Page 2 - COPYRIGHT & TRADEMARKS; FCC STATEMENT; CE Mark Warning
COPYRIGHT & TRADEMARKS Specifications are subject to change without notice. is a registered trademark of TP-LINK TECHNOLOGIES CO., LTD. Other brands and product names are trademarks or registered trademarks of their respective holders. No part of the specifications may be reproduced in any form ...
Page 3 - Safety Information
IV Safety Information When product has power button, the power button is one of the way to shut off the product; When there is no power button, the only way to completely shut off power is to disconnect the product or the power adapter from the power source. Don’t disassemble the product, or mak...
Page 4 - CONTENTS
CONTENTS Package Contents .......................................................................................................................... 1 Chapter 1 ........................................................................................................... 2 About this Guide 1.1 ...........
Page 9 - Package Contents
Package Contents The following items should be found in your box: One Gigabit Smart Switch One power cord Two mounting brackets and other fittings Installation Guide Resource CD for TL-SG2216/TL-SG2424/TL-SG2424P/TL-SG2452 switch, including: This User Guide Other Helpful Information No...
Page 10 - Chapter 1 About this Guide; Intended Readers
Chapter 1 About this Guide This User Guide contains information for setup and management of TL-SG2216/TL-SG2424 /TL-SG2424P/TL-SG2452 Gigabit Smart Switch. Please read this guide carefully before operation. 1.1 Intended Readers This Guide is intended for network managers familiar with IT concepts an...
Page 14 - Chapter 2 Introduction; Overview of the Switch; Resiliency and Availability; Manageability; Appearance Description
Chapter 2 Introduction Thanks for choosing the TL-SG2216/TL-SG2424/TL-SG2424P/TL-SG2452 Gigabit Smart Switch! 2.1 Overview of the Switch Designed for workgroups and departments, TL-SG2216/TL-SG2424/TL-SG2424P/TL-SG2452 from TP-LINK provides wire-speed performance and full set of layer 2 management f...
Page 19 - Chapter 3 Login to the Switch; Login; Enter
Chapter 3 Login to the Switch 3.1 Login 1) To access the configuration utility, open a web-browser and type in the default address http://192.168.0.1 in the address field of the browser, then press the Enter key. Figure 3-1 Web-browser Tips: To log in to the switch, the IP address of your PC should ...
Page 20 - Apply; Save Config
Figure 3-3 Main Setup-Menu Note: Clicking Apply can only make the new configurations effective before the switch is rebooted. If you want to keep the configurations effective even the switch is rebooted, please click Save Config . You are suggested to click Save Config before cutting off the power o...
Page 21 - Chapter 4 System
Chapter 4 System The System module is mainly for system configuration of the switch, including four submenus: System Info , User Management, System Tools and Access Security . 4.1 System Info The System Info, mainly for basic properties configuration, can be implemented on System Summary , Device De...
Page 25 - System
Predefined Mode: Select a predefined DST configuration. USA: Second Sunday in March, 02:00 ~ First Sunday in November, 02:00. Australia: First Sunday in October, 02:00 ~ First Sunday in April, 03:00. Europe: Last Sunday in March, 01:00 ~ Last Sunday in October, 01:00. New Zealand: Last Sunda...
Page 26 - User Management
The following entries are displayed on this screen: IP Config MAC Address: Displays MAC Address of the switch. IP Address Mode: Select the mode to obtain IP Address for the switch. Static IP: When this option is selected, you should enter IP Address, Subnet Mask and Default Gateway manually. D...
Page 30 - Access Security
Note: 1. Don’t interrupt the upgrade. 2. Please select the proper software version matching with your hardware to upgrade. 3. To avoid damage, please don't turn off the device while upgrading. 4. After upgrading, the device will reboot automatically. 5. You are suggested to backup the configuration ...
Page 31 - Access Control Config
4.4.1 Access Control On this page you can control the users logging on to the Web management page to enhance the configuration management security. The definitions of Admin and Guest refer to 4.2 User Management . Choose the menu System → Access Security → Access Control to load the following page. ...
Page 33 - Global Config; Certificate Download
Figure 4-16 SSL Config The following entries are displayed on this screen : Global Config SSL: Select Enable/Disable the SSL function on the switch. Certificate Download Certificate File: Select the desired certificate to download to the switch. The certificate must be BASE64 encoded. Key Down...
Page 35 - Application Example 1 for SSH:
Key File: Select the desired key file to download. Download: Click the Download button to download the desired key file to the switch. Note: 1. Please ensure the key length of the downloaded file is in the range of 256 to 3072 bits. 2. After the Key File is downloaded, the user’s original key of the...
Page 36 - Application Example 2 for SSH:; Network Requirements; Configuration Procedure
Application Example 2 for SSH: Network Requirements 1. Log on to the switch via password authentication using SSH and the SSH function is enabled on the switch. 2. PuTTY client software is recommended. Configuration Procedure 1. Select the key type and key length, and generate SSH key. Note: 1. ...
Page 39 - Chapter 5 Switching
Chapter 5 Switching Switching module is used to configure the basic functions of the switch, including five submenus: Port , LAG , Traffic Monitor , MAC Address and DHCP Filtering . 5.1 Port The Port function, allowing you to configure the basic features for the port, is implemented on the Port Conf...
Page 41 - Mirror Group
The following entries are displayed on this screen. Mirror Group List Group: Displays the mirror group number. Mirroring: Displays the mirroring port number. Mode: Displays the mirror mode. The value will be "Ingress" or "Egress". Mirrored Port: Displays the mirrored ports. Operati...
Page 43 - Port Security
Figure 5-4 Port Security The following entries are displayed on this screen: Port Security Select: Select the desired port for Port Security configuration. It is multi-optional. Port: Displays the port number. Max Learned MAC: Specify the maximum number of MAC addresses that can be learned on the ...
Page 45 - Switching; Web Refresh Interval:
Choose the menu Switching → Port → Loopback Detection to load the following page. Figure 5-6 Loopback Detection Config The following entries are displayed on this screen : Global Config LoopbackDetection Status: Here you can enable or disable Loopback Detection function globally. Detection Interva...
Page 49 - Member Port
Member Port Member Port: Select the port as the LAG member. Clearing all the ports ofthe LAG will delete this LAG. Tips: 1. The LAG can be deleted by clearing its all member ports. 2. A port can only be added to a LAG. If a port is the member of a LAG, the port number will be displayed in gray and...
Page 50 - Select
Figure 5-10 LACP Config The following entries are displayed on this screen : Global Config System Priority: Specify the system priority for the switch. The system priority andMAC address constitute the system identification (ID). A lower systempriority value indicates a higher system priority. Whe...
Page 51 - Traffic Monitor
Mode: Specify LACP mode for your selected port. Status: Enable/Disable the LACP feature for your selected port. LAG: Displays the LAG number which the port belongs to. 5.3 Traffic Monitor The Traffic Monitor function, monitoring the traffic of each port, is implemented on the Traffic Summary and Tra...
Page 59 - Filtering Address Table; DHCP Working Principle
Filtering Address Table Select: Select the entry to delete the corresponding filtering address. It is multi-optional. MAC Address: Displays the filtering MAC Address. VLAN ID: Displays the corresponding VLAN ID. Port: Here the symbol “--” indicates no specified port. Type: Displays the Type of the...
Page 61 - DHCP Cheating Attack
addresses and replies to the client with DHCP-OFFER packet carrying the IP address and other information. ( 3 ) DHCP-REQUEST Stage: In the situation that there are several DHCP servers sending the DHCP-OFFER packets, the client will only respond to the first received DHCP-OFFER packet and broadcast ...
Page 63 - Chapter 6 VLAN
Chapter 6 VLAN The traditional Ethernet is a data network communication technology based on CSMA/CD (Carrier Sense Multiple Access/Collision Detect) via shared communication medium. Through the traditional Ethernet, the overfull hosts in LAN will result in serious collision, flooding broadcasts, poo...
Page 64 - Link Types of ports; Tagged
6.1 802.1Q VLAN VLAN tags in the packets are necessary for the switch to identify packets of different VLANs. The switch works at the data link layer in OSI model and it can identify the data link layer encapsulation of the packet only, so you can add the VLAN tag field into the data link layer enca...
Page 67 - Application Example for 802.1Q VLAN
Port: Displays the port number. Untagged: The port will be an untagged member of the specific VLAN if you select it. Tagged: The port will be an tagged member of the specific VLAN if you select it. NotMember: The port will not be a member of the specific VLAN if you select it. PVID: Here you can cha...
Page 69 - Chapter 7 Spanning Tree
Chapter 7 Spanning Tree STP (Spanning Tree Protocol), subject to IEEE 802.1D standard, is to disbranch a ring network in the Data Link layer in a local network. Devices running STP discover loops in the network and block ports by exchanging information, in that way, a ring network can be disbranched...
Page 70 - STP Timers; STP Generation
Figure 7-1 Basic STP diagram STP Timers Hello Time: Hello Time ranges from 1 to 10 seconds. It specifies the interval to send BPDU packets. It is used to test the links. Max. Age: Max. Age ranges from 6 to 40 seconds. It specifies the maximum time the switch can wait without receiving a BPDU befor...
Page 81 - Global configuration Procedure for Spanning Tree function:
Figure 7-9 Instance Port Config The following entries are displayed on this screen: Port Config Instance ID: Select the desired instance ID for its port configuration. Port Select: Click the Select button to quick-select the corresponding port based on the port number you entered. Select: Select t...
Page 85 - Application Example for STP Function
Choose the menu Spanning Tree → STP Security → TC Protect to load the following page. Figure 7-11 TC Protect The following entries are displayed on this screen: TC Protect TC Threshold: Enter a number from 1 to 100. It is the maximum number of the TC-BPDUs received by the switch in a TC Protect Cy...
Page 88 - Suggestion for Configuration
The topology diagram of the two instances after the topology is stable For Instance 1 (VLAN101, 103 and 105), the red paths in the following figure are connected links; the gray paths are the blocked links. For Instance 2 (VLAN102, 104 and 106), the blue paths in the following figure are conne...
Page 89 - Chapter 8 Multicast; Multicast Overview
Chapter 8 Multicast Multicast Overview In the network, packets are sent in three modes: unicast, broadcast and multicast. In unicast, the source server sends separate copy information to each receiver. When a large number of users require this information, the server must send many pieces of infor...
Page 96 - Configuration procedure:
Router Port: Displays the router port of the VLAN. Note: The settings here will be invalid when multicast VLAN is enabled Configuration procedure: Step Operation Description 1 Enable IGMP Snooping function Required. Enable IGMP Snooping globally on the switch and for the port on Multicast → IGMP Sno...
Page 98 - Application Example for Multicast VLAN:
Application Example for Multicast VLAN: Network Requirements Multicast source sends multicast streams via the router, and the streams are transmitted to user A and user B through the switch. Router: Its WAN port is connected to the multicast source; its LAN port is connected to the switch. The mul...
Page 101 - Multicast Filter
Figure 8-9 Static Multicast IP Table The following entries are displayed on this screen: Create Static Multicast Multicast IP: Enter static multicast IP address. VLAN ID: Enter the VLAN ID of the multicast IP. Forward Port: Enter the forward port of the multicast group. Search Option Search Opti...
Page 103 - Configuration Procedure:
Figure 8-11 Port Filter The following entries are displayed on this screen: Port Filter Config Port Select: Click the Select button to quick-select the corresponding port based on the port number you entered. Select: Select the desired port for multicast filtering. It is multi-optional. Port: Disp...
Page 104 - Packet Statistics
Step Operation Description 1 Configure IP-Range Required. Configure IP-Range to be filtered on Multicast → Multicast Filter → IP-Range page. 2 Configure multicast filter rules for ports Optional. Configure multicast filter rules for ports on Multicast → Multicast Filter → Port Filter page. 8.4 Packe...
Page 106 - Chapter 9 QoS; QoS; Priority Mode
Chapter 9 QoS QoS (Quality of Service) functions to provide different quality of service for various network applications and requirements and optimize the bandwidth resource distribution so as to provide a network service experience of a better quality. QoS This switch classifies the ingress pack...
Page 107 - Schedule Mode
Figure 9-2 802.1Q frame As shown in the figure above, each 802.1Q Tag has a Pri field, comprising 3 bits. The 3-bit priority field is 802.1p priority in the range of 0 to 7. 802.1P priority determines the priority of the packets based on the Pri value. On the Web management page of the switch, you c...
Page 113 - Bandwidth Control
Equ-Mode: Equal-Mode. In this mode, all the queues occupy the bandwidth equally. The weight value ratio of all the queues is 1:1:1:1. 9.2 Bandwidth Control Bandwidth function, allowing you to control the traffic rate and broadcast flow on each port to ensure network in working order, can be implemen...
Page 116 - Port Voice VLAN Mode
Number OUI Address Vendor 1 00-01-e3-00-00-00 Siemens phone 2 00-03-6b-00-00-00 Cisco phone 3 00-04-0d-00-00-00 Avaya phone 4 00-60-b9-00-00-00 Philips/NEC phone 5 00-d0-1e-00-00-00 Pingtel phone 6 00-e0-75-00-00-00 Polycom phone 7 00-e0-bb-00-00-00 3com phone Table 9-1 OUI addresses on the switch ...
Page 118 - Port Config
VLAN ID: Enter the VLAN ID of the voice VLAN. Aging Time: Specifies the living time of the member port in auto mode after the OUI address is aging out. Priority: Select the priority of the port when sending voice data. 9.3.2 Port Config Before the voice VLAN function is enabled, the parameters of th...
Page 119 - Create OUI
Port Mode: Select the mode for the port to join the voice VLAN. Auto: In this mode, the switch automatically adds a port to the voice VLAN or removes a port from the voice VLAN by checking whether the port receives voice data or not. Manual: In this mode, you can manually add a port to the voice...
Page 120 - Configuration Procedure of Voice VLAN:
OUI: Displays the OUI address of the voice device. Mask: Displays the OUI address mask of the voice device. Description: Displays the description of the OUI. Configuration Procedure of Voice VLAN: Step Operation Description 1 Configure the link type of the port Required. On VLAN → 802.1Q VLAN → VLAN...
Page 121 - Chapter 10 ACL
Chapter 10 ACL 10.1 ACL Config An ACL may contain a number of rules, and each rule specifies a different package range. Packets are matched in match order. Once a rule is matched, the switch processes the matched packets taking the operation specified in the rule without considering the other rules,...
Page 124 - Create Extend-IP ACL; Policy Config; Policy Summary
Figure 10-5 Create Extend-IP Rule The following entries are displayed on this screen: Create Extend-IP ACL ACL ID: Select the desired Extend-IP ACL for configuration. Rule ID: Enter the rule ID. Operation: Select the operation for the switch to process packets which match the rules. Permit: Forw...
Page 126 - Policy Binding
10.2.3 Action Create On this page you can add ACLs for the policy. Choose the menu ACL → Policy Config → Action Create to load the following page. Figure 10-8 Action Create The following entries are displayed on this screen: Create Action Select Policy: Select the name of the policy. Select ACL: S...
Page 129 - Application Example for ACL
10.4 Application Example for ACL Network Requirements 1. The manager of the R&D department can access to the forum of the company and the Internet without any forbiddance. The MAC address of the manager is 00-64-A5-5D-12-C3. 2. The staff of the R&D department can not access to the Internet...
Page 131 - Chapter 11 PoE; Composition; Advantage; PoE Config
Chapter 11 PoE Note: Only TL-SG2424P supports PoE function. PoE (Power over Ethernet) technology describes a system to transmit electrical power along with data to remote devices over standard twisted-pair cable in an Ethernet network. It is especially useful for supplying power to IP telephones, wi...
Page 132 - The following items are displayed on this screen:
PoE Config, mainly for PoE attributes configuration, is implemented on PoE Config and PoE Profile pages. 11.1.1 PoE Config On this page, you can configure the parameters to implement PoE function. Choose the menu PoE → PoE Config → PoE Config to load the following page. Figure 11-1 PoE Config The fo...
Page 133 - Create PoE Profile
PoE Priority: The priority levels include High, Middle and Low in descending order. When the supply power exceeds the system power limit, the PD linked to the port with lower priority will be disconnected. Power Limit (0.1w-30w): Defines the max power the corresponding port can supply. Class1 repres...
Page 138 - Chapter 12 SNMP; SNMP Overview; SNMP Versions
Chapter 12 SNMP SNMP Overview SNMP (Simple Network Management Protocol) has gained the most extensive application on the UDP/IP networks. SNMP provides a management frame to monitor and maintain the network devices. It is used for automatically managing the various network devices no matter the ph...
Page 142 - Group Config
Figure 12-5 SNMP Group The following entries are displayed on this screen: Group Config Group Name: Enter the SNMP Group name. The Group Name, Security Modeland Security Level compose the identifier of the SNMP Group.The Groups with these three items the same are considered to bethe same. Security...
Page 151 - Alarm Table
Figure 12-11 Alarm Config The following entries are displayed on this screen: Alarm Table Select: Select the desired entry for configuration. Index: Displays the index number of the entry. Variable: Select the alarm variables from the pull-down list. Port: Select the port on which the Alarm entry ...
Page 153 - Chapter 13 LLDP; LLDPDU Format
Chapter 13 LLDP Note: Only TL-SG2424P supports LLDP function. LLDP (Link Layer Discovery Protocol) is a Layer 2 protocol that is used for network devices to advertise their own device information periodically to neighbors on the same IEEE 802 local area network. The advertised information, including...
Page 157 - Notification Interval:
The LLDP module is mainly for LLDP function configuration of the switch, including three submenus: Basic Config , Device Info , Device Statistics and LLDP-MED . 13.1 Basic Config LLDP is configured on the Global Config and Port Config pages. 13.1.1 Global Config On this page you can configure the LL...
Page 158 - LLDP Port Config
Fast Start Times: When the port's LLDP state transforms from Disable (or Rx_Only) to Tx&Rx (or Tx_Only), the fast start mechanism will be enabled, that is, the transmit interval will be shorten to a second, andseveral LLDPDUs will be sent out (the number of LLDPDUs equals this parameter). The de...
Page 160 - Device Statistics
Refresh Rate: Specify the auto refresh rate. Local Info Enter the desired port number and click Select to display the information of the corresponding port. 13.2.2 Neighbor Info On this page you can get the information of the neighbors. Choose the menu LLDP → Device Info → Neighbor Info to load th...
Page 161 - Auto Refresh
Figure 13-5 LLDP Statistic Information The following entries are displayed on this screen : Auto Refresh Auto Refresh: Enable/Disable the auto refresh function. Refresh Rate: Specify the auto refresh rate. Global Statistics Last Update: Displays latest update time of the statistics. Total Insert...
Page 162 - Elements; Network Connectivity Device:
based on the port number you entered. Port: Displays local device's port number. Transmit Total: Displays the number of LLDPDUs sent by this port. Receive Total: Displays the number of LLDPDUs received by this port. Discards: Displays the number of LLDPDUs discarded by this port. Errors: Displays th...
Page 164 - LLDP-MED Port Config; Detail
Figure 13-7 LLDP-MED Port Configuration The following entries are displayed on this screen : LLDP-MED Port Config Port Select: Select the desired port to configure. LLDP-MED Status: Configure the port's LLDP-MED status: Enable: Enable the port's LLDP-MED status, and the port's Admin Status will be...
Page 165 - Included TLVs; Location Identification Parameters; LLDP
Included TLVs Select TLVs to be included in outgoing LLDPDU. Location Identification Parameters Configure the Location Identification TLV's content in outgoing LLDPDU of the port. Emergency Number: Emergency number is Emergency Call Service ELIN identifier, which is used during emergency call se...
Page 168 - Chapter 14 Maintenance; System Monitor
Chapter 14 Maintenance Maintenance module, assembling the commonly used system tools to manage the switch, provides the convenient method to locate and solve the network problem. ( 1 ) System Monitor: Monitor the utilization status of the memory and the CPU of switch. ( 2 ) Log: View the configurati...
Page 169 - Level Description
14.1.2 Memory Monitor Choose the menu Maintenance → System Monitor → Memory Monitor to load the following page. Figure 14-2 Memory Monitor Click the Monitor button to enable the switch to monitor and display its Memory utilization rate every four seconds. 14.2 Log The Log system of switch can record...
Page 173 - Device Diagnostics
Backup Log Backup Log: Click the Backup Log button to save the log as a file to your computer. Note: It will take a few minutes to backup the log file. Please wait without any operation. 14.3 Device Diagnostics This switch provides Cable Test and Loopback functions for device diagnose. 14.3.1 Cabl...
Page 174 - Network Diagnostics
14.3.2 Loopback Loopback test function, looping the sender and the receiver of the signal, is used to test whether the port of the switch is available as well as to check and analyze the physical connection status of the port to help you locate and solve network malfunctions. Choose the menu Mainten...
Page 175 - Ping Config; Maintenance
Figure 14-9 Ping The following entries are displayed on this screen: Ping Config Destination IP: Enter the IP address of the destination node for Ping test. Ping Times: Enter the amount of times to send test data during Ping testing. Thedefault value is recommended. Data Size: Enter the size of th...
Page 176 - Tracert Config
Tracert Config Destination IP: Enter the IP address of the destination device. Max Hop: Specify the maximum number of the route hops the test data can passthrough. Return to CONTENTS 168
Page 177 - Appendix A: Specifications
Appendix A: Specifications IEEE802.3 10Base-T Ethernet IEEE802.3u 100Base-TX/100Base-FX Fast Ethernet IEEE802.3ab 1000Base-T Gigabit Ethernet IEEE802.3z 1000Base-X Gigabit Ethernet IEEE802.3x Flow Control IEEE802.1p QoS Standards IEEE802.1q VLAN Ethernet: 10Mbps HD , 20Mbps FD Fast Ethernet: 100Mbps...
Page 179 - Appendix B: Configuring the PCs; Start; Control Panel; Network and Internet Connections; Network
Appendix B: Configuring the PCs In this section, we’ll introduce how to install and configure the TCP/IP correctly in Windows 2000. First make sure your Ethernet Adapter is working, refer to the adapter’s manual if necessary. 1) On the Windows taskbar, click the Start button, and then click Control ...
Page 181 - Appendix C: Glossary; Differentiated Services Code Point (DSCP)
Appendix C: Glossary Boot Protocol (BOOTP) BOOTP is used to provide bootup information for network devices, including IP address information, the address of the TFTP server that contains the devices system files, and the name of the boot file. Class of Service (CoS) CoS is supported by prioritizing ...