7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 8
... Software and Stack Member Image Upgrades 19-7 Switch Stack Configuration Files 19-7 Switch Stack Management Connectivity 19-7 Switch Stack Configuration Scenarios 19-8 Stacking Recommendations 19-9 Renumber Stack Members 19-11 Moving a Master to a Different Unit in the Stack 19-13 Upgrading Firmware 19-15 Migration of Configuration With a Firmware Upgrade 19-15 Web Interface: Upgrading Firmware 19-16 Chapter 20 SNMP Add a New Community 20-1 Enable SNMP Trap ...20-2 Configure SNMP V3 ...20-3 sFlow ...20-5 Configure Time...
... Software and Stack Member Image Upgrades 19-7 Switch Stack Configuration Files 19-7 Switch Stack Management Connectivity 19-7 Switch Stack Configuration Scenarios 19-8 Stacking Recommendations 19-9 Renumber Stack Members 19-11 Moving a Master to a Different Unit in the Stack 19-13 Upgrading Firmware 19-15 Migration of Configuration With a Firmware Upgrade 19-15 Web Interface: Upgrading Firmware 19-16 Chapter 20 SNMP Add a New Community 20-1 Enable SNMP Trap ...20-2 Configure SNMP V3 ...20-3 sFlow ...20-5 Configure Time...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 12
... includes support for configuring and operating a network using the Command Line Interface and Web Interface. Experienced system administrator who is written for your network: this document describes configuration for some of Ethernet and networking concepts. You should have a basic knowledge of the most-used functions. • Audience. choose the appropriate one for the 7000 Series Managed Switch according to these specifications:. The Command Line Reference provides information about the CLI commands used to configure the switch. NETGEAR Managed Switches Software...
... includes support for configuring and operating a network using the Command Line Interface and Web Interface. Experienced system administrator who is written for your network: this document describes configuration for some of Ethernet and networking concepts. You should have a basic knowledge of the most-used functions. • Audience. choose the appropriate one for the 7000 Series Managed Switch according to these specifications:. The Command Line Reference provides information about the CLI commands used to configure the switch. NETGEAR Managed Switches Software...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 15
... following command: config network parms ipaddress netmask gateway IP Address Unique IP address for VT100 terminal emulation. Getting Started 1-2 v1.0, October 2009 e. The default is admin for in-band connectivity over the network. The switch is configured with the default configuration. 5. Enter an approved user name and password. NETGEAR Managed Switches Software Administration Manual, Release 8.0 When you do not use BootP or DHCP, access the switch through the EIA-232 port. 1. If you connect the switch to the modem. 2. For remote attachment...
... following command: config network parms ipaddress netmask gateway IP Address Unique IP address for VT100 terminal emulation. Getting Started 1-2 v1.0, October 2009 e. The default is admin for in-band connectivity over the network. The switch is configured with the default configuration. 5. Enter an approved user name and password. NETGEAR Managed Switches Software Administration Manual, Release 8.0 When you do not use BootP or DHCP, access the switch through the EIA-232 port. 1. If you connect the switch to the modem. 2. For remote attachment...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 16
... configured for Web-based management. c. To view the changes and verify in-band information, issue the command: show network. 9. Configure the terminal emulation software as a data terminal equipment (DTE) connector. b. d. To enable these changes to be retained during a reset of the RS-232 crossover cable directly to confirm the changes. 8. Perform the following hardware is a male DB-9 connector, implemented as follows: a. Set the data rate to the switch console port using...
... configured for Web-based management. c. To view the changes and verify in-band information, issue the command: show network. 9. Configure the terminal emulation software as a data terminal equipment (DTE) connector. b. d. To enable these changes to be retained during a reset of the RS-232 crossover cable directly to confirm the changes. 8. Perform the following hardware is a male DB-9 connector, implemented as follows: a. Set the data rate to the switch console port using...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 18
... configures one privileged user account during the set up. • Enables CLI login and HTTP access to use the local authentication setting only. • Sets up the IP address for the management interface. • Sets up the following steps: - Before installing switch software, you become acquainted quickly with a valid password. Quick Starting the Networking Device 1. Allow the device to the Global Config mode from all IP addresses. • Configures the default gateway IP address. Type admin at a given IP address. Enter configure to switch to load the software...
... configures one privileged user account during the set up. • Enables CLI login and HTTP access to use the local authentication setting only. • Sets up the IP address for the management interface. • Sets up the following steps: - Before installing switch software, you become acquainted quickly with a valid password. Quick Starting the Networking Device 1. Allow the device to the Global Config mode from all IP addresses. • Configures the default gateway IP address. Type admin at a given IP address. Enter configure to switch to load the software...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 19
... TFTP Server • Restoring factory defaults If you configure any network parameters, you use to view system information and to access the networking device. As a factory default, the 'admin' user has Read/Write access and the 'guest' user has Read Only access. Table 1-1 contains the Quick Start commands that allow you to the configuration file. Access Mode shows whether you power down or reset the networking device. User EXEC Displays all units of the users that are available in all of the command. NETGEAR Managed Switches Software Administration Manual...
... TFTP Server • Restoring factory defaults If you configure any network parameters, you use to view system information and to access the networking device. As a factory default, the 'admin' user has Read/Write access and the 'guest' user has Read Only access. Table 1-1 contains the Quick Start commands that allow you to the configuration file. Access Mode shows whether you power down or reset the networking device. User EXEC Displays all units of the users that are available in all of the command. NETGEAR Managed Switches Software Administration Manual...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 26
... switch through a Web browser and Internet connection. NETGEAR Managed Switches Software Administration Manual, Release 8.0 saved into the Flash (permanently storage). There are equivalent functions in , there is , both applications usually employ the same menus to save the configuration. Please enter 'show running-config' to as Webbased management. Using the Web Interface This chapter is quicker and easier than entering the multiple required CLI commands. Enter Y to the web interface; The switch Getting Started Guide provides instructions...
... switch through a Web browser and Internet connection. NETGEAR Managed Switches Software Administration Manual, Release 8.0 saved into the Flash (permanently storage). There are equivalent functions in , there is , both applications usually employ the same menus to save the configuration. Please enter 'show running-config' to as Webbased management. Using the Web Interface This chapter is quicker and easier than entering the multiple required CLI commands. Enter Y to the web interface; The switch Getting Started Guide provides instructions...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 85
... or security is then associated with some ports supporting VLANs and some supporting routing. Chapter 6 VLAN Routing In this chapter, the following examples are used to search the MAC address table. If routing is performed for a subset. A port may be routed. The main difference is that of the internal bridge-router interface, the packet will be part of a VLAN that you can configure the 7000 Series Managed Switch with a VLAN. An inbound multicast packet will show ip vlan command...
... or security is then associated with some ports supporting VLANs and some supporting routing. Chapter 6 VLAN Routing In this chapter, the following examples are used to search the MAC address table. If routing is performed for a subset. A port may be routed. The main difference is that of the internal bridge-router interface, the packet will be part of a VLAN that you can configure the 7000 Series Managed Switch with a VLAN. An inbound multicast packet will show ip vlan command...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 163
....9 192.168.77.2 CLI: Setting up an IP ACL with a match on a 7000 Series Managed Switch. CLI Commands (Netgear Switch) #config (Netgear Switch) (Config)#access-list 101 permit tcp 192.168.77.0 0.0.0.255 192.178.77.0 0.0.0.255 Access Control Lists (ACLs) v1.0, October 2009 11-3 Layer 3 Switch TCP packet to UDP traffic. The content of the two rules is an example of configuring ACL support on the specified source IP address (after the mask...
....9 192.168.77.2 CLI: Setting up an IP ACL with a match on a 7000 Series Managed Switch. CLI Commands (Netgear Switch) #config (Netgear Switch) (Config)#access-list 101 permit tcp 192.168.77.0 0.0.0.255 192.178.77.0 0.0.0.255 Access Control Lists (ACLs) v1.0, October 2009 11-3 Layer 3 Switch TCP packet to UDP traffic. The content of the two rules is an example of configuring ACL support on the specified source IP address (after the mask...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 199
... Rules Create a new MAC ACL acl_bpdu. (Netgear Switch) # (Netgear Switch) #config (Netgear Switch) (Config)#mac access-list extended acl_bpdu Access Control Lists (ACLs) v1.0, October 2009 11-39 NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 11-43 b. Click Unit 1. A flag appears in the ACL ID field. • In the Sequence Number field, enter 2. Click Apply to save the settings. Set up a MAC ACL with Two Rules The example is shown as CLI commands and as a Web interface procedure. c. Configure the...
... Rules Create a new MAC ACL acl_bpdu. (Netgear Switch) # (Netgear Switch) #config (Netgear Switch) (Config)#mac access-list extended acl_bpdu Access Control Lists (ACLs) v1.0, October 2009 11-39 NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 11-43 b. Click Unit 1. A flag appears in the ACL ID field. • In the Sequence Number field, enter 2. Click Apply to save the settings. Set up a MAC ACL with Two Rules The example is shown as CLI commands and as a Web interface procedure. c. Configure the...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 200
.... 2. Click Add to the following displays. NETGEAR Managed Switches Software Administration Manual, Release 8.0 Deny all the traffic which has destination MAC 01:80:c2:xx:xx:xx. (Netgear Switch) (Config-mac-access-list)#deny any 01:80:c2:00:00:00 00:00:00:ff:ff:ff Permit all the other traffic. (Netgear Switch) (Config-mac-access-list)#permit any (Netgear Switch) (Config-mac-access-list)#exit Apply the MAC ACL acl_bpdu to the port 1/0/2. (Netgear Switch) (Config)#interface 1/0/2 (Netgear Switch) (Interface 1/0/2)#mac access-group acl_bpdu in Web Interface: Setting up a MAC ACL...
.... 2. Click Add to the following displays. NETGEAR Managed Switches Software Administration Manual, Release 8.0 Deny all the traffic which has destination MAC 01:80:c2:xx:xx:xx. (Netgear Switch) (Config-mac-access-list)#deny any 01:80:c2:00:00:00 00:00:00:ff:ff:ff Permit all the other traffic. (Netgear Switch) (Config-mac-access-list)#permit any (Netgear Switch) (Config-mac-access-list)#exit Apply the MAC ACL acl_bpdu to the port 1/0/2. (Netgear Switch) (Config)#interface 1/0/2 (Netgear Switch) (Interface 1/0/2)#mac access-group acl_bpdu in Web Interface: Setting up a MAC ACL...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 224
... packet arrives at a time - CoS Queue Configuration CoS queue configuration involves port egress queue configuration and drop precedence configuration (per Queue) • WRED parameters - WRED Drop Precedence Configuration (per queue). Port Egress Queue Configuration • Scheduler Type, Strict vs. NETGEAR Managed Switches Software Administration Manual, Release 8.0 • Can only have one of three traffic class queues. IP DiffServ Code Point (DSCP) The system can specify default 802.1p priority...
... packet arrives at a time - CoS Queue Configuration CoS queue configuration involves port egress queue configuration and drop precedence configuration (per Queue) • WRED parameters - WRED Drop Precedence Configuration (per queue). Port Egress Queue Configuration • Scheduler Type, Strict vs. NETGEAR Managed Switches Software Administration Manual, Release 8.0 • Can only have one of three traffic class queues. IP DiffServ Code Point (DSCP) The system can specify default 802.1p priority...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 253
VoIP traffic is inherently timesensitive: for VoIP Configuration One of the most valuable uses of service: how to provide acceptable service, a guaranteed transmission rate is for Router 1 in the Queue ID field d. In the Minimum Bandwidth field, enter 25. e. DiffServ for a network to set up a class for 1/0/5. 1/0/5 now appears in the Interface field at the top. c. This example shows one way to provide...
VoIP traffic is inherently timesensitive: for VoIP Configuration One of the most valuable uses of service: how to provide acceptable service, a guaranteed transmission rate is for Router 1 in the Queue ID field d. In the Minimum Bandwidth field, enter 25. e. DiffServ for a network to set up a class for 1/0/5. 1/0/5 now appears in the Interface field at the top. c. This example shows one way to provide...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 288
...to the static address (Netgear Switch)(Interface 1/0/1)#exit (Netgear Switch)(Config)#exit (Netgear Switch)#show port-security static 1/0/1 Number of static MAC addresses configured: 3 Statically configured MAC Address VLAN ID 00:0E:45:30:15:F3 1 00:13:46:EC:2F:62 1 00:14:6C:E8:81:23 1 Web Interface: Converting the Dynamic Address Learned from 1/0/1 to the Static Address The example is shown as CLI commands and as follows: 1. From the main menu, select Security > Traffic Control >Port Security->Dynamic MAC Address. NETGEAR Managed Switches Software Administration Manual, Release 8.0 Convert...
...to the static address (Netgear Switch)(Interface 1/0/1)#exit (Netgear Switch)(Config)#exit (Netgear Switch)#show port-security static 1/0/1 Number of static MAC addresses configured: 3 Statically configured MAC Address VLAN ID 00:0E:45:30:15:F3 1 00:13:46:EC:2F:62 1 00:14:6C:E8:81:23 1 Web Interface: Converting the Dynamic Address Learned from 1/0/1 to the Static Address The example is shown as CLI commands and as follows: 1. From the main menu, select Security > Traffic Control >Port Security->Dynamic MAC Address. NETGEAR Managed Switches Software Administration Manual, Release 8.0 Convert...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 289
..., select Security > Traffic Control >Port Security->Static MAC address. Security Management v1.0, October 2009 15-5 Under Port List, select 1/0/1 in the Vlan ID field. 4. Click Apply to the following information in the Static MAC Address. • In the Static MAC Address field, enter 00:13:00:01:02:03. • Select 3 in the Interface field. 3. A screen similar to save the settings. NETGEAR Managed Switches Software Administration Manual, Release 8.0 4. Create a Static Address The example is shown as CLI commands and as follows: 1. Click Add...
..., select Security > Traffic Control >Port Security->Static MAC address. Security Management v1.0, October 2009 15-5 Under Port List, select 1/0/1 in the Vlan ID field. 4. Click Apply to the following information in the Static MAC Address. • In the Static MAC Address field, enter 00:13:00:01:02:03. • Select 3 in the Interface field. 3. A screen similar to save the settings. NETGEAR Managed Switches Software Administration Manual, Release 8.0 4. Create a Static Address The example is shown as CLI commands and as follows: 1. Click Add...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 344
... PST • In the Offset Hours field, enter -8 c. NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 16-2 b. The following information in the SNTP Global Configuration. • Next to Pacific Standard Time (PST) which is 8 hours behind GMT/UTC. (Netgear switch)(config)#clock timezone PST -8 Set Named SNTP Server The example is shown as CLI commands and as a Web interface procedure. CLI: Setting Named SNTP Server Netgear provides SNTP servers accessible by default. Click Apply.
... PST • In the Offset Hours field, enter -8 c. NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 16-2 b. The following information in the SNTP Global Configuration. • Next to Pacific Standard Time (PST) which is 8 hours behind GMT/UTC. (Netgear switch)(config)#clock timezone PST -8 Set Named SNTP Server The example is shown as CLI commands and as a Web interface procedure. CLI: Setting Named SNTP Server Netgear provides SNTP servers accessible by default. Click Apply.
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 376
... SNMP. If a stack member is in the stack protocol version among the stack members. You back up and restore the stack configuration in the running a software version that is not the same as configured information. The software versions on an individual switch basis. 19-7 v1.0, October 2009 Managing Switch Stacks Once a save config command. You cannot manage stack members on all global and interface specific settings that switch stack. NETGEAR Managed Switches Software Administration Manual...
... SNMP. If a stack member is in the stack protocol version among the stack members. You back up and restore the stack configuration in the running a software version that is not the same as configured information. The software versions on an individual switch basis. 19-7 v1.0, October 2009 Managing Switch Stacks Once a save config command. You cannot manage stack members on all global and interface specific settings that switch stack. NETGEAR Managed Switches Software Administration Manual...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 378
... is described in rack. 2. NETGEAR Managed Switches Software Administration Manual, Release 8.0 Stacking Recommendations The purpose of this unit to come up first. 4. Install units in Section "Preconfiguration". 19-9 v1.0, October 2009 Managing Switch Stacks Identify the unit to the stack. Fully connect, including the redundant stack link. If unit has the default configuration, it is to the login prompt. Monitor the console port. Install all connector screws...
... is described in rack. 2. NETGEAR Managed Switches Software Administration Manual, Release 8.0 Stacking Recommendations The purpose of this unit to come up first. 4. Install units in Section "Preconfiguration". 19-9 v1.0, October 2009 Managing Switch Stacks Identify the unit to the stack. Fully connect, including the redundant stack link. If unit has the default configuration, it is to the login prompt. Monitor the console port. Install all connector screws...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 560
...-8 14-2 external multicast router 14-4 multicast router using VLAN 14-6 show mac-address-table 14-3 show mac-address-table igmpsnooping 14-4 IGMPv3 14-1 in-band connectivity 1-2 BootP 1-1 DHCP 1-1 EIA-232 1-1 interpreting log files 18-1 IP ACLs 11-2, 11-3 IP routing ARP 9-1 port routing 5-1 RIP 7-1 VLAN routing OSPF configuration 8-35 VLAN routing RIP configuration 7-8 IP source guard 15-50 IPTV 14-7 IPv6 network interface 27-4 routing interface 27-1 routing VLAN 27-6 IPv6 interface configuration 27-1 L LAGs 4-1 adding ports 4-3 creating 4-2 enabling 4-5 logging auto install 2-6 M MAC ACLs 11...
...-8 14-2 external multicast router 14-4 multicast router using VLAN 14-6 show mac-address-table 14-3 show mac-address-table igmpsnooping 14-4 IGMPv3 14-1 in-band connectivity 1-2 BootP 1-1 DHCP 1-1 EIA-232 1-1 interpreting log files 18-1 IP ACLs 11-2, 11-3 IP routing ARP 9-1 port routing 5-1 RIP 7-1 VLAN routing OSPF configuration 8-35 VLAN routing RIP configuration 7-8 IP source guard 15-50 IPTV 14-7 IPv6 network interface 27-4 routing interface 27-1 routing VLAN 27-6 IPv6 interface configuration 27-1 L LAGs 4-1 adding ports 4-3 creating 4-2 enabling 4-5 logging auto install 2-6 M MAC ACLs 11...
7000 Series Managed Switch Administration Guide for Software Version 8.0
Page 561
... of switches 19-1 initial configuration 1-4 IP address 1-11 IP address assignment with auto install 2-1 name 1-12 saving the configuration 1-13 software installation 1-5 switch priority 19-5 switch stack cabling 19-3 configuration files 19-7 configuration scenarios 19-8 management connectivity 19-7 master (re-)election 19-4 member numbers 19-5 member priority values 19-5 membership 19-2 offline configuration 19-6 software compatibility 19-7 stacking recommendations 19-9 upgrading firmware 19-15 syslog 18-1 T time, set the time zone (CLI only) 16-5 traceroute 17-1 traffic...
... of switches 19-1 initial configuration 1-4 IP address 1-11 IP address assignment with auto install 2-1 name 1-12 saving the configuration 1-13 software installation 1-5 switch priority 19-5 switch stack cabling 19-3 configuration files 19-7 configuration scenarios 19-8 management connectivity 19-7 master (re-)election 19-4 member numbers 19-5 member priority values 19-5 membership 19-2 offline configuration 19-6 software compatibility 19-7 stacking recommendations 19-9 upgrading firmware 19-15 syslog 18-1 T time, set the time zone (CLI only) 16-5 traceroute 17-1 traffic...