Edge-Core ECS5520-18X User manual

  • Hello! I am an AI chatbot trained to assist you with the Edge-Core ECS5520-18X User manual. I’ve already reviewed the document and can help you find the information you need or explain it in simple terms. Just ask your questions, and providing more details will help me assist you more effectively!
Web Management Guide
www.edge-core.com
ECS5520-18X
Software Release
v1.0.7.193
Web Management Guide
ECS5520-18X
L2+/L3 Lite 10G Top of Rack switch
with 16 10GBASE-X SFP+ ports
and 2 QSFP+ ports
E092019-CS- R01
– 3 –
How to Use This Guide
This guide includes detailed information on the switch software, including how to
operate and use the management functions of the switch. To deploy this switch
effectively and ensure trouble-free operation, you should first read the relevant
sections in this guide so that you are familiar with all of its software features.
Who Should Read
this Guide?
This guide is for network administrators who are responsible for operating and
maintaining network equipment. The guide assumes a basic working knowledge of
LANs (Local Area Networks), the Internet Protocol (IP), and Simple Network
Management Protocol (SNMP).
How this Guide
is Organized
This guide provides detailed information about the switchs key features. It also
describes the switch’s web browser interface. For information on the command line
interface refer to the CLI Reference Guide.
The guide includes these sections:
Section I “Getting Started — Includes an introduction to switch management,
and the basic settings required to access the management interface.
Section II “Web Configuration — Includes all management options available
through the web browser interface.
Section III “Appendices — Includes information on troubleshooting switch
management access.
Related
Documentation
This guide focuses on switch software configuration through the web browser.
For information on how to manage the switch through the command line interface,
see the following guide:
CLI Reference Guide
Note:
For a description of how to initialize the switch for management access via
the CLI, web interface or SNMP, refer to “Initial Switch Configuration” in the CLI
Reference Guide.
How to Use This Guide
– 4 –
For information on how to install the switch, see the following guide:
Quick Start Guide
For all safety information and regulatory statements, see the following documents:
Quick Start Guide
Safety and Regulatory Information
Conventions The following conventions are used throughout this guide to show information:
Note:
Emphasizes important information or calls your attention to related features
or instructions.
Documentation
Notice
This documentation is provided for general information purposes only. If any
product feature details in this documentation conflict with the product datasheet,
refer to the datasheet for the latest information.
Revision History This section summarizes the changes in each revision of this guide.
Revision Date Change Description
v1.0.7.193 09/2019 Initial release
– 5 –
Contents
How to Use This Guide 3
Contents 5
Figures 17
Tables 31
Section I Getting Started 33
1 Introduction 35
Key Features 35
Description of Software Features 36
System Defaults 41
Section II Web Configuration 45
2 Using the Web Interface 47
Connecting to the Web Interface 47
Navigating the Web Browser Interface 48
Dashboard 48
Configuration Options 49
Panel Display 50
Main Menu 50
3 Basic Management Tasks 67
Displaying System Information 68
Displaying Hardware/Software Versions 69
Configuring Support for Jumbo Frames 70
Displaying Bridge Extension Capabilities 71
Managing System Files 72
Contents
– 6 –
Copying Files via FTP/FTPS/SFTP/TFTP or HTTP 72
Saving the Running Configuration to a Local File 75
Setting the Start-up File 76
Showing System Files 77
Automatic Operation Code Upgrade 78
Setting the System Clock 82
Setting the Time Manually 82
Setting the SNTP Polling Interval 83
Configuring NTP 84
Configuring Time Servers 85
Setting the Time Zone 88
Configuring Summer Time 89
Configuring the Console Port 91
Configuring Telnet Settings 93
Displaying CPU Utilization 95
Configuring CPU Guard 96
Displaying Memory Utilization 97
Resetting the System 98
4 Interface Configuration 103
Port Configuration 104
Configuring by Port List 104
Configuring by Port Range 105
Displaying Connection Status 106
Showing Port or Trunk Statistics 107
Setting the Hardware Profile 111
Displaying Statistical History 112
Displaying Transceiver Data 116
Configuring Transceiver Thresholds 117
Trunk Configuration 120
Configuring a Static Trunk 121
Configuring a Dynamic Trunk 123
Displaying LACP Port Counters 130
Displaying LACP Settings and Status for the Local Side 131
Displaying LACP Settings and Status for the Remote Side 132
Contents
– 7 –
Configuring Load Balancing 133
Configuring Local Port Mirroring 135
Configuring Remote Port Mirroring 137
Sampling Traffic Flows 141
Configuring sFlow Receiver Settings 142
Configuring an sFlow Polling Instance 144
Traffic Segmentation 146
Enabling Traffic Segmentation 146
Configuring Uplink and Downlink Ports 147
VLAN Trunking 149
5 VLAN Configuration 153
IEEE 802.1Q VLANs 153
Configuring VLAN Groups 157
Adding Static Members to VLANs 159
Configuring Dynamic VLAN Registration 163
IEEE 802.1Q Tunneling 167
Enabling QinQ Tunneling on the Switch 171
Creating CVLAN to SPVLAN Mapping Entries 172
Adding an Interface to a QinQ Tunnel 174
L2PT Tunneling 175
Configuring the L2PT Tunnel Address 177
Enabling L2PT for Selected Interfaces 178
Protocol VLANs 179
Configuring Protocol VLAN Groups 180
Mapping Protocol Groups to Interfaces 181
Configuring IP Subnet VLANs 183
Configuring MAC-based VLANs 185
Configuring VLAN Mirroring 187
Configuring VLAN Translation 189
6 Address Table Settings 193
Displaying the Dynamic Address Table 193
Clearing the Dynamic Address Table 194
Changing the Aging Time 195
Configuring MAC Address Learning 196
Contents
– 8 –
Setting Static Addresses 197
Configuring MAC Address Mirroring 199
Issuing MAC Address Traps 201
7 Spanning Tree Algorithm 203
Overview 203
Configuring Loopback Detection 205
Configuring Global Settings for STA 207
Displaying Global Settings for STA 213
Configuring Interface Settings for STA 214
Displaying Interface Settings for STA 218
Configuring Multiple Spanning Trees 221
Configuring Interface Settings for MSTP 225
8 Congestion Control 229
Rate Limiting 229
Storm Control 230
Automatic Traffic Control 232
Setting the ATC Timers 233
Configuring ATC Thresholds and Responses 235
9 Class of Service 239
Layer 2 Queue Settings 239
Setting the Default Priority for Interfaces 239
Selecting the Queue Mode 240
Mapping CoS Values to Egress Queues 243
Layer 3/4 Priority Settings 246
Setting Priority Processing to IP Precedence/DSCP or CoS 246
Mapping Ingress DSCP Values to Internal DSCP Values 247
Mapping CoS Priorities to Internal DSCP Values 250
Mapping IP Precedence Values to Internal DSCP Values 252
10 Quality of Service 255
Overview 255
Configuring a Class Map 256
Creating QoS Policies 259
Attaching a Policy Map to a Port 269
Contents
– 9 –
11 VoIP Traffic Configuration 271
Overview 271
Configuring VoIP Traffic 272
Configuring Telephony OUI 273
Configuring VoIP Traffic Ports 274
12 Security Measures 277
AAA (Authentication, Authorization and Accounting) 278
Configuring Local/Remote Logon Authentication 279
Configuring Remote Logon Authentication Servers 280
Configuring AAA Accounting 285
Configuring AAA Authorization 291
Configuring User Accounts 295
Web Authentication 297
Configuring Global Settings for Web Authentication 297
Configuring Interface Settings for Web Authentication 298
Network Access (MAC Address Authentication) 299
Configuring Global Settings for Network Access 302
Configuring Network Access for Ports 303
Configuring Port Link Detection 305
Configuring a MAC Address Filter 306
Displaying Secure MAC Address Information 308
Configuring HTTPS 309
Configuring Global Settings for HTTPS 309
Replacing the Default Secure-site Certificate 311
Configuring the Secure Shell 313
Configuring the SSH Server 315
Generating the Host Key Pair 316
Importing User Public Keys 317
Access Control Lists 319
Showing TCAM Utilization 320
Setting the ACL Name and Type 322
Configuring a Standard IPv4 ACL 324
Configuring an Extended IPv4 ACL 325
Configuring a Standard IPv6 ACL 327
Contents
– 10 –
Configuring an Extended IPv6 ACL 329
Configuring a MAC ACL 331
Configuring an ARP ACL 333
Binding a Port to an Access Control List 335
Showing ACL Hardware Counters 336
Filtering IP Addresses for Management Access 337
Configuring Port Security 340
Configuring 802.1X Port Authentication 342
Configuring 802.1X Global Settings 344
Configuring Port Authenticator Settings for 802.1X 345
Configuring Port Supplicant Settings for 802.1X 349
Displaying 802.1X Statistics 351
DoS Protection 354
DHCP Snooping 356
DHCP Snooping Global Configuration 359
DHCP Snooping VLAN Configuration 361
Configuring Ports for DHCP Snooping 362
Displaying DHCP Snooping Binding Information 363
DHCPv6 Snooping 364
DHCPv6 Snooping Global Configuration 366
DHCPv6 Snooping VLAN Configuration 368
Configuring Interfaces for DHCPv6 Snooping 369
Displaying DHCPv6 Snooping Binding Information 371
Displaying DHCPv6 Snooping Statistics 372
IPv4 Source Guard 373
Configuring Ports for IPv4 Source Guard 373
Configuring Static Bindings for IPv4 Source Guard 375
Displaying Information for Dynamic IPv4 Source Guard Bindings 378
IPv6 Source Guard 379
Configuring Ports for IPv6 Source Guard 379
Configuring Static Bindings for IPv6 Source Guard 381
Displaying Information for Dynamic IPv6 Source Guard Bindings 384
ARP Inspection 385
Configuring Global Settings for ARP Inspection 386
Configuring VLAN Settings for ARP Inspection 388
Contents
– 11 –
Configuring Interface Settings for ARP Inspection 390
Displaying ARP Inspection Statistics 391
Displaying the ARP Inspection Log 392
Application Filter 393
13 Basic Administration Protocols 395
Configuring Event Logging 396
System Log Configuration 396
Remote Log Configuration 398
Sending Simple Mail Transfer Protocol Alerts 399
Link Layer Discovery Protocol 401
Setting LLDP Timing Attributes 401
Configuring LLDP Interface Attributes 403
Configuring LLDP Interface Civic-Address 407
Displaying LLDP Local Device Information 409
Displaying LLDP Remote Device Information 413
Displaying Device Statistics 421
Simple Network Management Protocol 423
Configuring Global Settings for SNMP 426
Setting Community Access Strings 426
Setting the Local Engine ID 428
Specifying a Remote Engine ID 429
Setting SNMPv3 Views 430
Configuring SNMPv3 Groups 433
Configuring Local SNMPv3 Users 438
Configuring Remote SNMPv3 Users 440
Specifying Trap Managers 443
Creating SNMP Notification Logs 447
Showing SNMP Statistics 449
Remote Monitoring 451
Configuring RMON Alarms 451
Configuring RMON Events 454
Configuring RMON History Samples 456
Configuring RMON Statistical Samples 459
Setting a Time Range 461
Contents
– 12 –
Ethernet Ring Protection Switching 464
ERPS Global Configuration 468
ERPS VLAN Group Configuration 469
ERPS Ring Configuration 470
ERPS Instance Configuration 471
ERPS Forced and Manual Mode Operations 486
OAM Configuration 490
Enabling OAM on Local Ports 490
Displaying Statistics for OAM Messages 492
Displaying the OAM Event Log 493
Displaying the Status of Remote Interfaces 494
Configuring a Remote Loopback Test 495
Displaying Results of Remote Loopback Testing 497
LBD Configuration 498
Configuring Global Settings for LBD 498
Configuring Interface Settings for LBD 500
14 Multicast Filtering 503
Overview 503
Layer 2 IGMP (Snooping and Query for IPv4) 504
Configuring IGMP Snooping and Query Parameters 506
Specifying Static Interfaces for a Multicast Router 510
Assigning Interfaces to Multicast Services 512
Setting IGMP Snooping Status per Interface 514
Filtering IGMP Packets on an Interface 520
Displaying Multicast Groups Discovered by IGMP Snooping 521
Displaying IGMP Snooping Statistics 522
Filtering and Throttling IGMP Groups 527
Enabling IGMP Filtering and Throttling 528
Configuring IGMP Filter Profiles 528
Configuring IGMP Filtering and Throttling for Interfaces 531
MLD Snooping (Snooping and Query for IPv6) 532
Configuring MLD Snooping and Query Parameters 533
Setting Immediate Leave Status for MLD Snooping per Interface 535
Specifying Static Interfaces for an IPv6 Multicast Router 536
Contents
– 13 –
Assigning Interfaces to IPv6 Multicast Services 538
Filtering MLD Query Packets on an Interface 540
Showing MLD Snooping Groups and Source List 541
Displaying MLD Snooping Statistics 542
Filtering and Throttling MLD Groups 550
Enabling MLD Filtering and Throttling 551
Configuring MLD Filter Profiles 551
Configuring MLD Filtering and Throttling for Interfaces 554
Multicast VLAN Registration for IPv4 556
Configuring MVR Global Settings 557
Configuring MVR Domain Settings 559
Configuring MVR Group Address Profiles 561
Configuring MVR Interface Status 563
Assigning Static MVR Multicast Groups to Interfaces 566
Displaying MVR Receiver Groups 568
Displaying MVR Statistics 569
15 IP Tools 575
Using the Ping Function 575
Using the Trace Route Function 577
Address Resolution Protocol 578
Basic ARP Configuration 579
Configuring Static ARP Addresses 580
Displaying Dynamic or Local ARP Entries 582
Displaying ARP Statistics 583
16 IP Configuration 585
Setting the Switch’s IP Address (IP Version 4) 585
Configuring IPv4 Interface Settings 585
Setting the Switch’s IP Address (IP Version 6) 589
Configuring the IPv6 Default Gateway 589
Configuring IPv6 Interface Settings 590
Configuring an IPv6 Address 595
Showing IPv6 Addresses 597
Showing the IPv6 Neighbor Cache 599
Showing IPv6 Statistics 600
Contents
– 14 –
Showing the MTU for Responding Destinations 606
17 General IP Routing 607
Overview 607
Initial Configuration 607
IP Routing and Switching 608
Routing Path Management 609
Routing Protocols 609
Configuring Static Routes 610
Displaying the Routing Table 611
Equal-cost Multipath Routing 613
18 IP Services 615
Domain Name Service 615
Configuring General DNS Service Parameters 615
Configuring a List of Domain Names 616
Configuring a List of Name Servers 618
Configuring Static DNS Host to Address Entries 619
Displaying the DNS Cache 620
Dynamic Host Configuration Protocol 621
Specifying a DHCP Client Identifier 621
Configuring DHCP L3 Relay Service 623
Enabling DHCP Dynamic Provision 624
Configuring the DHCP Server 625
Configuring DHCPv6 Relay 633
Configuring the PPPoE Intermediate Agent 636
Configuring PPPoE IA Global Settings 636
Configuring PPPoE IA Interface Settings 637
Showing PPPoE IA Statistics 639
Section III Appendices 641
A Software Specifications 643
Software Features 643
Management Features 644
Contents
– 15 –
Standards 645
Management Information Bases 646
B Troubleshooting 649
Problems Accessing the Management Interface 649
Using System Logs 650
C License Information 651
The GNU General Public License 651
Contents
– 16 –
– 17 –
Figures
Figure 1: Dashboard 48
Figure 2: System Information 68
Figure 3: General Switch Information 70
Figure 4: Configuring Support for Jumbo Frames 71
Figure 5: Displaying Bridge Extension Configuration 72
Figure 6: Copy Firmware 75
Figure 7: Saving the Running Configuration 76
Figure 8: Setting Start-Up Files 77
Figure 9: Displaying System Files 77
Figure 10: Configuring Automatic Code Upgrade 81
Figure 11: Manually Setting the System Clock 83
Figure 12: Setting the Polling Interval for SNTP 83
Figure 13: Configuring NTP 84
Figure 14: Specifying SNTP Time Servers 85
Figure 15: Adding an NTP Time Server 86
Figure 16: Showing the NTP Time Server List 87
Figure 17: Adding an NTP Authentication Key 88
Figure 18: Showing the NTP Authentication Key List 88
Figure 19: Setting the Time Zone 89
Figure 20: Configuring Summer Time 91
Figure 21: Console Port Settings 93
Figure 22: Telnet Connection Settings 94
Figure 23: Displaying CPU Utilization 95
Figure 24: Configuring CPU Guard 97
Figure 25: Displaying Memory Utilization 97
Figure 26: Restarting the Switch (Immediately) 100
Figure 27: Restarting the Switch (In) 100
Figure 28: Restarting the Switch (At) 101
Figure 29: Restarting the Switch (Regularly) 101
Figures
– 18 –
Figure 30: Configuring Connections by Port List 105
Figure 31: Configuring Connections by Port Range 106
Figure 32: Displaying Port Information 107
Figure 33: Showing Port Statistics (Table) 110
Figure 34: Showing Port Statistics (Chart) 111
Figure 35: Setting the Hardware Profile 112
Figure 36: Configuring a History Sample 114
Figure 37: Showing Entries for History Sampling 114
Figure 38: Showing Status of Statistical History Sample 115
Figure 39: Showing Current Statistics for a History Sample 115
Figure 40: Showing Ingress Statistics for a History Sample 116
Figure 41: Displaying Transceiver Data 117
Figure 42: Configuring Transceiver Thresholds 119
Figure 43: Configuring Static Trunks 121
Figure 44: Creating Static Trunks 122
Figure 45: Adding Static Trunks Members 122
Figure 46: Configuring Connection Parameters for a Static Trunk 123
Figure 47: Showing Information for Static Trunks 123
Figure 48: Configuring Dynamic Trunks 123
Figure 49: Configuring the LACP Aggregator Admin Key 127
Figure 50: Enabling LACP on a Port 127
Figure 51: Configuring LACP Parameters on a Port 128
Figure 52: Showing Members of a Dynamic Trunk 128
Figure 53: Configuring Connection Settings for a Dynamic Trunk 129
Figure 54: Showing Connection Parameters for Dynamic Trunks 129
Figure 55: Displaying LACP Port Counters 130
Figure 56: Displaying LACP Port Internal Information 132
Figure 57: Displaying LACP Port Remote Information 133
Figure 58: Configuring Load Balancing 135
Figure 59: Configuring Local Port Mirroring 135
Figure 60: Configuring Local Port Mirroring 136
Figure 61: Displaying Local Port Mirror Sessions 137
Figure 62: Configuring Remote Port Mirroring 137
Figure 63: Configuring Remote Port Mirroring (Source) 140
Figure 64: Configuring Remote Port Mirroring (Intermediate) 141
Figures
– 19 –
Figure 65: Configuring Remote Port Mirroring (Destination) 141
Figure 66: Configuring an sFlow Receiver 143
Figure 67: Showing sFlow Receivers 144
Figure 68: Configuring an sFlow Instance 145
Figure 69: Showing sFlow Instances 145
Figure 70: Enabling Traffic Segmentation 147
Figure 71: Configuring Members for Traffic Segmentation 148
Figure 72: Showing Traffic Segmentation Members 149
Figure 73: Configuring VLAN Trunking 149
Figure 74: Configuring VLAN Trunking 151
Figure 75: VLAN Compliant and VLAN Non-compliant Devices 155
Figure 76: Using GVRP 156
Figure 77: Creating Static VLANs 158
Figure 78: Modifying Settings for Static VLANs 158
Figure 79: Showing Static VLANs 159
Figure 80: Configuring Static Members by VLAN Index 162
Figure 81: Configuring Static VLAN Members by Interface 162
Figure 82: Configuring Static VLAN Members by Interface Range 163
Figure 83: Configuring Global Status of GVRP 165
Figure 84: Configuring GVRP for an Interface 165
Figure 85: Showing Dynamic VLANs Registered on the Switch 166
Figure 86: Showing the Members of a Dynamic VLAN 166
Figure 87: QinQ Operational Concept 168
Figure 88: Enabling QinQ Tunneling 172
Figure 89: Configuring CVLAN to SPVLAN Mapping Entries 173
Figure 90: Showing CVLAN to SPVLAN Mapping Entries 173
Figure 91: Adding an Interface to a QinQ Tunnel 175
Figure 92: Configuring the L2PT Tunnel Address 178
Figure 93: Enabling L2PT on Required Interfaces 179
Figure 94: Configuring Protocol VLANs 181
Figure 95: Displaying Protocol VLANs 181
Figure 96: Assigning Interfaces to Protocol VLANs 183
Figure 97: Showing the Interface to Protocol Group Mapping 183
Figure 98: Configuring IP Subnet VLANs 185
Figure 99: Showing IP Subnet VLANs 185
Figures
– 20 –
Figure 100: Configuring MAC-Based VLANs 187
Figure 101: Showing MAC-Based VLANs 187
Figure 102: Configuring VLAN Mirroring 188
Figure 103: Showing the VLANs to Mirror 189
Figure 104: Configuring VLAN Translation 189
Figure 105: Configuring VLAN Translation 190
Figure 106: Showing the Entries for VLAN Translation 191
Figure 107: Displaying the Dynamic MAC Address Table 194
Figure 108: Clearing Entries in the Dynamic MAC Address Table 195
Figure 109: Setting the Address Aging Time 196
Figure 110: Configuring MAC Address Learning 197
Figure 111: Configuring Static MAC Addresses 199
Figure 112: Displaying Static MAC Addresses 199
Figure 113: Mirroring Packets Based on the Source MAC Address 200
Figure 114: Showing the Source MAC Addresses to Mirror 201
Figure 115: Issuing MAC Address Traps (Global Configuration) 202
Figure 116: Issuing MAC Address Traps (Interface Configuration) 202
Figure 117: STP Root Ports and Designated Ports 204
Figure 118: MSTP Region, Internal Spanning Tree, Multiple Spanning Tree 204
Figure 119: Spanning Tree – Common Internal, Common, Internal 205
Figure 120: Configuring Port Loopback Detection 207
Figure 121: Configuring Global Settings for STA (STP) 211
Figure 122: Configuring Global Settings for STA (RSTP) 212
Figure 123: Configuring Global Settings for STA (MSTP) 212
Figure 124: Displaying Global Settings for STA 214
Figure 125: Determining the Root Port 215
Figure 126: Configuring Interface Settings for STA 218
Figure 127: STA Port Roles 220
Figure 128: Displaying Interface Settings for STA 221
Figure 129: Creating an MST Instance 222
Figure 130: Displaying MST Instances 223
Figure 131: Modifying the Priority for an MST Instance 223
Figure 132: Displaying Global Settings for an MST Instance 224
Figure 133: Adding a VLAN to an MST Instance 224
Figure 134: Displaying Members of an MST Instance 225
/