Page 2 - Electrical Safety and Emission Statement
Electrical Safety and Emission Statement Standards:This product meets the following standards. CE Marking Warning: This is a Class A product. In a domestic environment this product may cause radio interference in which case the user may be required to take adequate measures. Important: Appendix B co...
Page 3 - Table of Contents
Table of Contents Electrical Safety and Emission Statement . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1 Preface . . . ....
Page 6 - Preface; Purpose of This Guide
Preface Purpose of This Guide This guide is intended for network administrators who are responsible for installing and maintaining the AT-9724TS Gigabit Switch. How This Guide is Organized This guide contains the following chapters and appendices: Chapter 1, Introduction, describes the features, fun...
Page 7 - Document Conventions; Note
Document Conventions This guide uses several conventions that you should become familiar with before you begin to install the product: Note A note provides additional information. c Warning A warning indicates that performing or omitting a specific action may result in bodily injury. m Caution A cau...
Page 8 - Where to Find Related Guides; Contacting Allied Telesyn Technical Support; EUROPEAN SUPPORT NUMBERS; and the United Kingdom
Where to Find Related Guides The Allied Telesyn web site at www.alliedtelesyn.com under the support section contains the most recent documentation for all of our products. All web- based documents relating to this product and other Allied Telesyn products can be downloaded from the web site. Contact...
Page 9 - Returning Products; FTP Server
Returning Products Products for return or repair must first be assigned a Return Materials Authorization (RMA) number. RMA policy varies from country to country. Please check the applicable RMA policy at www.alliedtelesyn.com. For Europe, you can also contact our European Customer Service centre by ...
Page 10 - Tell Us What You Think
Tell Us What You Think If you have any comments or suggestions on how we might improve this or other Allied Telesyn documents, please contact us at www.alliedtelesyn.com . 9 Allied Telesyn AT-9724TS High-Density Layer 3 Stackable Gigabit Ethernet Switch
Page 11 - Chapter 1 - Introduction; -1 Ethernet Technology; Switching Technology
Chapter 1 - Introduction 1-1 Ethernet Technology1-2 Switch Description1-3 Features1-4 Ports1-5 Front Panel Components1-6 Rear-Panel Description1-7 Side-Panel Description1-8 Gigabit Combo Ports1-9 Ethernet Technology1-10 Fast Ethernet Technology 1-1 Ethernet Technology Fast Ethernet The growing impor...
Page 12 - -2 Switch Description
1-2 Switch Description The AT-9724TS has 24 1000T Gigabit ports that may be used in uplinking various network devices to the Switch, including PCs, hubs and other switches to provide a gigabit Ethernet uplink in full-duplex mode.In addition, the AT-9724TS is equipped with 4 SFP (Small Form Factor Po...
Page 13 - Installing the SFP ports
• SNMP support • Secure Sockets Layer (SSL) and Secure Shell (SSH) support • Port Mirroring support • MIB support for: RFC1213 MIB IIRFC1493 BridgeRFC1757 RMONRFC1643 Ether-like MIBRFC2233 Interface MIBIF MIBPrivate MIBRFC2674 for 802.1pIEEE 802.1x MIB • RS-232 DCE console port for Switch management...
Page 15 - Chapter 2 - Installation; -2 Before You Connect to the Network
Chapter 2 - Installation 2-1 Package Contents2-2 Before You Connect to the Network2-3 Installing the Switch Without the Rack2-4 Rack Installation2-5 Power On2-6 Power Failure2-7 Redundant Power System 2-1 Package Contents Open the shipping carton of the Switch and carefully unpack its contents.The c...
Page 16 - -4 Installing the Switch in a Rack
Figure 2- 1. Prepare Switch for installation on a desktop or shelf 2-4 Installing the Switch in a Rack The Switch can be mounted in a standard 19" rack. Use the following diagrams to guide you.Fasten the mounting brackets to the Switch using the screws provided.With the brackets attached securel...
Page 18 - Chapter 3 - Connecting the Switch; -1 Switch To End Node; -2 Switch to Hub or Switch
Chapter 3 - Connecting the Switch • 3-1 Switch to End Node • 3-2 Switch to Hub or Switch • 3-3 Connecting to Network Backbone or Server • 3-4 Stacking and the AT-9724TS 3-1 Switch To End Node End nodes include PCs outfitted with a 10, 100 or 1000Mbps RJ45 Ethernet Network Interface Card (NIC) and mo...
Page 19 - -3 Connecting To Network Backbone or Server
Figure 3- 3. Switch connected to switch using fibre-optic cabling 3-3 Connecting To Network Backbone or Server The 4 combo SFP ports and the 24 1000T ports are ideal for uplinking to a network backbone, server or server farm.The copper ports operate at a speed of 1000, 100 or 10Mbps in full or half ...
Page 20 - Stacking Limitations Utilizing a Ring Topology
Figure 3- 8. Stacking in a Ring Architecture Note: The Do not connect the stacked Switch group to the network until you have properly configured all Switches for stacking. An improperly configured Switch stack can cause a broadcast storm. Stacking Limitations Utilizing a Ring Topology There is a lim...
Page 21 - Chapter 4 - Introduction to Switch Management; -1 AT-9724TS Gigabit Layer 3 Switch Management Options
Chapter 4 - Introduction to Switch Management 4-1 AT-9724TS Gigabit Layer 3 Switch Management Options4-2 Web-based Management Interface4-3 SNMP-Based Management4-4 Command Line Console Interface Through The Serial Port4-5 Connecting the Console Port (RS-232 DCE)4-6 First Time Connecting to The Switc...
Page 22 - -6 First Time Connecting to the Switch
9. After you have correctly set up the terminal, plug the power cable into the power receptacle on the back of the Switch.The boot sequence appears in the terminal. 10. After the boot sequence completes, the console login screen displays. 11. If you have not logged into the command line interface (C...
Page 23 - -7 Password Protection; Enter; Command: create account admin newmanager
Figure 4- 2. Command Prompt Note: The first user automatically gets Administrator level privileges. It is recommended to create at least one Admin-level user account for the Switch. 4-7 Password Protection One of the first tasks when settings up the Switch is to create user accounts. If you log in u...
Page 24 - public; private; Traps; Configuration
The AT-9724TS supports SNMP versions 1, 2c, and 3.You can specify which version of SNMP you want to use to monitor and control the Switch.The three versions of SNMP vary in the level of security provided between the management station and the network device.In SNMP v.1 and v.2, user authentication i...
Page 25 - Success; -10 Connecting Devices to the Switch
Alternatively, you can enter config ipif System ipaddress xxx.xxx.xxx.xxx/z .Where the x's represent the IP address to be assigned to the IP interface named System and the z represents the corresponding number of subnets in CIDR notation.The IP interface named System on the Switch can be assigned an...
Page 26 - Chapter 5 - Introduction to Web-based Switch Configuration; -2 Login to Web Manager
Chapter 5 - Introduction to Web-based Switch Configuration 5-1 Introduction5-2 Login to Web manager5-3 Web-Based User Interface5-4 Basic Setup5-5 Reboot5-6 Basic Switch Setup5-7 Network Management5-8 Switch Utilities5-9 Network Monitoring5-10 IGMP Snooping Status 5-1 Introduction All software functi...
Page 27 - Areas of the User Interface; Area Function
5-3 Web-based User Interface The user interface provides access to various Switch configuration and management screens, allows you to view performance statistics, and permits you to graphically monitor the system status. Areas of the User Interface The figure below shows the user interface.The user ...
Page 28 - Web Pages
Web Pages Configurations – Contains screens concerning configurations for IP Address, Switch Information, Advanced Settings, Port Configuration, IGMP, Spanning Tree, Forwarding Filtering,VLANs, Port Bandwidth, SNTP Settings, Port Security, QoS, MAC Notification, LACP, Access Profile Table, System Lo...
Page 29 - Chapter 6 - Configuring The Switch; -1 Switch Information
Chapter 6 - Configuring The Switch 6-1 Switch Information6-2 IP Address6-3 Box Information6-4 Advanced Settings6-5 Port Configuration6-6 Port Description6-7 Port Mirroring6-8 Link Aggregation6-9 LACP Port Setting6-10MAC Notification6-11GMP6-12 Spanning Tree6-13 Forward & Filtering6-14 VLANs6-15 ...
Page 33 - -4 Port Configuration
Parameter Description Current Box ID The current Box ID of the Master switch in the stack. New Box ID The new box ID of the Master switch in the stack. Box Type The user may choose the model name of the Master switch in a stack to be the main configuring switch of that stack. Priority Displays the p...
Page 35 - Understanding Port Trunk Groups
6-6 Port Mirroring The Switch allows you to copy frames transmitted and received on a port and redirect the copies to another port.You can attach a monitoring device to the mirrored port, such as a sniffer or an RMON probe, to view details about the packets passing through the first port.This is use...
Page 37 - -8 LACP Port Setting
Figure 6- 11. Link Aggregation Group Configuration window – Modify The user-changeable parameters are as follows: Parameter Description Group ID Select an ID number for the group, between 1 and 32. State Trunk groups can be toggled between Enabled and Disabled .This is used to turn a port trunking g...
Page 38 - MAC Notification Global Settings
The user may set the following parameters: Parameter Description Unit Choose the switch in the switch stack to be configured by using the pull-down menu. From/To A consecutive group of ports may be configured starting with the selected port. Mode Active – Active LACP ports are capable of processing ...
Page 40 - Type
The format of an IGMP packet is shown below: Figure 6- 15. IGMP Message Format The IGMP Type codes are shown below: Type Meaning 0x11 Membership Query (if Group Address is 0.0.0.0) 0x11 Specific Group Membership Query (if Group Address is Present) 0x16 Membership Report (version 2) 0x17 Leave a Grou...
Page 41 - IGMP Snooping
IGMP Snooping Internet Group Management Protocol (IGMP) snooping allows the Switch to recognize IGMP queries and reports sent between network stations or devices and an IGMP host.When enabled for IGMP snooping, the Switch can open or close a port to a specific device based on IGMP messages passing t...
Page 42 - Static Router Ports
Robustness Value Adjust this variable according to expected packet loss. If packet loss on the VLAN is expected to be high, the Robustness Variable should be increased to accommodate increased packet loss.This entry field allows an entry of 1 to 255. Default = 2. Last Member Query Interval This fiel...
Page 44 - Port Transition States; Forwarding; Edge Port; Spanning Tree
802.1w Rapid Spanning Tree The Switch implements three versions of the Spanning Tree Protocol, the Multiple Spanning Tree Protocol (MSTP) as defined by the IEEE 802.1s, the Rapid Spanning Tree Protocol (RSTP) as defined by the IEEE 802.1w specification and a version compatible with the IEEE 802.1d S...
Page 46 - MST Configuration Table
Parameter Description STP Status Use the pull-down menu to enable or disable STP globally on the Switch.The default is Disabled . STP Version Use the pull-down menu to choose the desired version of STP to be implemented on the Switch.There are three choices: STP – Select this parameter to set the Sp...
Page 49 - MSTI Port Information
MSTI Port Information This window displays the current MSTI configuration settings and can be used to update the port configuration for an MSTI ID. If a loop occurs, the MSTP function will use the port priority to select an interface to put into the forwarding state. Set a higher priority value for ...
Page 50 - STP Instance Settings
49 Allied Telesyn AT-9724TS High-Density Layer 3 Stackable Gigabit Ethernet Switch STP Instance Settings The following window displays MSTIs currently set on the Switch.To view the following table, click Configuration > Spanning Tree > STP Instance Settings : Figure 6- 30. STP Instance Setting...
Page 52 - STP Port Settings
STP Port Settings STP can be set up on a port per port basis.To view the following window click Configuration > Spanning Tree > STP Port Settings : Figure 6- 33. STP Port Settings and MSTP Port Information Table In addition to setting Spanning Tree parameters for use on the switch level, the S...
Page 53 - Unicast Forwarding
0 (auto) – Setting 0 for the external cost will automatically set the speed for forwarding packets to the specified port(s) in the list for optimal efficiency. Default port cost: 100Mbps port = 200000. Gigabit port = 20000. value 1-200000000 – Define a value between 1 and 200000000 to determine the ...
Page 54 - Static Multicast Forwarding
Static Multicast Forwarding The following figure and table describe how to set up Multicast Forwarding on the Switch. Open the Forwarding Filtering folder and click on the Multicast Forwarding link to see the entry screen below: Figure 6- 35. Static Multicast Forwarding Settings and Current Multicas...
Page 55 - Tagging
6-14 VLANs Understanding IEEE 802.1p Priority Priority tagging is a function defined by the IEEE 802.1p standard designed to provide a means of managing traffic on a network where many different types of data may be transmitted simultaneously. It is intended to alleviate problems associated with the...
Page 56 - Tagged or Untagged
The main characteristics of IEEE 802.1Q are as follows: • Assigns packets to VLANs by filtering. • Assumes the presence of a single global spanning tree. • Uses an explicit tagging scheme with one-level tagging. • 802.1Q VLAN Packet Forwarding • Packet forwarding decisions are made based upon the fo...
Page 58 - Port VLAN ID; Tagging and Untagging
Port VLAN ID Packets that are tagged (are carrying the 802.1Q VID information) can be transmitted from one 802.1Q compliant network device to another with the VLAN information intact.This allows 802.1Q VLANs to span network devices (and indeed, the entire network, if all network devices are 802.1Q c...
Page 59 - VLAN Name; VLAN Segmentation
An example is presented below: VLAN Name VID Switch Ports System (default) 1 5, 6, 7, 8, 21, 22, 23, 24 Engineering 2 9, 10, 11, 12 Marketing 3 13, 14, 15, 16 Finance 4 17, 18, 19, 20 Sales 5 1, 2, 3, 4 Table 6- 3.VLAN Example – Assigned Ports Port-based VLANs Port-based VLANs limit traffic that flo...
Page 60 - Static VLAN Entry
Protocol Type Header in Hexadecimal Form IP over Ethernet 0x0800 IPX 802.3 0xFFFF IPX 802.2 0xE0E0 IPX SNAP 0x8137 IPX over Ethernet2 0x8137 DecLAT 0x6000 DecOther 0x6009 SNA 802.2 0x0404 NetBios 0xF0F0 XNS 0x0600 VINES 0x0BAD IPv6 0x86DD AppleTalk 0x809B RARP 0x8035 Table 6- 4. Protocol VLAN and th...
Page 63 - GVRP Setting
User Defined Pid – Specifies that the VLAN will only accept packets with this hexadecimal 802.1Q Ethernet type value in the packet header.The user may define an entry, in the hexadecimal form (ffff) to define the packet identification. ( The user only need enter the final four integers of the hexade...
Page 66 - -17 Port Lock Entries
65 Allied Telesyn AT-9724TS High-Density Layer 3 Stackable Gigabit Ethernet Switch 6-17 Port Lock Entries The Port Lock Entry Delete window is used to remove an entry from the port security entries learned by the Switch and entered into the forwarding database.To view the following window, click Con...
Page 68 - Bandwidth Control
A~H with their respective weight value: 8~1, the packets are sent in the following sequence: A1, B1, C1, D1, E1, F1, G1, H1, A2, B2, C2, D2, E2, F2, G2, A3, B3, C3, D3, E3, F3, A4, B4, C4, D4, E4, A5, B5, C5, D5, A6, B6, C6, A7, B7, A8, A1, B1, C1, D1, E1, F1, G1, H1.For weighted round-robin queuing...
Page 70 - Configuring the Combination Queue
You may assign the following values to the QoS classes to set the scheduling. Parameter Description Max. Packets Specifies the maximum number of packets the above specified hardware priority queue will be allowed to transmit before allowing the next lowest priority queue to transmit its packets. A v...
Page 72 - Traffic Segmentation
Once you have assigned a priority to the port groups on the Switch, you can then assign this Class to each of the7 levels of 802.1p priorities. Click Apply to set your changes. Traffic Segmentation Traffic segmentation is used to limit traffic flow from a single port to a group of ports on either a ...
Page 73 - -19 System Log Server
Clicking the Apply button will enter the combination of transmitting port and allowed receiving ports into the Switch's Traffic Segmentation Table . 6-19 System Log Server The Switch can send Syslog messages to up to four designated servers using the System Log Server . In the Configuration folder, ...
Page 75 - Current Time Settings
6-20 SNTP Settings Current Time Settings To configure the time settings for the Switch, open the Configuration folder, then the SNTP folder and click on the Current Time Setting link, revealing the following screen for the user to configure. Figure 6- 58.Time Settings Page The following parameters c...
Page 76 - Time Zone and DST
Time Zone and DST The following are screens used to configure time zones and Daylight Savings time settings for SNTP. Open the Configuration folder, then the SNTP folder and click on the Time Zone and DST link, revealing the following screen. Figure 6- 59.Time Zone and DST Settings Page The followin...
Page 86 - Uncontrolled Port
Port-Based Network Access Control Figure 6- 73. Example of Typical Port-Based Configuration Once the connected device has successfully been authenticated, the Port then becomes Authorized, and all subsequent traffic on the Port is not subject to access control restriction until an event occurs that ...
Page 87 - Configure Authenticator; PAE Access Entity > Configure Authenticator; Port
Configure Authenticator To configure the 802.1X Authenticator Settings, click PAE Access Entity > Configure Authenticator : Figure 6- 75. 802.1X Authenticator Settings window To view the 802.1X Authenticator settings on a different switch in the switch stack, use the Unit pull-down menu to select...
Page 88 - Local Users
This screen allows you to set the following features: Parameter Description Unit Choose the Switch ID number of the Switch in the switch stack to be modified. From [ ] To [ ] Enter the port or ports to be set. AdmCtrlDir Sets the administrative-controlled direction to either in or both . If in is se...
Page 89 - PAE System Control
PAE System Control Existing 802.1x port settings are displayed and can be configured using the windows below. Port Capability Settings Click Port Access Entity > PAE System Control > 802.1X Capability Settings to view the following window: Figure 6- 78. 802.1x Capability Settings and Table win...
Page 90 - Initializing Ports for Port Based 802.1x
Initializing Ports for Port Based 802.1x Existing 802.1x port settings are displayed and can be configured using the window below. Note: Ensure Port Based 802.1x is enabled under Configuration > Advanced Settings . Click Port Access Entity > PAE System Control > Initialize Port(s) to open t...
Page 91 - Initializing Ports for MAC Based 802.1x
Initializing Ports for MAC Based 802.1x To initialize ports for the MAC side of 802.1x, the user must first enable 802.1x by MAC address in the Advanced Settings window. Click Port Access Entity > PAE System Control > Initialize Port(s) to open the following window: Figure 6- 80. Initialize Po...
Page 93 - RADIUS Server
RADIUS Server The RADIUS feature of the Switch allows you to facilitate centralized user administration as well as providing protection against a sniffing, active hacker.The Web Manager offers three windows.Click Port Access Entity > RADIUS Server > Authentic Radius Server to open the RADIUS S...
Page 96 - MD5 Key Table Configuration
Figure 6- 87. IP Interface Configuration – Edit window Choose a name for the interface to be added and enter it in the Interface Name field (if you are editing an IP Interface, the Interface Name will already be in the top field as seen in the window above). Enter the interface’s IP address and subn...
Page 97 - Route Redistribution Settings
The following fields can be set: Parameter Description Key ID A number from 1 to 255 used to identify the MD5 Key. Key A alphanumeric string of between 1 and 16 case-sensitive characters used to generate the Message Digest which is in turn, used to authenticate OSPF packets within the OSPF routing d...
Page 99 - Route Preference Settings
Figure 6- 91. Static/Default Route Settings – Add window The following fields can be set: Parameter Description IP Address Allows the entry of an IP address that will be a static entry into the Switch’s Routing Table. Subnet Mask Allows the entry of a subnet mask corresponding to the IP address abov...
Page 100 - Apply
3. After changing the route preference value for a specific routing protocol, that protocol needs to be restarted because the previously learned routes have been dropped from the Switch.The Switch must learn the routes again before the new settings can take effect. To view the Route Preference Setti...
Page 101 - Static ARP Table
Static ARP Table The Address Resolution Protocol ( ARP ) is a TCP/IP protocol that converts IP addresses into physical addresses.This table allows network managers to view, define, modify and delete ARP information for specific devices.Static entries can be defined in the ARP Table .When static entr...
Page 103 - Setting Up RIP
To setup RIP for the IP interfaces configured on the Switch, the user must enable RIP and then configure RIP settings for the individual IP interfaces.To globally enable RIP on the Switch, open the Configuration folder to Layer 3 Networking and then open the RIP folder and click on the RIP Configura...
Page 104 - Shortest Path Algorithm
Parameter Description Interface Name The name of the IP interface on which RIP is to be setup.This interface must be previously configured on the Switch. IP Address The IP address corresponding to the Interface Name showing in the field above. TX Mode < Disabled > Toggle among Disabled , v1 On...
Page 105 - Shortest Path Tree
Shortest Path Tree To build Router A’s shortest path tree for the network diagrammed below, Router A is put at the root of the tree and the smallest cost link to each destination network is calculated. Figure 6- 98. Constructing a Shortest Path Tree The diagram above shows the network from the viewp...
Page 106 - Areas and Border Routers
Figure 6- 99. Constructing a Shortest Path Tree – Completed Note that this shortest path tree is only from the viewpoint of Router A.The cost of the link from Router B to Router A, for instance is not important to constructing Router A’s shortest path tree, but is very important when Router B is con...
Page 107 - Area ID; Authentication
OSPF Authentication OSPF packets can be authenticated as coming from trusted routers by the use of predefined passwords.The default for routers is to use not authentication.There are two other authentication methods – simple password authentication (key) and Message Digest authentication (MD-5). Mes...
Page 109 - Hello Packet
Figure 6- 100. OSPF Packet Header Format Field Description Version No. The OSPF version number. Type The OSPF packet type.The OSPF packet types are as follows:Type Description Hello Database Description Link-State Request Link-State Update Link-State Acknowledgment. Packet Length The length of the p...
Page 110 - Database Description Packet
Figure 6- 101. Hello Packet Field Description Network Mask The network mask associated with this interface. Options The optional capabilities supported by the router. Hello Interval The number of seconds between this router’s Hello packets. Router Priority This router’s Router Priority.The Router Pr...
Page 111 - Link-State Request Packet
Figure 6- 102. Database Description Packet Field Description Options The optional capabilities supported by the router. I – bit The Initial bit.When set to 1, this packet is the first in the sequence of Database Description packets. M – bit The More bit.When set to 1, this indicates that more Databa...
Page 112 - Link-State Update Packet
Figure 6- 103. Link-State Request Packet Each advertisement requested is specified by its Link-State Type, Link-State ID, and Advertising Router.This uniquely identifies the advertisement, but not its instance. Link-State Request packets are understood to be requests for the most recent instance. Li...
Page 114 - Link State Advertisement Header; Router Links Advertisements
Link State Advertisement Header All link state advertisements begin with a common 20-byte header.This header contains enough information to uniquely identify the advertisements (Link State Type, Link State ID, and Advertising Router). Multiple instances of the link state advertisement may exist in t...
Page 116 - Network Links Advertisements; Summary Link Advertisements
For each link, separate metrics may be specified for each Type of Service (TOS).The metric for TOS 0 must always be included, and was discussed above. Metrics for non-zero TOS are described below. Note that the cost for non-zero TOS values that are not specified defaults to the TOS 0 cost. Metrics m...
Page 117 - Field; Metric; Autonomous Systems External Link Advertisements
Figure 6- 109. Summary Link Advertisements For stub area,Type 3 summary link advertisements can also be used to describe a default route on a per-area basis. Default summary routes are used in stub area instead of flooding a complete set of external routes.When describing a default summary route, th...
Page 118 - General OSPF Settings; OSPF Area ID Setting
Field Description Network Mask The IP address mask for the advertised destination. E – bit The type of external metric. If the E - bit is set, the metric specified is a Type 2 external metric.This means the metric is considered larger than any link state path. If the E - bit is zero, the specified m...
Page 119 - OSPF Interface Settings
To add an OSPF Area to the table, type a unique Area ID (see below) select the Type from the drop-down menu. For a Stub type, choose Enabled or Disabled from the Stub Import Summary LSA drop-down menu and determine the Stub Default Cost . Click the Add/Modify button to add the Area ID set to the tab...
Page 121 - OSPF Virtual Interface Settings
OSPF Virtual Interface Settings Click the OSPF Virtual Interface Settings link to view the current OSPF Virtual Interface Settings .There are not virtual interface settings configured by default, so the first time this table is viewed there will be not interfaces listed.To add a new OSPF virtual int...
Page 122 - OSPF Area Aggregation Settings; OSPF Host Route Settings
OSPF Area Aggregation Settings Area Aggregation allows all of the routing information that may be contained within an area to be aggregated into a summary LSDB advertisement of just the network address and subnet mask.This allows for a reduction in the volume of LSDB advertisement traffic as well as...
Page 123 - DHCP / BOOTP Relay Information
To configure OSPF host routes, click the OSPF Host Route Settings link.To add a new OSPF Route, click the Add button. Configure the setting in the menu that appears.The Add and Modify menus for OSPF host route setting are nearly identical.The difference being that if you are changing an existing con...
Page 124 - DHCP/BootP Relay Settings
Figure 6- 122. DHCP/BootP Global Settings window The following fields can be set: Parameter Description BOOTP Relay Status This field can be toggled between Enabled and Disabled using the pull-down menu. It is used to enable or disable the BOOTP/DHCP Relay service on the Switch.The default is Disabl...
Page 125 - DNS Relay Static Settings
Mapping Domain Names to Addresses Name-to-address translation is performed by a program called a Name server.The client program is called a Name resolver. A Name resolver may need to contact several Name servers to translate a name to an address.The Domain Name System (DNS) servers are organized in ...
Page 126 - VRRP Configuration
Figure 6- 125. DNS Relay Static Settings and Table window To add an entry into the DNS Relay Static Tabl e, simply enter a Domain Name with its corresponding IP address and click Add . A successful entry will be presented in the table below, as shown in the example above.To erase an entry from the t...
Page 127 - VRRP Interface Settings
VRRP Interface Settings The following window will allow the user to view the parameters for the VRRP function on the Switch.To view this window, click Configuration > Layer 3 IP Networking > VRRP > VRRP Configuration : Figure 6- 127.VRRP Configuration window The following fields are display...
Page 132 - PIM-DM Interface Configuration
The following fields can be set: Parameter Description Interface Name Displays the name of the IP interface for which DVMRP is to be configured.This must be a previously defined IP interface. IP Address Displays the IP address corresponding to the IP Interface name entered above. Neighbor Timeout In...
Page 134 - Chapter 7 - Security Management
Chapter 7 - Security Management 7-1 Security IP7-2 User Accounts7-3 Access Authentication Control (TACACS)7-4 Secure Sockets Layer (SSL)7-5 Secure Shell (SSH) The following section will aid the user in configuring security functions for the Switch.The Switch includes various functions for security, ...
Page 135 - Admin and User Privileges
Figure 7- 3. User Accounts Modify Table – Add Add a new user by typing in a User Name , and N ew Password and retype the same password in the Confirm New Password . Choose the level of privilege ( Admin or User ) from the Access Right drop-down menu. Figure 7- 4. User Account Modify Table – Modify M...
Page 136 - -3 Access Authentication Control; Enable Admin
7-3 Access Authentication Control The TACACS / XTACACS / TACACS+ / RADIUS commands let you secure access to the Switch using the TACACS / XTACACS / TACACS+ / RADIUS protocols.When a user logs in to the Switch or tries to access the administrator level privilege, he or she is prompted for a password....
Page 140 - Login Method Lists
Note: More than one authentication protocol can be run on the same physical server host but, remember that TACACS/XTACACS/TACACS+ are separate entities and are not compatible with each other. Login Method Lists This command will configure a user-defined or default Login Method List of authentication...
Page 142 - Local Enable Password
Figure 7- 16. Enable Method List – Edit window Figure 7- 17. Enable Method List – Add window To define an Enable Login Method List, set the following parameters and click Apply : Parameter Description Method List Name Enter a method list name defined by the user of up to 15 characters. Method 1, 2, ...
Page 144 - Download Certificate
7-4 Secure Socket Layer (SSL) Secure Sockets Layer or SSL is a security feature that will provide a secure communication path between a host and client through the use of authentication, digital signatures and encryption.These security functions are implemented through the use of a ciphersuite, whic...
Page 146 - SSH Configuration; SSH Algorithm
7-5 Secure Shell (SSH) SSH is an abbreviation of Secure Shell , which is a program allowing secure remote login and secure network services over an insecure network. It allows a secure login to remote host computers, a safe method of executing commands on a remote end node, and will provide secure e...
Page 148 - SSH User Authentication
Data Integrity Algorithm HMAC-SHA1 Use the pull-down to enable or disable the HMAC (Hash for Message Authentication Code) mechanism utilizing the Secure Hash algorithm.The default is Enabled . HMAC-MD5 Use the pull-down to enable or disable the HMAC (Hash for Message Authentication Code) mechanism u...
Page 150 - Chapter 8 - SNMP Manager; SNMP Settings
Chapter 8 - SNMP Manager SNMP Settings Simple Network Management Protocol (SNMP) is an OSI Layer 7 (Application Layer) designed specifically for managing and monitoring network devices. SNMP enables network management stations to read and modify the settings of gateways, routers, switches, and other...
Page 152 - SNMP View Table
Parameter Description User Name Enter an alphanumeric string of up to 32 characters.This is used to identify the SNMP user. Group Name This name is used to specify the SNMP group created can request SNMP messages. SNMP Version V1 – Specifies that SNMP version 1 will be used. V2 – Specifies that SNMP...
Page 153 - SNMP Group Table
Figure 8- 5. SNMP View Table Configuration window The SNMP Group created with this table maps SNMP users (identified in the SNMP User Table ) to the views created in the previous menu. The following parameters can be set: Parameter Description View Name Type an alphanumeric string of up to 32 charac...
Page 154 - SNMP Community Table Configuration
Figure 8- 7. SNMP Group Table Configuration window The following parameters can be set: Parameter Description Group Name Type an alphanumeric string of up to 32 characters.This is used to identify the new SNMP group of SNMP users. Read View Name This name is used to specify the SNMP group created ca...
Page 155 - SNMP Host Table
Figure 8- 8. SNMP Community Table Configuration and Table window The following parameters can be set: Parameter Description Community Name Type an alphanumeric string of up to 33 characters that is used to identify members of an SNMP community. This string is used like a password to give remote SNMP...
Page 156 - SNMP Engine ID
Figure 8-10. SNMP Host Table Configuration window The following parameters can be set: Parameter Description Host IP Address Type the IP address of the remote management station that will serve as the SNMP host for the Switch. SNMP Version V1 – To specifies that SNMP version 1 will be used. V2 – To ...
Page 157 - Chapter 9 - Monitoring
Chapter 9 - Monitoring 9-1 Port Utilization The Port Utilization page displays the percentage of the total available bandwidth being used on the port. To view the port utilization, open the Monitoring folder and then the Port Utilization link: Figure 9- 1. Port Utilization window To select a port to...
Page 159 - Received Packets Table
Figure 9- 3. Rx Packets Analysis window (line graph for Bytes and Packets) To view the Received Packets Table , click the link View Table , which will show the following table: Figure 9- 4. Rx Packets Analysis window (table for Bytes and Packets) The following fields may be set or viewed: 158 Allied...
Page 165 - Transmitted Error Packets Table
Figure 9- 11.Tx Error Analysis window (line graph) To view the Transmitted Error Packets Table , click the link View Table, which will show the following table: Figure 9- 12.Tx Error Analysis window (table) The following fields may be set or viewed: 164 Allied Telesyn AT-9724TS High-Density Layer 3 ...
Page 167 - Stacking Information
Figure 9- 14. Rx Size Analysis window (table) The following fields can be set or viewed: Parameter Description Time Interval Select the desired setting between 1s and 60s, where "s" stands for seconds.The default value is one second. Record Number Select number of times the Switch will be po...
Page 168 - Device Status
Figure 9- 15. Stacking Information window The Stacking Information window holds the following information: Parameter Description Box ID Displays the Switch’s order in the stack. User Set Box ID can be assigned automatically (Auto), or can be assigned statically. Default is Auto. Type Displays the mo...
Page 170 - -7 Switch History Log
The following fields can be viewed or set: Parameter Description VLAN Name Enter a VLAN Name for the forwarding table to be browsed by. MAC Address Enter a MAC address for the forwarding table to be browsed by. Unit – Port Select the switch Unit ID of the switch in the Switch stack and then the port...
Page 173 - Authenticator Statistics
Figure 9- 23. Authenticator State – MAC Based 802.1X This window displays the Authenticator State for individual ports on a selected device.To select unit within the switch stack, use the pull-down menu at the top of the window and click Apply . A polling interval between 1 and 60 seconds can be set...
Page 175 - Authenticator Session Statistics
Authenticator Session Statistics This table contains the session statistics objects for the Authenticator PAE associated with each port. An entry appears in this table for each port that supports the Authenticator function.To view the Authenticator Session Statistics , click Monitoring > Port Acc...
Page 176 - Authenticator Diagnostics
Authenticator Diagnostics This table contains the diagnostic information regarding the operation of the Authenticator associated with each port. An entry appears in this table for each port that supports the Authenticator function.To view the Authenticator Diagnostics , click Monitoring > Port Ac...
Page 177 - RADIUS Authentication
Authed Start Counts the number of times that the state machine transitions from AUTHENTICATED to CONNECTING, as a result of an EAPOL-Start message being received from the Supplicant. Authed LogOff Counts the number of times that the state machine transitions from AUTHENTICATED to DISCONNECTED, as a ...
Page 178 - RADIUS Accounting
BadAuthenticators The number of RADIUS Access-Response packets containing invalid authenticators or Signature attributes received from this server. PendingRequests The number of RADIUS Access-Request packets destined for this server that have not yet timed out or received a response.This variable is...
Page 179 - Browse IP Address
Note: To configure 802.1x features for the AT-9724TS, go to the Configuration folder and select Port Access Entity. Configuration and other information concerning 802.1x may be found in Section 6 of this manual under Port Access Entity . 9-12 Layer 3 Feature This folder in the Monitoring section wil...
Page 185 - Chapter 10 - Switch Maintenance; Download Firmware
Chapter 10 - Switch Maintenance 10-1 TFTP Services10-2 Multiple Image Services10-3 CF Services10-4 Ping Test10-5 Save Changes10-6 Reset10-7 Reboot Services10-8 Logout 10-1 TFTP Service Trivial File Transfer Protocol (TFTP) services allow the Switch’s firmware to be upgraded by transferring a new fir...
Page 187 - Config Firmware Image
Figure 10- 5. Firmware Information window This window holds the following information: Parameter Description BOX States the stacking ID number of the switch in the switch stack. ID States the image ID number of the firmware in the Switch’s memory.The Switch can store 2 firmware images for use. Image...
Page 191 - Appendix A - Technical Specifications; General; Physical & Environmental
Appendix A - Technical Specifications General Standard IEEE 802.3u 100TX Fast EthernetIEEE 802.3ab 1000T Gigabit EthernetIEEE 802.1 P/Q VLANIEEE 802.3x Full-duplex Flow ControlIEEE 802.3 Nway auto-negotiation Protocols CSMA/CD Data Transfer Rates: Half-duplex Full-duplex Ethernet 10Mbps 20Mbps Fast ...
Page 192 - Performance; Transmission Method:; Filtering Address Table:; MAC Address Learning:
Performance Transmission Method: Store-and-forward RAM Buffer: 2 MB per device Filtering Address Table: 16 K MAC address per device Packet Filtering/ Full-wire speed for all connections. Forwarding Rate: 148,810 pps per port (for 100Mbps) 1,488,100 pps per port (for 1000Mbps) MAC Address Learning: A...
Page 197 - UTRUSTNING MED PLUGG.
4 m EQUIPO CONECTABLE, el tomacorriente se debe instalar cerca del equipo, en un lugar con acceso fácil". 5 m ATENCION: Las aberturas para ventilación no deberán bloquearse y deberán tener acceso libre al aire ambiental de la sala para su enfriamiento. 6 m TEMPERATURA REQUERIDA PARA LA OPERACIÓN...