User Manual
Version 10.0.2
April 2015 202-10967-02
350 East Plumeria Drive
San Jose, CA 95134
USA
M4100 Series Managed Switch
Support
Thank you for selecting NETGEAR products.
After installing your device, locate the serial number on the label of your product and use it to register your product at https://my.netgear.com. You must register your product before you can use NETGEAR telephone support. NETGEAR recommends registering your product through the NETGEAR website.
For product updates and web support, visit http://support.netgear.com.
Phone (US & Canada only): 1-888-NETGEAR.
Phone (Other Countries): Check the list of phone numbers at http://support.netgear.com/general/contact/default.aspx.
Contact your Internet service provider for technical support.
Compliance
For regulatory compliance information, visit http://www.netgear.com/about/regulatory.
See the regulatory compliance document before connecting the power supply.
Trademarks
© NETGEAR, Inc., NETGEAR and the NETGEAR logo are trademarks of NETGEAR, Inc. Any non-NETGEAR trademarks are used for reference purposes only.
Revision History
Publication Part Number |
Publish Date |
Comments |
|
|
|
202-10967-01 |
November 2011 |
Original publication |
|
|
|
202-10967-02 |
April 2015 |
Software version 10.0.2 |
|
|
|
2
Chapter 1 Get Started
Available Publications and Online Help. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 12 Register Your Product. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 12 Understanding the User Interfaces . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 12 Web Management Interface Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 13 Software Requirements to Use the Web Interface . . . . . . . . . . . . . . . . . . . . . 13 Use a Web Browser to Access the Switch and Log In. . . . . . . . . . . . . . . . . . . . . . 13 Web Interface Buttons and User-Defined Fields . . . . . . . . . . . . . . . . . . . . . . . 14 Interface Naming Conventions . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 14 Online Help. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 15 Web Management Interface Device View. . . . . . . . . . . . . . . . . . . . . . . . . . . . . 16 Using SNMP . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 17
Chapter 2 Configure System Information
System Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 20 Configure Initial Management VLAN Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . 21 Define System Information . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 22 View the Switch Status. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 24 View the Fan Status . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 24 View the Temperature Status . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 25 View the Device Status . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 26 View Switch Statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 28 View the System CPU Status. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 30 View USB Device Information . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 31 Manage Loopback Interfaces . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 33 View the IPv6 Network Neighbor Table. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 34 Configure an IPv4 Management VLAN . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 35 View or Set the System Time . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 37 Configure SNTP Global Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 38 View the SNTP Global Status. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 40 Configure SNTP Servers . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 43 Configure Summer Time Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 45 Configure DNS . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 47 Configure Host Settings. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 49 Configure Green Ethernet Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 50 Configure Green Ethernet Interface Settings. . . . . . . . . . . . . . . . . . . . . . . . . . 51 Configure Port Green Mode Statistics. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 53 View the Green Mode Statistics Summary . . . . . . . . . . . . . . . . . . . . . . . . . . . . 55 View the Port Green Mode EEE History . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 57
3
M4100 Series Managed Switch
Configure the DHCP Server. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 58 Exclude an Address from the DHCP Server . . . . . . . . . . . . . . . . . . . . . . . . . . . 59 Configure the DHCP Pool. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 60 Configure the DHCP Pool Options . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 63 View DHCP Server Statistics. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 64 View DHCP Bindings Information . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 66 View DHCP Conflicts Information . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 67 Configure the DHCP Relay. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 68 Configure a DHCP L2 Relay VLAN . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 70 Configure the DHCP L2 Relay Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 71 View DHCP L2 Relay Interface Statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 72 Configure UDP Relay Global Settings. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 73 Configure the UDP Relay Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 75 Configure the Basic PoE Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 76 Configure Advanced PoE Settings. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 78 Configure a PoE Port . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 80 Configure SNMP Community Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 83 Configure an SNMP Trap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 84 Configure Trap Flags. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 86 View All MIBs Supported by the Switch. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 87 Configure SNMP v3 Settings for a User . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 88 LLDP Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 90 Configure LLDP Global Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 90 Configure an LLDP Interface. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 91 View LLDP Statistics. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 92 View LLDP Local Device Information. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 95 View LLDP Remote Device Information . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 96 View LLDP Remote Device Inventory . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 98 Configure LLDP-MED Global Settings. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 99 Configure the LLDP-MED Interface. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 99 View LLDP-MED Local Device Information . . . . . . . . . . . . . . . . . . . . . . . . . . 101 View LLDP-MED Remote Device Information . . . . . . . . . . . . . . . . . . . . . . . . 103 View LLDP-MED Remote Device Inventory . . . . . . . . . . . . . . . . . . . . . . . . . . 106 ISDP Settings Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 107 Configure ISDP Global Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 107 Configure Advanced Global ISDP Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . 108 Configure the ISDP Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 110 View ISDP Neighbors . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 111 View ISDP Statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 112 Configure Timers. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 114 Configure the Global Timer Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 114 Configure the Timer Schedule . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 115
Chapter 3 Configure Switching Information
VLAN Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 118
Configure a Basic VLAN . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 118
Configure an Internal VLAN. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 119
4
M4100 Series Managed Switch
Add a VLAN . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 120 Reset VLAN Configuration. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 121 Configure Internal VLAN Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 122 Configure VLAN Trunking . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 123 Configure VLAN Membership . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 125 View VLAN Status . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 127 Configure Port PVID . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 128 Configure a MAC-Based VLAN Group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 130 Configure a Protocol-Based VLAN Group . . . . . . . . . . . . . . . . . . . . . . . . . . . . 131 Configure Protocol-Based VLAN Group Membership . . . . . . . . . . . . . . . . . . 132 Configure an IP Subnet–Based VLAN . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 134 Configure Port DVLAN . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 135 Configure a Voice VLAN. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 136 Configure GARP Switch Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 137 Configure GARP Port Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 138
Auto-VoIP Overview. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 140 Configure Protocol-Based Port Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 140 Configure OUI-Based Properties . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 141 Configure OUI-Based Port Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 142 Configure the OUI Table. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 143 View the Auto-VoIP Status . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 145
Spanning Tree Protocol Overview. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 145 Configure Spanning Tree Protocol . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 146 Configure Advanced STP Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 148 Configure Common Spanning Tree. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 150 Configure CST Ports . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 152 View Spanning Tree CST Port Status . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 154 Configure an MST Instance . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 156 View MST Port Status . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 158 View Spanning Tree Statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 160
Configure Multicast. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 162 Configure Bridge Multicast Forwarding. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 162 View the MFDB Table . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 163 View MFDB Statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 164 IGMP Snooping Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 165 Configure IGMP Snooping Interface Settings. . . . . . . . . . . . . . . . . . . . . . . . . 166 Configure IGMP Snooping Settings for VLANs. . . . . . . . . . . . . . . . . . . . . . . . 167 Configure IGMP Snooping for a Multicast Router . . . . . . . . . . . . . . . . . . . . . 168 Configure IGMP Snooping for a Multicast Router VLAN . . . . . . . . . . . . . . . 169 Configure IGMP Snooping Querier. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 170 IGMP Snooping Querier VLAN Configuration. . . . . . . . . . . . . . . . . . . . . . . . . 172 Configure MLD Snooping . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 174 Configure MLD Snooping for an Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . 175 Configure a MLD VLAN . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 176 Configure a Multicast Router . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 177 Configure a Multicast Router VLAN . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 178 Configure the MLD Snooping Querier . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 179 Configure an MLD Snooping Querier VLAN . . . . . . . . . . . . . . . . . . . . . . . . . . 180
5
M4100 Series Managed Switch
Configure MVR. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 182
Configure Advanced MVR Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 183
Configure MVR Groups . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 185
Configure an MVR Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 186
Configure MVR Group Membership. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 187
View MVR Statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 188
Manage MAC Addresses. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 189
View the MAC Address Table . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 190
Configure Dynamic Addresses Aging Interval . . . . . . . . . . . . . . . . . . . . . . . . 192
Configure a Static MAC Address. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 193
Configure Port Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 194
Enter a Port Description . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 196
Link Aggregation Group Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 197
Configure LAG Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 197
Configure LAG Membership . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 199
Chapter 4 Routing
Manage the Routing Table . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 203 Configure Basic Routes . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 203 Configure Advanced Routes . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 205 Configure Route Preferences . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 207 Configure IP Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 208 View IP Statistics. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 210 Configure Advanced IP Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 214 View IP Statistics. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 216 Configure an IP Interface. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 220 Configure a Secondary IP Address . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 222 VLAN Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 223 Use the VLAN Static Routing Wizard . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 224 Configure VLAN Routing . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 225 ARP Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 226 Display ARP Cache Entries. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 227 Configure the Static ARP Cache . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 228 View or Configure the ARP Table . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 229 Configure Router Discovery . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 231
Chapter 5 Configure Quality of Service
QoS Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 234 Class of Service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 234 Configure CoS . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 235 Map 802.1p Priorities to Queues. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 236 Map IP DSCP Values to Queues . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 237 Configure CoS Settings for an Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 238 Configure an Interface Queue. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 239 Differentiated Services . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 241 DiffServ Wizard Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 242
6
M4100 Series Managed Switch
Use the DiffServ Wizard . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 242 Configure DiffServ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 243 Configure the Global Diffserv Mode . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 245 Configure a DiffServ Class . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 247 Configure the Class Match Criteria . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 248 Configure a DiffServ IPv6 Class . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 250 Configure the DiffServ Class Match Criteria . . . . . . . . . . . . . . . . . . . . . . . . . 252 Configure DiffServ Policy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 254 Configure DiffServ Policy Attributes. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 255 Configure DiffServ Policy Settings on an Interface. . . . . . . . . . . . . . . . . . . . 257 View Service Statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 258
Chapter 6 Manage Device Security
Management Security Settings. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 262 Configure Users. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 262 Set the Password for a User . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 263 Enable Password Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 264 Configure a Line Password. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 265
Configure RADIUS Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 266 Configure a RADIUS Server. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 268 Configure a RADIUS Accounting Server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 271 TACACS . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 272 Configure Global TACACS Settings. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 273 Configure TACACS Server Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 274 Set Up a Login Authentication List . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 275 Enable an Authentication List . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 276 Configure a Dot1x Authentication List . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 278 Configure an HTTP Authentication List . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 279 HTTPS Authentication List. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 280 View Login Sessions . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 281 Configure Management Access. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 282 Configure HTTP Server Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 282 Configure HTTPS Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 283 Manage Certificates . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 285 Download a Certificate . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 286 Configure SSH . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 287 Manage Host Keys . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 289 Download Host Keys. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 290 Manage Telnet . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 292 Configure a Telnet Authentication List. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 292 Configure Inbound Telnet. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 293 Configure Outbound Telnet . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 294 Configure the Console Port. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 295 Configure Denial of Service Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 297 Port Authentication Overview. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 300 Configure Global 802.1X Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 300 Configure 802.1X Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 302 Configure 802.1X Settings for Port Authentication . . . . . . . . . . . . . . . . . . . 303
7
M4100 Series Managed Switch
View the Port Summary. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 306 View the Client Summary . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 309 Traffic Control . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 310 Configure MAC Filter Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 310 View the MAC Filter Summary . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 312 Configure the Global Port Security Mode. . . . . . . . . . . . . . . . . . . . . . . . . . . . 313 Configure Port Security Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 314 Convert a Dynamic MAC Address to a Static Address . . . . . . . . . . . . . . . . . 315 Configure Static MAC Addresses . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 316 Configure a Private Group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 317 Configure Private Group Membership. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 318 Configure Protected Ports. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 319 Private VLAN Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 321 Configure a Private VLAN Type . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 321 Configure the Private VLAN Association. . . . . . . . . . . . . . . . . . . . . . . . . . . . . 322 Configure the Private VLAN Port Mode . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 323 Configure Private VLAN Host Interface. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 324 Configure Private VLAN Promiscuous Interface Settings . . . . . . . . . . . . . . . 325 Storm Control Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 327 Configure Storm Control Global Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . 327 View Storm Control Settings for an Interface . . . . . . . . . . . . . . . . . . . . . . . . 328 Control DHCP Snooping Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 330 Configure Global DHCP Snooping Settings. . . . . . . . . . . . . . . . . . . . . . . . . . . 330 Configure the DHCP Snooping Interface. . . . . . . . . . . . . . . . . . . . . . . . . . . . . 331 Configure DHCP Snooping Static Binding . . . . . . . . . . . . . . . . . . . . . . . . . . . . 332 Configure DHCP Snooping Dynamic Binding . . . . . . . . . . . . . . . . . . . . . . . . . 333 Configure Persistent DHCP Snooping . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 334 View DHCP Snooping Statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 335 Configure an IP Source Guard Interface. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 336 Configure IP Source Guard Binding . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 337 Configure Dynamic ARP Inspection . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 339 Configure Dynamic ARC Inspection . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 340 Configure a Dynamic ARC Inspection Interface . . . . . . . . . . . . . . . . . . . . . . . 341 Configure a DAI ACL. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 342 Configure a Dynamic ARP Inspection ACL Rule . . . . . . . . . . . . . . . . . . . . . . . 343 View DAI Statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 343 Access Control List Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 345 Use the ACL Wizard . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 345 Create a MAC ACL . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 347 Configure MAC Rules . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 349 Configure ACL MAC Binding . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 351 View or Delete MAC Bindings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 353 Configure an IP ACL . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 354 Configure Rules for an IP ACL . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 355 Configure IP Extended Rules . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 358 Configure an IPv6 ACL . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 361 Configure IPv6 Rules . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 362 Configure ACL Interface Bindings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 365
8
M4100 Series Managed Switch
View or Delete IP ACL Bindings. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 366 View or Delete VLAN ACL Bindings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 367
Chapter 7 Monitoring the System
View Port Statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 370
View Detailed Port Statistics. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 371
View EAP Statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 378
Perform a Cable Test . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 379
Logs Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 381
View or Configure Buffered Logs . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 381
Message Format in Logs . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 382
Enable the Command Log . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 383
Configure the Console Log . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 384
Configure the Syslog . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 385
View Trap Logs . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 386
Event Logs . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 388
Configure Persistent Logs . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 389
Port Mirroring Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 391
Configure Port Mirroring . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 391
Configure an RSPAN VLAN . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 393
Configure an RSPAN Source Switch . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 394
Configure an RSPAN Source Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 395
Configure the RSPAN Destination Switch . . . . . . . . . . . . . . . . . . . . . . . . . . . . 397
sFlow Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 398
Configure sFlow Agent Information. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 398
Configure an sFlow Agent . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 399
Configure the sFlow Receiver . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 400
Configure sFlow Interface Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 402
Chapter 8 Maintenance
Save Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 405 Configure Auto Install . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 405 Reboot a Switch . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 406 Reset the Switch to Factory Default Settings. . . . . . . . . . . . . . . . . . . . . . . . . 407 Reset All User Passwords to Factory Defaults . . . . . . . . . . . . . . . . . . . . . . . . 408 Upload Files. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 409 Upload a File from the Switch to the TFTP Server. . . . . . . . . . . . . . . . . . . . . 409 Upload an HTTP File . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 411 Upload a USB File . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 412 Download Files. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 413 Download Files . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 413 Download HTTP Files . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 415 Download a File to a USB Device . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 417 File Management Overview. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 418 Copy a File . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 418 Configure Dual Image Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 419 Use the Ping IPv4 Utility. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 420
9
M4100 Series Managed Switch
Use the Ping IPv6 Utility. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 422
Run Traceroute IPv4 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 423
Configure Traceroute IPv6 Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 425
Appendix A Default Settings
Factory Default Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 427
Appendix B Configuration Examples
Virtual Local Area Networks . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 431 VLAN Example Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 432 Access Control Lists . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 433 MAC ACL Sample Configuration. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 433 Standard IP ACL Example Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 434 Differentiated Services (DiffServ) . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 435 Class . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 436 DiffServ Traffic Classes . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 436 Creating Policies . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 437 DiffServ Example Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 438 802.1X . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 440 802.1X Sample Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 441 MSTP . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 442 MSTP Sample Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 444
10
1. Get Started |
1 |
|
|
||
|
|
|
This chapter provides an overview of starting your NETGEAR Managed Switch and accessing the user interface. This chapter contains the following sections:
•Available Publications and Online Help
•Register Your Product
•Understanding the User Interfaces
•Web Management Interface Overview
•Use a Web Browser to Access the Switch and Log In
•Using SNMP
Note: For more information about the topics covered in this manual, visit the support website at support.netgear.com.
Note: Firmware updates with new features and bug fixes are made available from time to time at downloadcenter.netgear.com. Some products can regularly check the site and download new firmware, or you can check for and download new firmware manually. If the features or behavior of your product does not match what is described in this guide, you might need to update your firmware.
11
M4100 Series Managed Switch
A number of publications are available for your managed switch at downloadcenter.netgear.com, including the following publications:
•M4100 Chassis Hardware Installation Guide.
•M4100 Switch Module Installation Guide.
•M4100 Software Setup Manual.
•M4100 User Manual (this document). You can also access this document online when you are logged in to the switch. Select Help Online Help > User Guide.
•M4100 Command Line Interface Manual.
Refer to the M4100 Command Line Interface Manual for information about the command structure. This provides information about the CLI commands used to configure the switch. It provides CLI descriptions, syntax, and default values.
•M4100 Software Administration Manual.
When you log into the web management interface, online help is available. See Online Help on page 15.
The first time you log in to the switch, you are given the option of registering with NETGEAR. Registration confirms that your email alerts work, lowers technical support resolution time, and ensures that your shipping address accuracy. NETGEARE would also like to incorporate your feedback into future product development. NETGEAR never sells or rents your email address and you can opt out of communications at any time.
To register with NETGEAR when you are prompted, click the REGISTER NOW button.
The managed switch software includes a set of comprehensive management functions for configuring and monitoring the system by using one of the following methods:
•Web user interface
•Simple Network Management Protocol (SNMP)
•Command-line interface (CLI)
Each of the standards-based management methods allows you to configure and monitor the components of the managed switch software. The method you use to manage the system depends on your network size and requirements, and on your preference.
The M4100 Series Managed Switch User Manual (this book) describes how to use the web-based interface to manage and monitor the system.
Get Started
12
M4100 Series Managed Switch
Your managed switch contains an embedded web server and management software for managing and monitoring switch functions. The managed switch functions as a simple switches without the management software. However, you can use the management software to configure more advanced features that can improve switch efficiency and overall network performance.
Web-based management lets you monitor, configure, and control your switch remotely using a standard web browser instead of using expensive and complicated SNMP software products. From your web browser, you can monitor the performance of your switch and optimize its configuration for your network. You can configure all switch features, such as VLANs, QoS, and ACLs, by using the web-based management interface.
To access the switch by using a web browser, the browser must meet the following software requirements:
•HTML version 4.0, or later
•HTTP version 1.1, or later
•Java Runtime Environment 1.6 or later
You can use a web browser to access the switch and log in. You must be able to ping the IP address of the managed switch management interface from your administrative system for web access to be available.
To use browser-based access to log in to the switch:
1.Prepare your computer with a static IP address in the 169.254.100.0 subnet, for example, 169.254.100.201.
2.Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on the switch.
3.Launch a web browser.
4.Enter the IP address of the switch in the web browser address field. The default IP address of the switch is 169.254.100.100.
The Login screen displays.
5.Enter the user name and password.
The default admin user name is admin and the default admin password is blank, that is, do not enter a password.
6.Click the Login button.
Get Started
13
M4100 Series Managed Switch
The web management interface menu displays.
The following table shows the command buttons that are used throughout the screens in the web interface:
Table 1. Web interface command buttons
Button |
Function |
|
|
ADD |
Clicking the ADD button adds the new item configured in the heading row of a table. |
|
|
APPLY |
Clicking the APPLY button sends the updated configuration to the switch. Configuration |
|
changes take effect immediately. |
|
|
CANCEL |
Clicking the CANCEL button cancels the configuration on the screen and resets the data |
|
on the screen to the previous values of the switch. |
DELETE |
Clicking the DELETE button removes the selected item. |
|
|
REFRESH |
Clicking the REFRESH button refreshes the screen with the latest information from the |
|
device. |
LOGOUT |
Clicking the LOGOUT button ends the session. |
User-defined fields can contain 1 to 159 characters, unless otherwise noted on the configuration web screen. All characters can be used except for the following (unless specifically noted in for that feature):
User-Defined Field Invalid Characters
\ |
< |
|
|
/ |
> |
|
|
* |
| |
|
|
? |
|
|
|
The managed switch supports physical and logical interfaces. Interfaces are identified by their type and the interface number. The physical ports are gigabit interfaces and are numbered on the front panel. You configure the logical interfaces by using the software.
Get Started
14
M4100 Series Managed Switch
The following table describes the naming convention for all interfaces available on the switch.
Table 2. Naming conventions for interfaces
Interface |
Description |
Example |
|
|
|
Physical |
The physical ports are gigabit |
0/1, 0/2, 0/3, and so on |
|
Ethernet interfaces and are |
|
|
numbered sequentially starting |
|
|
from one. |
|
|
|
|
Link aggregation group (LAG) |
LAG interfaces are logical |
LAG 1, LAG 2, lAG 3, and so on |
|
interfaces that are used only for |
|
|
bridging functions. |
|
|
|
|
CPU management interface |
This is the internal switch interface |
5/1 |
|
responsible for the switch base |
|
|
MAC address. This interface is not |
|
|
configurable and is always listed in |
|
|
the MAC Address Table. |
|
|
|
|
Routing VLAN interfaces |
This is an interface used for routing |
VLAN 1, VLAN 2, VLAN 3, and |
|
functionality. |
so on |
When you log in to the switch, every screen contains a link to the online help that contains information to assist in configuring and managing the switch. The online help screens are context sensitive. For example, if the IP Addressing screen is open, the help topic for that screen displays if you click the Help button.
You can connect to the online support site at netgear.com when you are logged in to the switch.
To access the online support link:
1.Prepare your computer with a static IP address in the 169.254.100.0 subnet, for example, 169.254.100.201.
2.Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on the switch.
3.Launch a web browser.
4.Enter the IP address of the switch in the web browser address field. The default IP address of the switch is 169.254.100.100.
The Login screen displays.
5.Enter the user name and password.
The default admin user name is admin and the default admin password is blank, that is, do not enter a password.
6.Click the Login button.
The web management interface menu displays.
Get Started
15
M4100 Series Managed Switch
7.Select Help Online Help > Support.
To connect to the NETGEAR support site for managed switch, click the APPLY button.
The Device View is a Java® applet that displays the ports on the switch. This graphic provides an alternate way to navigate to configuration and monitoring options. The graphic also provides information about device ports, current configuration and status, tables, and feature components.
To use Device View:
1.Prepare your computer with a static IP address in the 169.254.100.0 subnet, for example, 169.254.100.201.
2.Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on the switch.
3.Launch a web browser.
4.Enter the IP address of the switch in the web browser address field. The default IP address of the switch is 169.254.100.100.
The Login screen displays.
5.Enter the user name and password.
The default admin user name is admin and the default admin password is blank, that is, do not enter a password.
6.Click the Login button.
The web management interface menu displays.
7.Select System Device View.
The port coloring indicates whether a port is currently active. Green indicates that the port is enabled; red indicates that an error occurred on the port, or that the link is disabled.
Get Started
16
M4100 Series Managed Switch
8. Click a port to see a menu that displays statistics and configuration options.
You can click a menu option to access the screen that contains the configuration or monitoring options.
If you click the graphic, but do not click a specific port, the main menu displays. This menu contains the same options as the navigation tabs at the top of the screen.
The managed switch software supports the configuration of SNMP groups and users that can manage traps that the SNMP agent generates.
Get Started
17
M4100 Series Managed Switch
The managed switch use both standard public MIBs for standard functionality and private MIBs that support additional switch functionality. All private MIBs begin with a “-” prefix. The main object for interface configuration is in -SWITCHING-MIB, which is a private MIB. Some interface configurations also involve objects in the public MIB, IF-MIB.
SNMP is enabled by default. The System Management System Information screen, which is the screen that displays when you log in, displays the information that you need to configure an SNMP manager to access the switch.
Any user can connect to the switch using the SNMP v3 protocol, but for authentication and encryption, the switch supports only one user, which is admin; therefore only one profile can be created or modified.
To configure authentication and encryption settings for the SNMP v3 admin profile:
1.Prepare your computer with a static IP address in the 169.254.100.0 subnet, for example, 169.254.100.201.
2.Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on the switch.
3.Launch a web browser.
4.Enter the IP address of the switch in the web browser address field. The default IP address of the switch is 169.254.100.100.
The Login screen displays.
5.Enter the user name and password.
The default admin user name is admin and the default admin password is blank, that is, do not enter a password.
6.Click the Login button.
The web management interface menu displays.
7.Select System SNMP SNMP v3 User Configuration. The User Configuration screen displays.
8.To enable authentication, select an Authentication Protocol option, which is either MD5 or
SHA.
9.To enable encryption, select the DES option in the Encryption Protocol menu Then, enter an encryption code of eight or more alphanumeric characters in the Encryption Key field.
10.Click the APPLY button. Your settings are saved.
To access configuration information for SNMP V1 or SNMP V2, select System SNMP SNMPv1/v2 and select the screen that contains the information to configure.
Get Started
18
2. Configure System Information |
2 |
|
|
||
|
|
|
This chapter covers the following topics:
•System Configuration
•Configure Initial Management VLAN Settings
•Define System Information
•View the Switch Status
•Manage Loopback Interfaces
•View the IPv6 Network Neighbor Table
•Configure an IPv4 Management VLAN
•View or Set the System Time
•Configure DNS
•Configure the DHCP Server
•Configure the DHCP Pool
•Configure UDP Relay Global Settings
•Configure the Basic PoE Settings
•Configure Advanced PoE Settings
•View All MIBs Supported by the Switch
•Configure SNMP v3 Settings for a User
•LLDP Overview
•ISDP Settings Overview
•Configure Timers
19
M4100 Series Managed Switch
To do the initial system configuration:
1.Prepare your computer with a static IP address in the 169.254.100.0 subnet, for example, 169.254.100.201.
2.Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on the switch.
3.Launch a web browser.
4.Enter the IP address of the switch in the web browser address field. The default IP address of the switch is 169.254.100.100.
The Login screen displays.
5.Enter the user name and password.
The default admin user name is admin and the default admin password is blank, that is, do not enter a password.
6.Click the Login button.
The web management interface menu displays.
7.Select System Management Initial Setup.
8.In the Admin Password field, enter the new password for the Admin account.
The new password does not display as you type it; only dots are shown to hide the entry. The password is from 8 to 64 alphanumeric characters in length and is case-sensitive.
9.In the Enable Password field, enter the new password for the enable mode in the command line interface.
The new password does not display as you type it; only dots are shown to hide the entry. The password is from 8 to 64 alphanumeric characters in length and is case-sensitive.
10.Enter the System Name, the name to identify this switch.
You can use a name up to 255 characters in length. The factory default is blank.
11.Enter the System Location, the location of the switch.
Configure System Information
20
M4100 Series Managed Switch
You can use a location up to 255 characters in length. The factory default is blank.
12.Enter the System Contact, the name of the contact person for this switch.
You can use a contact name up to 255 characters in length. The factory default is blank.
13.In the SNTP Mode menu, select Enable or Disable.
This specifies the state of the SNTP client. The default value is Enable, and the local clock is used to get the time value.
14.Specify the address of the SNTP server.
Enter a text string of up to 64 characters containing the host name of an SNTP server. The server address can be IPv4, IPv6, or a host name. The host name resolves into an IP address each time an SNTP request is sent to it.
15.Select a Designated Source Interface from the list.
Possible values are Management VLAN or Service Port. The source interface to be used for SNMP trap, syslog, DNS, TACACS+, RADIUS, sflow and SNTP applications. By default, Management VLAN is used as the source interface.
Note: If you configure a management VLAN as the source interface, you must enable routing mode for the selected VLAN.
16.Click the APPLY button.
The settings are sent to the switch. Configuration changes take effect immediately. These changes are not retained across a power cycle unless you save the configuration. See
Save Configuration on page 405.
To configure the initial management VLAN settings:
1.Prepare your computer with a static IP address in the 169.254.100.0 subnet, for example, 169.254.100.201.
2.Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on the switch.
3.Launch a web browser.
4.Enter the IP address of the switch in the web browser address field. The default IP address of the switch is 169.254.100.100.
The Login screen displays.
5.Enter the user name and password.
The default admin user name is admin and the default admin password is blank, that is, do not enter a password.
6.Click the Login button.
Configure System Information
21
M4100 Series Managed Switch
The web management interface menu displays.
7.Select System Management Initial Setup
The Initial Setup screen displays.
8.Scroll down to display the Management VLAN Configuration section.
9.Specify the Management VLAN ID of the switch.
The management VLAN is used for management of the switch. The VLAN ID can be any value from 1 to 4093. The default value is VLAN 1.
10.Select the Routing Mode Enable or Disable radio button.
This sets the global IPv4 Routing Mode on the device. The default is Enable.
11.Select the IPv4 Address Assignment DHCP or Static radio button.
This specifies the method for getting IPv4 network parameters (IPv4 address and network mask) for the configured management VLAN interface. The default value for VLAN 1 is Static.
12.In the IP Address field, specify the IP address of the management VLAN interface. The factory default value is 169.254.100.100.
13.In the Subnet Mask field, specify the IP subneet mask for the management VLAN interface.
This is also referred to as the subnet or network mask and defines the portion of the interface’s IP address that is used to identify the attached network. The factory default value is 255.255.0.0.
14.In the Gateway field, specify the default gateway for the management VLAN interface. The default value is 0.0.0.0.
To define system information:
1.Prepare your computer with a static IP address in the 169.254.100.0 subnet, for example, 169.254.100.201.
2.Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on the switch.
3.Launch a web browser.
4.Enter the IP address of the switch in the web browser address field. The default IP address of the switch is 169.254.100.100.
Configure System Information
22
M4100 Series Managed Switch
The Login screen displays.
5.Enter the user name and password.
The default admin user name is admin and the default admin password is blank, that is, do not enter a password.
6.Click the Login button.
The web management interface menu displays.
7.Select System Management System Information.
8.Define the following fields:
•System Name. Enter a name to identify this switch. You can use up to 255 alphanumeric characters. The factory default is blank.
•System Location. Enter the location of this switch. You can use up to 255 alphanumeric characters. The factory default is blank.
•System Contact. Enter the contact person for this switch. You can use up to 25 alphanumeric characters. The factory default is blank.
•Login Timeout. Specify how many minutes of inactivity can occur on a serial port connection before the switch closes the connection. Enter a number between 0 and 160: the factory default is 5. Entering 0 disables the time-out.
•Management Interface—Select the management interface to be used as source interface for SNMP trap, syslog, DNS, TACACS+, RADIUS, sflow, and SNTP applications. Possible values are as follows:
• Routing Interface
• Routing VLAN
• Routing Loopback Interface
Configure System Information
23
M4100 Series Managed Switch
•Service Port
•Different. Some applications that can be selected in this screen require that the source interface be configured separately. In this case, the Different option is shown.
By default VLAN 1 is used as the source interface.
9.Click the APPLY button.
The settings are sent to the switch. Configuration changes take effect immediately. These changes are not retained across a power cycle unless you save the configuration. See
Save Configuration on page 405.
The following table describes the status information the System screen displays.System Information
Table 3. Status information in the System screen
Field |
Description |
|
|
Product Name |
The product name of this switch. |
|
|
IPv4 Management VLAN Interface |
The IPv4 address and mask assigned to the management VLAN |
|
interface. |
|
|
Management VLAN ID |
The management VLAN ID of the switch. Click the displayed |
|
Management VLAN ID value to jump to the VLAN screen. |
|
|
IPv4 Loopback Interface |
The IPv4 address and mask assigned to the loopback interface. |
|
|
System Date |
The current date. |
|
|
System Up time |
The time in days, hours, and minutes since the last switch reboot. |
|
|
Current SNTP Sync Status |
Displays the current SNTP sync status. |
|
|
System SNMP OID |
The base object ID for the switch's enterprise MIB. |
|
|
System Mac Address |
Universally assigned network address. |
|
|
Supported Java plug-in Version |
The supported version of Java plug-in. |
|
|
Current SNTP Synchronized Time |
Displays the SNTP synchronized time. |
|
|
You can view the fan status, temperature status, device status, and switch statistics.
You can view the status of the fans in all units. These fans remove the heat generated by the power, CPU, and other chipsets, and allow the chipsets work normally.
Configure System Information
24
M4100 Series Managed Switch
To view the fan status:
1.Prepare your computer with a static IP address in the 169.254.100.0 subnet, for example, 169.254.100.201.
2.Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on the switch.
3.Launch a web browser.
4.Enter the IP address of the switch in the web browser address field. The default IP address of the switch is 169.254.100.100.
The Login screen displays.
5.Enter the user name and password.
The default admin user name is admin and the default admin password is blank, that is, do not enter a password.
6.Click the Login button.
The web management interface menu displays.
7.Select System Management System Information and scroll down to the FAN Status.
The following information displays:
•FAN Status. OK, Failure, or Not Present.
•UNIT ID. This identifies the switch to which the fan belongs.
•System. The working status of the system fan in each unit.
8.Click the REFRESH button to refresh the system information of the switch.
To display the temperature status:
1.Prepare your computer with a static IP address in the 169.254.100.0 subnet, for example, 169.254.100.201.
2.Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on the switch.
3.Launch a web browser.
Configure System Information
25
M4100 Series Managed Switch
4.Enter the IP address of the switch in the web browser address field. The default IP address of the switch is 169.254.100.100.
The Login screen displays.
5.Enter the user name and password.
The default admin user name is admin and the default admin password is blank, that is, do not enter a password.
6.Click the Login button.
The web management interface menu displays.
7.Select System Management System Information. The System Information screen displays.
8.Scroll down to Temperature Status.
The screen displays the current temperature of the system sensor of the switch. The maximum temperature of the temperature sensors depends on the actual hardware.
9.To refresh the switch information, click the REFRESH button.
To view the device status:
1.Prepare your computer with a static IP address in the 169.254.100.0 subnet, for example, 169.254.100.201.
2.Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on the switch.
3.Launch a web browser.
4.Enter the IP address of the switch in the web browser address field. The default IP address of the switch is 169.254.100.100.
The Login screen displays.
5.Enter the user name and password.
The default admin user name is admin and the default admin password is blank, that is, do not enter a password.
6.Click the Login button.
The web management interface menu displays.
7.Select System Management System Information. The System Information screen displays.
Configure System Information
26
M4100 Series Managed Switch
8. Scroll down to Device Status.
9. To refresh the switch information, click the REFRESH button. The following table describes the Device Status information.
Table 4. Device status
Field |
Description |
|
|
Firmware Version |
The release.version.maintenance number of the code currently running |
|
on the switch. For example, if the release was 1, the version was 2, and |
|
the maintenance number was 4, the format would be 1.2.4. |
|
|
Boot Version |
The version of the boot code that is in the flash memory to load the |
|
firmware into the memory. |
CPLD Version |
The version of the software for CPLD. |
|
|
Serial Number |
The serial number of this switch. |
|
|
AC, Remote |
Indicates the status of the appropriate power module in each unit. |
|
Status can be any of the following: |
|
• OK. Power module is present and functioning properly. |
|
• Not Present. Power module is not present in the slot. |
|
• No power. Power module is present but not connected to the |
|
power source. |
|
• Not powering. Power module is present and connected but the |
|
switch uses another power source. |
|
• Incompatible. Power module is present but incompatible. |
|
• Failed. Power module is present, but power cable is not plugged in |
|
or a bad cable is plugged n. |
PoE Version |
Version of the PoE controller FW image. |
|
|
MAX PoE |
Indicates the status of maximum PoE power available on the switch as |
|
follows: |
|
• ON. Indicates less than 7W of PoE power available for another |
|
device. |
|
• OFF. Indicates at least 7W of PoE power available for another |
|
device. |
|
• N/A. Indicates that PoE is not supported by the unit. |
|
|
Configure System Information
27
M4100 Series Managed Switch
To view the switch statistics:
1.Prepare your computer with a static IP address in the 169.254.100.0 subnet, for example, 169.254.100.201.
2.Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on the switch.
3.Launch a web browser.
4.Enter the IP address of the switch in the web browser address field. The default IP address of the switch is 169.254.100.100.
The Login screen displays.
5.Enter the user name and password.
The default admin user name is admin and the default admin password is blank, that is, do not enter a password.
6.Click the Login button.
The web management interface menu displays.
7.Select System > Management > Switch Statistics.
8.Click the CLEAR button to clear all the counters, resetting all switch summary and detailed statistics to default values. The discarded packets count cannot be cleared.
Configure System Information
28
M4100 Series Managed Switch
The following table describes Switch Statistics information.
Table 5. Switch Statistics
Field |
Description |
|
|
ifIndex |
The ifIndex of the interface table entry associated with the processor of |
|
this switch. |
Octets Received |
The total number of octets of data received by the processor excluding |
|
framing bits but including FCS octets. |
|
|
Packets Received Without Errors |
The total number of packets including broadcast packets and multicast |
|
packets received by the processor. |
|
|
Unicast Packets Received |
The number of subnetwork-unicast packets delivered to a higher-layer |
|
protocol. |
Multicast Packets Received |
The total number of packets received that were directed to a multicast |
|
address. Note that this number does not include packets directed to the |
|
broadcast address. |
Broadcast Packets Received |
The total number of packets received that were directed to the |
|
broadcast address. Note that this does not include multicast packets. |
|
|
Receive Packets Discarded |
The number of inbound packets that were discarded even though no |
|
errors were detected to prevent their being deliverable to a higher-layer |
|
protocol. A possible reason for discarding a packet could be to free up |
|
buffer space. |
Octets Transmitted |
The total number of octets transmitted out of the interface, including |
|
framing characters. |
|
|
Packets Transmitted Without |
The total number of packets transmitted out of the interface. |
Errors |
|
|
|
Unicast Packets Transmitted |
The total number of packets that higher-level protocols requested that |
|
is transmitted to a subnetwork-unicast address, including those that |
|
were discarded or not sent. |
|
|
Multicast Packets Transmitted |
The total number of packets that higher-level protocols requested that |
|
are transmitted to a Multicast address, including those that were |
|
discarded or not sent. |
|
|
Broadcast Packets Transmitted |
The total number of packets that higher-level protocols requested that |
|
are transmitted to the broadcast address, including those that were |
|
discarded or not sent. |
|
|
Transmit Packets Discarded |
The number of outbound packets that were discarded even though no |
|
errors were detected to prevent their being deliverable to a higher-layer |
|
protocol. A possible reason for discarding a packet could be to free up |
|
buffer space. |
|
|
Most Address Entries Ever Used |
The highest number of Forwarding Database Address Table entries |
|
that were learned by this switch since the most recent reboot. |
|
|
Address Entries in Use |
The number of learned and static entries in the Forwarding Database |
|
Address Table for this switch. |
Maximum VLAN Entries |
The maximum number of virtual LANs (VLANs) allowed on this switch. |
|
|
Configure System Information
29
M4100 Series Managed Switch
Table 5. Switch Statistics (continued)
Field |
Description |
|
|
Most VLAN Entries Ever Used |
The largest number of VLANs that were active on this switch since the |
|
last reboot. |
|
|
Static VLAN Entries |
The number of presently active VLAN entries on this switch that were |
|
created statically. |
|
|
Dynamic VLAN Entries |
The number of presently active VLAN entries on this switch that were |
|
created by GVRP registration. |
|
|
VLAN Deletes |
The number of VLANs on this switch that were created and then |
|
deleted since the last reboot. |
|
|
Time Since Counters Last Cleared |
The elapsed time, in days, hours, minutes, and seconds, since the |
|
statistics for this switch were last cleared. |
|
|
To display the CPU status:
1.Prepare your computer with a static IP address in the 169.254.100.0 subnet, for example, 169.254.100.201.
2.Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on the switch.
3.Launch a web browser.
4.Enter the IP address of the switch in the web browser address field. The default IP address of the switch is 169.254.100.100.
The Login screen displays.
5.Enter the user name and password.
The default admin user name is admin and the default admin password is blank, that is, do not enter a password.
6.Click the Login button.
The web management interface menu displays.
Configure System Information
30