want to shut down the switch.
Top View
Alarms for Power Failure
Terminal Block
PW1
+
12 48VDC
Power Ground
PW2
+
12 48VDC
Power Ground
Earth Ground
Relay Output
1A @ 24VDC
Relay Alarm warning signal disable for following:
3. The relay contact closes if Power1 and Power2 are both failed but Power3 on
4. The relay contact closes if Power3 is failed but Power1 and Power2 are both on
DC Jack
PW3
DC Jack
12VDC
Step 1: There are two pins on the terminal block used for power failure detection. It
provides the normally closed output when the power source is active. Use this as a dry contact application to send a signal for power failure detection.
Special note: The relay output is normal open position when there is no power to the switch. Please do not connect any power source to this terminal to prevent shorting your power supply.
Connecting to Your Network
Speed
Connector
Port Speed Half/Full Duplex
Cable
Max. Distance
10Base-T
RJ-45
10/20 Mbps
2-pair UTP/STP Cat. 3, 4, 5
100 m
100Base-TX
RJ-45
100/200 Mbps
2-pair UTP/STP Cat. 5
100 m
1000Base-T
RJ-45
2000 Mbps
4-pair UTP/STP Cat. 5
100 m
100Base-FX
ST, SC
200 Mbps
2 km
100Base-FX
ST, SC
200 Mbps
20, 40, 75, 100 km
100Base-BX
SC
200 Mbps
2, 5 km
100Base-BX
SC
200 Mbps
20, 40 km
1000Base-SX
SC
2000 Mbps
220 m, 2 km
1000Base-SX
SC
2000 Mbps
550 m
1000Base-LX
SC
2000 Mbps
10, 20, 50 km
1000Base-BX
SC
2000 Mbps
20, 40 km
SFP
1000Base-SX
Duplex LC
2000 Mbps
550 m, 2 km
1000Base-LX
Duplex LC
2000 Mbps
SMF
10, 40, 60 km
1000Base-BX
Duplex LC
2000 Mbps
70 km
Cable Type & Length
It is necessary to follow the cable specifications below when connecting the switch to your network. Use appropriate cables that meet your speed and cabling requirements.
Cable Specifications
Cabling
Step 1: First, ensure the power of the switch and end devices are turned off. <Note> Always ensure that the power is off before any installation.
Step 2: Prepare cable with corresponding connectors for each type of port in use. Step 3: Consult Cable Specifications Table on previous page for cabling requirements
Step 4: Connect one end of the cable to the switch and the other end to a desired device. Step 5: Once the connections between two end devices are made successfully, turn on the
based on connectors and speed.
power and the switch is operational.
Switch Management
This chapter explains the methods that you can use to configure management access to the switch. It describes the types of management applications and the communication and management protocols that deliver data between your management device (workstation or personal computer) and the system. It also contains information about port connection options.
This chapter covers the following topics:
Management Access Overview Key Concepts Key Guidelines for Implementation Web Management Access Administration Console Access SNMP Access Standards, Protocols, and Related Reading
Management Access Overview
The switch gives you the flexibility to access and manage the switch using any or all of the following methods.
The web browser interface and administration console (CLI) support are embedded in the switch software and are available for immediate use.
Administration Console (CLI)
The administration console is an internal, character-oriented, Command Line Interface (CLI) for performing system administration such as displaying statistics or changing option settings.
Using this method, you can view the administration console from a terminal, personal computer, Apple Macintosh, or workstation
There are two ways to use this management method: direct access or modem access. The following sections describe these methods.
Direct Access
Direct access to the administration console is achieved by directly connecting a terminal or a PC equipped with a terminal-emulation program (such as HyperTerminal) to the switch console port.
When using the management method, configure the terminal-emulation program to use the following parameters (you can change these settings after login):
[DEFAULT PARAMETERS]
115,200bps 8 data bits No parity 1 stop bit
This management method is often preferred because you can remain connected and monitor the system during system reboots. Also, certain error messages are sent to the serial port, regardless of the interface through which the associated action was initiated. A Macintosh or PC attachment can use any terminal-emulation program for connecting to the terminal serial port. A workstation attachment under UNIX can use an emulator such as TIP.
Modem Access
external modem attached to the console port. The switch management program provides Console Port screen, accessible from the Basic Management screen that lets you configure parameters for modem access.
When you have configured the external modem from the administration console, the switch transmits characters that you have entered as output on the modem port. The switch echoes characters that it receives as input on the modem port to the current administration console session. The console appears to be directly connected to the external modem.
Web Management
The switch provides a browser interface that lets you configure and manage the switch remotely.
applications directly in your web browser by entering the IP address of the switch. You can then use your web browser to list and manage switch configuration parameters from one
SNMP-Based Network Management
You can use an external SNMP-based application to configure and manage the switch. This management method requires the SNMP agent on the switch and the SNMP Network Management Station to use the same community string. This management method, in fact, uses two community strings: the get community string and the set community string. If the SNMP Network management station only knows the set community string, it can read and write to the MIBs. However, if it only knows the get community string, it can only read MIBs. The default get and set community strings for the switch are public.
Protocols
The switch supports the following protocols:
VIRTUAL TERMINAL PROTOCOLS, SUCH AS TELNET
A virtual terminal protocol is a software program, such as Telnet, that allows you to establish a management session from a Macintosh, a PC, or a UNIX workstation. Because Telnet runs over TCP/IP, you must have at least one IP address configured on the switch before you can establish access to it with a virtual terminal protocol.
<Note> Terminal emulation is different from a virtual terminal protocol in that you must connect a terminal directly to the console port.
SIMPLE NETWORK MANAGEMENT PROTOCOL (SNMP)
SNMP is the standard management protocol for multivendor IP networks. SNMP supports transaction-based queries that allow the protocol to format messages and to transmit information between reporting devices and data-collection programs. SNMP runs on top of the User Datagram Protocol (UDP), offering a connectionless-mode service.
Management Architecture
All of the management application modules use the same Messaging Application Programming Interface (MAPI). By unifying management methods with a single MAPI, configuration parameters set using one method (e.g. console port) are immediately displayed the other management methods (e.g. SNMP agent of web browser).
The management architecture of the switch adheres to the IEEE open standard. This compliance assures customers that the switch is compatible with, and will interoperate with other solutions that adhere to the same open standard.
SNMP & RMON Management
Thi Remote Monitoring (RMON) capabilities.
Overview
RMON is an abbreviation for the Remote Monitoring MIB (Management Information Base). RMON is a system defined by the Internet Engineering Task Force (IETF) document RFC 2819, which defines how networks can be monitored remotely.
RMONs typically consist of two components: an RMON probe and a management workstation:
- The RMON probe is an intelligent device or software agent that continually collects statistics about a LAN segment or VLAN. The RMON probe transfers the collected data to a management workstation on request or when a pre-defined threshold is reached.
- The management workstation collects the statistics that the RMON probe gathers. The workstation can reside on the same network as the probe, or it can have an in-band or out-of-band connection to the probe.
The switch provides RMON capabilities that allow network administrators to set parameters and view statistical counters defined in MIB-II, Bridge MIB, and RMON MIB. RMON activities are performed at a Network Management Station running an SNMP network management application with graphical user interface.
SNMP Agent and MIB-2 (RFC 1213)
The SNMP Agent running on the switch manager CPU is responsible for:
- Retrieving MIB counters from various layers of software modules according to the SNMP GET/GET NEXT frame messages.
- Setting MIB variables according to the SNMP SET frame message.
- Generating an SNMP TRAP frame message to the Network Management
Station if the threshold of a certain MIB counter is reached or if other trap conditions (such as the following) are met:
WARM START COLD START LINK UP LINK DOWN AUTHENTICATION FAILURE RISING ALARM FALLING ALARM TOPOLOGY ALARM
MIB-II defines a set of manageable objects in various layers of the TCP/IP protocol suites. MIB-II covers all manageable objects from layer 1 to layer 4, and, as a result, is the major SNMP MIB supported by all vendors in the networking industry. The switch supports a complete implementation of SNMP Agent and MIB-II.
RMON MIB (RFC 2819) and Bridge MIB (RFC 1493)
The switch provides hardware-based RMON counters in the switch chipset. The switch manager CPU polls these counters periodically to collect the statistics in a format that complies with the RMON MIB definition.
RMON Groups Supported
The switch supports the following RMON MIB groups defined in RFC 2819:
- RMON Statistics Group maintains utilization and error statistics for the switch port being monitored.
- RMON History Group gathers and stores periodic statistical samples from the previous Statistics Group.
- RMON Alarm Group allows a network administrator to define alarm thresholds for any MIB variable. An alarm can be associated with Low Threshold, High Threshold, or both. A trigger can trigger an alarm when the value of a specific MIB variable exceeds a threshold, falls below a threshold, or exceeds or falls below a threshold.
- RMON Event Group allows a network administrator to define actions based on alarms. SNMP Traps are generated when RMON Alarms are triggered. The action taken in the Network Management Station depends on the specific network management application.
Bridge Groups Supported
The switch supports the following four groups of Bridge MIB (RFC 1493):
- The dot1dBase Group a mandatory group that contains the objects applicable to all types of bridges.
- The dot1dStp Group contains objects respect to the Spanning Tree Protocol. If a node does not implement the Spanning Tree Protocol, this group will not be implemented. This group is applicable to any transparent only, source route, or SRT bridge that implements the Spanning Tree Protocol.
- The dot1dTp Group bridging status. This group is applicable to transparent operation only and SRT bridges.
- The dot1dStatic Group contains objects that describe destination-address filtering status. This group is applicable to any type of bridge which performs destination-address filtering.
Web-Based Browser Management
The switch provides a web-based browser interface for configuring and managing the switch. This interface allows you to access the switch using a preferred web browser.
This chapter describes how to configure the switch using its web-based browser interface.
Logging on to the switch
SWITCH IP ADDRESS
In your web browser, specify the IP address of the switch. Default IP address is
192.168.1.10.
LOGIN
Enter the factory default login ID: root.
PASSWORD
Enter the factory default password (no password).
Or enter a user-defined password if you followed the instructions later and changed the factory default password.
Understanding the Browser Interface
The web browser interface provides groups of point-and-click buttons at the left field of the screen for configuring and managing the switch.
SYSTEM
System Information, System Name/Password, IP Address, Save Configuration, Firmware Upgrade, Alarm Setting, Reboot, Logout
PORT
Configuration, Port Status, Rate Control, RMON Statistics, Per Port Vlan Activities
SWITCHING
Bridging, Static MAC Entry, Port Mirroring
TRUNKING
Port Trunking
STP / RING
Global Configuration, RSTP Port Setting, MSTP Properties, MSTP Instance Setting, MSTP Port Setting, Ring Setting
VLAN
VLAN Mode Setting, 802.1Q VLAN Setting, 802.1Q Port Setting, Port Based VLAN
QOS
Global Configuration, 802.1p Priority, DSCP
SNMP
SNMP General Setting, SNMP v1/v2c, SNMP v3
802.1X
Radius Configuration, Port-Based Authentication
OTHER PROTOCOLS
GVRP, IGMP Snooping, NTP
System
System Information
View System information, VLAN ID, IP Address, and IP Subnet Mask of the Switch.
Loading...
+ 120 hidden pages