Asante IntraCore 36000 Series User Manual

Browse online or download User Manual for Network switches Asante IntraCore 36000 Series. Asante IntraCore 36000 Series User`s manual

  • Download
  • Add to my manuals
  • Print
  • Page
    / 385
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews

Summary of Contents

Page 1 - 36000 Series

IntraCore® 36000 Series Managed Gigabit Ethernet Switches User’s Manual

Page 2

10 Asanté IntraCore 36000 Series 16.113 mst vlan ...

Page 3 - Table of Contents

100 Asanté IntraCore 36000 Series Acceptable frame type: All frames Native VLAN: 1 Priority for untagged traffic: 0 Gvrp status: Disabled Allowe

Page 4

User’s Manual 101 Console(config)#interface ethernet 1/10 Console(config-if)#port monitor ethernet 1/13 Console(config-if)# 7.7 Configuring Rate L

Page 5 - User’s Manual 5

102 Asanté IntraCore 36000 Series problems with the switch (such as a faulty port or unusually heavy loading). RMON statistics provide access to a br

Page 6

User’s Manual 103 errors. Etherlike Statistics Alignment Errors The number of alignment errors (missynchronized data packets). Late Collisions T

Page 7 - User’s Manual 7

104 Asanté IntraCore 36000 Series Broadcast Frames The total number of good frames received that were directed to the broadcast address. Note that t

Page 8

User’s Manual 105 CLI This example shows statistics for port 13. Console#show interfaces counters ethernet 1/13 Ethernet 1/13 Iftable stats: Oc

Page 9 - User’s Manual 9

106 Asanté IntraCore 36000 Series Chapter 8: Configuring Address Table Settings Switches store the addresses for all known devices. This information

Page 10

User’s Manual 107 8.2 Displaying the Dynamic Address Table The Dynamic Address Table contains the MAC addresses learned by monitoring the source ad

Page 11 - User’s Manual 11

108 Asanté IntraCore 36000 Series --------- ----------------- ---- ----------------- Eth 1/ 1 00-E0-29-94-34-DE 1 Permanent Eth 1/ 1 00-20-9C

Page 12

User’s Manual 109 Chapter 9: Configuring Spanning Tree The Spanning Tree Algorithm (STA) can be used to detect and disable network loops, and to pr

Page 13 - User’s Manual 13

User’s Manual 11 16.142 show access-list ip mask-precedence...

Page 14

110 Asanté IntraCore 36000 Series messages at regular intervals. Any port that ages out STA information (provided in the last configuration message)

Page 15 - User’s Manual 15

User’s Manual 111 Root Hold Time – The interval (in seconds) during which no more than two bridge configuration protocol data units shall be transm

Page 16 - Chapter 1: Introduction

112 Asanté IntraCore 36000 Series Chapter 10: Configuring VLAN In large networks, routers are used to isolate broadcast traffic for each subnet into

Page 17 - User’s Manual 17

User’s Manual 113 VLANs configured on the switch. Packets are forwarded only between ports that are designated for the same VLAN. Untagged VLANs ca

Page 18

114 Asanté IntraCore 36000 Series CLI This example enables GVRP for the switch. Console(config)#bridge-ext gvrp Console(config)# 10.1.3 Displaying

Page 19 - 1.2 System Defaults

User’s Manual 115 Command Attributes (Web) VLAN ID – ID of configured VLAN (1-4094). Up Time at Creation – Time this VLAN was created (For example,

Page 20 - 300 seconds

116 Asanté IntraCore 36000 Series Status – Shows if this VLAN is enabled or disabled. • Active: VLAN is operational. • Suspend: VLAN is suspended;

Page 21 - User’s Manual 21

User’s Manual 117 Configuring Switch Using the Web or CLI Web Click VLAN – 802.1Q VLAN, Static List. To create a new VLAN, enter the VLAN ID and V

Page 22 - 2.1 Connecting to the Switch

118 Asanté IntraCore 36000 Series Name – Name of the VLAN (1 to 32 characters). Status – Enables or disables the specified VLAN. • Enable: VLAN is

Page 23 - 2.2 Connections

User’s Manual 119 Console(config)#interface ethernet 1/2 Console(config-if)#switchport allowed vlan add 2 untagged Console(config-if)#exit Console(

Page 24 - 2.3 Setting a Password

12 Asanté IntraCore 36000 Series 16.171 show mac-address-table aging-time ...

Page 25 - 2.4 Setting an IP Address

120 Asanté IntraCore 36000 Series Usage Guidelines GVRP – GARP VLAN Registration Protocol defines a way for switches to exchange VLAN information to

Page 26 - 2.4.1 Manual Configuration

User’s Manual 121 to the port’s default VLAN (For example, associated with the PVID) are also transmitted as tagged frames. • Hybrid – Specifies a

Page 27 - 2.4.2 Dynamic Configuration

122 Asanté IntraCore 36000 Series CLI This example enables private VLANs. Console(config)#pvlan Console(config)# 10.2.2 Configuring Uplink and Dow

Page 28 - 2.5.1 Community Strings

User’s Manual 123 1. Configure VLAN groups for the protocols you want to use (section 10.1.5). You should configure a separate VLAN for each major

Page 29 - 2.7 Managing System Files

124 Asanté IntraCore 36000 Series Usage Guidelines When creating a protocol-based VLAN, only assign interfaces using this configuration screen. If yo

Page 30 - 2.8 Managing Firmware

User’s Manual 125 Chapter 11: Configuring Packet Priority Class of Service (CoS) allows you to specify which data packets have greater precedence w

Page 31

126 Asanté IntraCore 36000 Series Console#show interfaces switchport ethernet 1/5 Information of Eth 1/3 Broadcast threshold: Enabled, 500 packets/

Page 32 - 2.9.2 Resetting the System

User’s Manual 127 Command Attributes Priority – CoS value. (Range: 0-7, where 7 is the highest priority) Traffic Class (CLI show queue)– Output que

Page 33 - 2.10 Basic Management

128 Asanté IntraCore 36000 Series Command Attributes WRR - Weighted Round-Robin shares bandwidth at the egress ports by using scheduling weights 1, 2

Page 34

User’s Manual 129 CLI The following example shows how to assign WRR weights to each of the priority queues. Console(config)#interface ethernet 1/1

Page 35

User’s Manual 13 16.200 shutdown ...

Page 36

130 Asanté IntraCore 36000 Series 11.5 Selecting IP Precedence/DSCP Priority The switch allows you to choose between using IP Precedence or DSCP prio

Page 37 - User’s Manual 37

User’s Manual 131 Command Attributes IP Precedence Priority Table – Shows the IP Precedence to CoS map. Class of Service Value – Maps a CoS value t

Page 38

132 Asanté IntraCore 36000 Series 11.5.2 Mapping DSCP Priority The DSCP is six bits wide, allowing coding for up to 64 different forwarding behaviors

Page 39 - User’s Manual 39

User’s Manual 133 CLI The following example globally enables DSCP Priority service on the switch, maps DSCP value 0 to CoS value 1 (on port 1), and

Page 40

134 Asanté IntraCore 36000 Series Web Click Priority–IP Port Priority. Enter the IP port number for a network application in the IP Port Number box

Page 41 - User’s Manual 41

User’s Manual 135 11.6.1 Guidelines You must configure an ACL mask before you can map CoS values to the rule. Command Attributes Port – Port identi

Page 42

136 Asanté IntraCore 36000 Series The IP frame header also includes priority bits in the Type of Service (ToS) octet. The Type of Service octet may c

Page 43 - User’s Manual 43

User’s Manual 137 Console# The purpose of IP multicast filtering is to optimize a switched network’s performance, so multicast packets will only

Page 44

138 Asanté IntraCore 36000 Series Chapter 12: Layer 2 IGMP (Snooping and Query) IGMP Snooping and Query – If multicast routing is not supported on ot

Page 45 - 3.2.1 Attributes

User’s Manual 139 Act as IGMP Querier — When enabled, the switch can serve as the Querier, which is responsible for asking hosts if they want to re

Page 46

14 Asanté IntraCore 36000 Series 16.229 speed-duplex ...

Page 47 - 3.3.1 Attributes

140 Asanté IntraCore 36000 Series Query interval : 100 sec Query max response time : 20 sec Router port expire time : 300 sec IGMP snoop

Page 48

User’s Manual 141 VLAN ID – Selects the VLAN to propagate all multicast traffic coming from the attached multicast router. Port or Trunk – Specifie

Page 49 - User’s Manual 49

142 Asanté IntraCore 36000 Series CLI This example displays all the known multicast services supported on VLAN 1, along with the ports propagating t

Page 50

User’s Manual 143 CLI This example assigns a multicast address to VLAN 1, and then displays all the known multicast services supported on VLAN 1.

Page 51

144 Asanté IntraCore 36000 Series Chapter 13: Configuring Domain Name Service The Domain Naming System (DNS) service on this switch allows host names

Page 52

User’s Manual 145 CLI This example sets a default domain name and a domain list. If a domain list is specified, the default domain name is not use

Page 53 - Chapter 4: Configuring SNTP

146 Asanté IntraCore 36000 Series Field Attributes Host Name – Name of a host device that is mapped to one or more IP addresses. (Range: 1-64 charact

Page 54 - 4.2.1 Attributes

User’s Manual 147 13.3 Displaying the DNS Cache You can display entries in the DNS cache that have been learned via the designated name servers. Fi

Page 55 - 5.1.2 Attributes

148 Asanté IntraCore 36000 Series Chapter 14: Using the Command Line Interface The command set is divided into Exec and Configuration classes. Exec c

Page 56 - 5.2.1 Attributes

User’s Manual 149 14.2 Configuration Commands Configuration commands are privileged level commands used to modify switch settings. These commands o

Page 57 - User’s Manual 57

User’s Manual 15 Appendix D: Troubleshooting and Pinouts 380 D.1 Troubleshooting Chart...

Page 58 - 6.2.4 TACACS Settings

150 Asanté IntraCore 36000 Series access-list mac mask-precedence Console(config-mac-mask-acl) For example, you can use the following commands to e

Page 59 - 6.3 Configuring HTTPS

User’s Manual 151 clears the table, or sets the aging time Spanning Tree Configures Spanning Tree settings for the switch VLANs Configures VLA

Page 60

152 Asanté IntraCore 36000 Series Chapter 15: Configuration Guide This chapter provides information about each of the features and an overview of the

Page 61 - 6.4.1 Usage Guidelines

User’s Manual 153 disable Returns to normal mode from privileged mode PE configure Activates global configuration mode PE show history S

Page 62

154 Asanté IntraCore 36000 Series Secure Shell Provides secure replacement for Telnet Event Logging Controls logging of error messages SMTP Alerts

Page 63

User’s Manual 155 15.3.4 Web Server Commands The following table lists the web server commands and describes the functions and command modes of eac

Page 64

156 Asanté IntraCore 36000 Series ip ssh crypto zeroize Clear the host key from RAM PE ip ssh save host-key Saves the host key from RAM to flash

Page 65 - User’s Manual 65

User’s Manual 157 clients that have a private key corresponding to the public keys stored on the switch can gain access. The following exchanges ta

Page 66 - 6.5.1 Guidelines

158 Asanté IntraCore 36000 Series logging sendmail destination-email Email recipients of alert messages GC logging sendmail Enables SMTP event h

Page 67 - User’s Manual 67

User’s Manual 159 jumbo frame Enables support for jumbo frames GC 15.4 Authentication Commands You can configure this switch to authenticate use

Page 68

16 Asanté IntraCore 36000 Series Chapter 1: Introduction This switch provides a broad range of features for Layer 2 switching. It includes a manageme

Page 69 - User’s Manual 69

160 Asanté IntraCore 36000 Series show radius-server Shows the current RADIUS settings PE 15.4.3 TACACS+ Client Terminal Access Controller Access C

Page 70

User’s Manual 161 dot1x operation-mode Allows single or multiple hosts on an dot1x port IC dot1x re-authenticate Forces re-authentication on spe

Page 71

162 Asanté IntraCore 36000 Series • You must configure a mask for an ACL rule before you can bind it to a port or set the queue or frame priorities

Page 72

User’s Manual 163 permit, deny Filters packets meeting the specified criteria, including source and destination IP address, TCP/UDP port number, p

Page 73 - User’s Manual 73

164 Asanté IntraCore 36000 Series map access-list mac Sets the CoS value and corresponding output queue for packets matching an ACL rule IC show map

Page 74 - 6.7.1 Guidelines

User’s Manual 165 15.7.1 DNS Commands These commands are used to configure Domain Naming System (DNS) services. You can manually configure entries

Page 75

166 Asanté IntraCore 36000 Series shutdown Disables an interface IC switchport broadcast packet-rate Configures the broadcast storm control thresh

Page 76

User’s Manual 167 Command Function Mode interface port-channel Enters interface configuration mode and Configures a trunk GC Channel-group Ad

Page 77 - 6.7.5 Configuring a MAC ACL

168 Asanté IntraCore 36000 Series • If the port channel admin key is set, then the port admin key must be set to the same value for a port to be all

Page 78

User’s Manual 169 mst vlan Adds VLANs to a spanning tree instance MST mst priority Configures the priority of a spanning tree instance MST Name

Page 79 - 6.7.6 Configuring ACL Masks

User’s Manual 17 Authentication – Permit management access through the console port, Telnet or web browser. User names and passwords are configured

Page 80

170 Asanté IntraCore 36000 Series Configuring Protocol VLANs Configures protocol-based VLANs based on frame type and protocol 15.14.1 Editing VLANs T

Page 81

User’s Manual 171 Command Function Mode Pvlan Enables and configured private VLANS GC show pvlan Displays the configured private VLANS PE 1

Page 82

172 Asanté IntraCore 36000 Series show bridge-ext Shows the global bridge extension configuration PE switchport gvrp Enables GVRP for an interf

Page 83 - 6.8 Configuring IP Filters

User’s Manual 173 15.16.2 Priority Commands (Layer 3 and 4) The following table lists the layer 3 and 4 priority commands. Command Function

Page 84

174 Asanté IntraCore 36000 Series 15.17.1 IGMP Snooping Commands The following table lists the IGMP snooping commands. Command Function Mode ip igm

Page 85 - Chapter 7: Configuring Ports

User’s Manual 175 15.18 IP Interface Commands There are no IP addresses assigned to this switch by default. You must manually configure a new addre

Page 86 - Field Attributes (CLI)

176 Asanté IntraCore 36000 Series Chapter 16: Command Reference The section contains an alphabetical listing of all the commands used to configure, m

Page 87

User’s Manual 177 ip access-group show ip access-list 16.2 access-list ip mask-precedence This command changes to the IP Mask mode used to configu

Page 88

178 Asanté IntraCore 36000 Series Syntax Description [no] access-list mac acl_name acl_name Name of the ACL. (Maximum length: 16 characters) Default

Page 89 - 7.3 Configuring Trunk Groups

User’s Manual 179 Default Default system mask: Filter inbound packets according to specified MAC ACLs. Command Mode Global Configuration Usage Guid

Page 90

18 Asanté IntraCore 36000 Series between any two stations on the network, preventing the creation of loops. If the path should fail, an alternate pat

Page 91 - User’s Manual 91

180 Asanté IntraCore 36000 Series Console(config)# 16.6 authentication enable This command defines the authentication method and precedence to use wh

Page 92

User’s Manual 181 16.7 authentication login This command defines the login authentication method and precedence. Use the no form to restore the def

Page 93 - User’s Manual 93

182 Asanté IntraCore 36000 Series Syntax Description boot system {boot-rom| config | opcode}: filename The type of file or image to set as a default

Page 94

User’s Manual 183 Command Mode Global Configuration Usage Guidelines GVRP defines a way for switches to exchange VLAN information in order to reg

Page 95 - User’s Manual 95

184 Asanté IntraCore 36000 Series 16.11 capabilities This command advertises the port capabilities of a given interface during autonegotiation. Use t

Page 96

User’s Manual 185 Related Commands negotiation speed-duplex flowcontrol 16.12 channel-group This command adds a port to a trunk. Use the no fo

Page 97 - User’s Manual 97

186 Asanté IntraCore 36000 Series Interface ethernet unit/port unit – This is device 1. port - Port number. Port-channel Channel-id (Range: 1-6)

Page 98

User’s Manual 187 16.15 clear host This command deletes entries from the DNS table. Syntax Description clear host {name | *} Name Name of the h

Page 99 - 7.5.1 Guidelines

188 Asanté IntraCore 36000 Series Console#clear logging Console# Related Commands show logging 16.17 clear mac-address-table dynamic This command rem

Page 100 - 7.6.1 Guidelines

User’s Manual 189 Usage Guidelines This command sets the local time zone relative to the Coordinated Universal Time (UTC, formerly Greenwich Mean

Page 101 - 7.8 Showing Port Statistics

User’s Manual 19 1.2 System Defaults The system defaults are in the configuration file “Factory_Default_Config.cfg.” Set this files as the startup

Page 102

190 Asanté IntraCore 36000 Series 16.20 configure This command activates Global Configuration mode. You must enter this mode to modify any settings o

Page 103 - User’s Manual 103

User’s Manual 191 public-key Keyword that allows you to copy a SSH key from a TFTP server. Default None Command Mode Privileged Exec Usage Guide

Page 104

192 Asanté IntraCore 36000 Series \Write to FLASH finish. Success. Console# The following example shows how to download a configuration file: Con

Page 105 - User’s Manual 105

User’s Manual 193 Syntax Description databits {7 | 8} no databits 7 Seven data bits per character. 8 Eight data bits per character. Default

Page 106 - 8.1 Setting Static Addresses

194 Asanté IntraCore 36000 Series Usage Guidelines If the file type is used for system startup, then this file cannot be deleted. “Factory_Default_

Page 107 - Command Attributes

User’s Manual 195 Syntax Description description string no description String Comment or a description to help you remember what is attached to

Page 108 - 8.3 Changing the Aging Time

196 Asanté IntraCore 36000 Series Usage Guidelines If you enter the dir command without any parameters, the system displays all files. File informa

Page 109 - Field Attributes

User’s Manual 197 Console#disable Console> Related Commands enable 16.28 disconnect Use this command to terminate an SSH, Telnet, or console c

Page 110

198 Asanté IntraCore 36000 Series Example Console(config)#dot1x default Console(config)# 16.30 dot1x max-req This command sets the maximum number of

Page 111 - User’s Manual 111

User’s Manual 199 Default Single-host Command Mode Interface Configuration Example The following example shows setting the system to allow a maximu

Page 112 - Chapter 10: Configuring VLAN

2 Asanté IntraCore 36000 Series IntraCore 36000 Series Managed Gigabit Ethernet Switches User’s Manual Revision 1.0 Asanté Technologies, Inc. 821

Page 113 - User’s Manual 113

20 Asanté IntraCore 36000 Series Port Configuration Admin Status Auto-negotiation Flow Control Port Capability Enabled Enabled Disabled 1000BASE-T

Page 114

200 Asanté IntraCore 36000 Series Syntax Description dot1x re-authenticate [interface] The interface argument includes Ethernet as follows: unit

Page 115 - Command Attributes (Web)

User’s Manual 201 Default 60 seconds Command Mode Global Configuration Example Console(config)#dot1x timeout quiet-period 350 Console(config)# 16.3

Page 116 - 10.1.5 Creating VLANs

202 Asanté IntraCore 36000 Series Default 30 seconds Command Mode Global Configuration Example Console(config)#dot1x timeout tx-period 300 Console(co

Page 117

User’s Manual 203 16.39 enable password After initially logging onto the system, you should set the Privileged Exec password. Remember to record it

Page 118

204 Asanté IntraCore 36000 Series Command Mode Global Configuration, Interface Configuration, Line Configuration, VLAN Database Configuration, and M

Page 119

User’s Manual 205 16.42 exit This command returns to the previous configuration mode or exit the configuration program. Default None Command Mode

Page 120 - Usage Guidelines

206 Asanté IntraCore 36000 Series Avoid using flow control on a port connected to a hub unless it is actually required to solve a problem. Otherwise,

Page 121 - User’s Manual 121

User’s Manual 207 Usage Guidelines Group Address Registration Protocol is used by GVRP and GMRP to register or deregister client attributes for cli

Page 122

208 Asanté IntraCore 36000 Series Console(config)# 16.46 interface This command configures an interface type and enter interface configuration mode.

Page 123 - User’s Manual 123

User’s Manual 209 Command Mode Global Configuration Example The following example shows how to set the interface configuration mode to VLAN 1, an

Page 124

User’s Manual 21 Traffic Prioritization Ingress Port Priority Weighted Round Robin IP Precedence Priority IP DSCP Priority IP Port Priority 0 Que

Page 125

210 Asanté IntraCore 36000 Series Console(config-if)# Related Commands show ip access-list 16.49 ip address This command sets the IP address for th

Page 126

User’s Manual 211 Console(config)#interface vlan 1 Console(config-if)#ip address 192.168.1.5 255.255.255.0 Console(config-if)# Related Commands ip

Page 127

212 Asanté IntraCore 36000 Series Command Mode Privileged Exec Usage Guidelines This command issues a BOOTP or DHCP client request for any IP inter

Page 128

User’s Manual 213 Usage Guidelines Domain names are added to the end of the list one at a time. When an incomplete host name is received by the D

Page 129 - User’s Manual 129

214 Asanté IntraCore 36000 Series If all name servers are deleted, DNS is automatically disabled. Example This example enables DNS and then displays

Page 130 - 11.5.1 Mapping IP Precedence

User’s Manual 215 Console(config)#end Console#show dns Domain Lookup Status: DNS disabled Default Domain Name: sample.com Domain Name List:

Page 131

216 Asanté IntraCore 36000 Series Console(config)#end Console#show hosts Hostname rd5 Inet address 192.168.1.55 10.1.0.55 Alias Console# Related C

Page 132 - 11.5.2 Mapping DSCP Priority

User’s Manual 217 Syntax Description ip http secure-port port_number no ip http secure-port port_number The UDP port used for HTTPS/SSL. (Range:

Page 133

218 Asanté IntraCore 36000 Series Usage Guidelines Both HTTP and HTTPS service can be enabled independently on the switch. You cannot configure the

Page 134

User’s Manual 219 Default Enabled Command Mode Global Configuration Example The following example shows setting the device to be monitored from t

Page 135 - 11.7.1 Guidelines

22 Asanté IntraCore 36000 Series Chapter 2: Initial Configuration 2.1 Connecting to the Switch The switch includes a built-in network management agen

Page 136

220 Asanté IntraCore 36000 Series Command Mode Global Configuration Usage Guidelines If enabled, the switch serves as source that queries other ho

Page 137 - User’s Manual 137

User’s Manual 221 16.63 ip igmp snooping query-interval This command configures the query interval. Use the no form to restore the default. Syntax

Page 138

222 Asanté IntraCore 36000 Series This command defines the time after a query, during which a response is expected from a multicast client. If a quer

Page 139 - User’s Manual 139

User’s Manual 223 16.66 ip igmp snooping version This command configures the IGMP snooping version. Use the no form to restore the default. Syntax

Page 140

224 Asanté IntraCore 36000 Series port-channel channel-id (Range: 1-6) Default No static multicast router ports are configured. Command Mode Glob

Page 141

User’s Manual 225 Example The following shows how to statically configure a multicast group on a port: Console(config)#ip igmp snooping vlan 1 sta

Page 142 - Command Attribute

226 Asanté IntraCore 36000 Series Related Commands ip domain-name ip domain-lookup show dns 16.70 ip ssh authentication-retries Use this command t

Page 143 - User’s Manual 143

User’s Manual 227 Default Generates both Command Mode Privileged Exec Usage Guidelines This command stores the host key pair in memory (For exam

Page 144

228 Asanté IntraCore 36000 Series Usage Guidelines This command clears the host key from volatile memory (RAM). Use the no ip ssh save host-key comm

Page 145 - 13.2.1 Guidelines

User’s Manual 229 no ip ssh server Default Disabled Command Mode Global Configuration Usage Guidelines The SSH server supports up to four client

Page 146

User’s Manual 23 • Set the speed/duplex mode for any port • Configure the bandwidth of any port by limiting input or output rates • Control por

Page 147

230 Asanté IntraCore 36000 Series Usage Guidelines The server key is a private key that is never shared outside the switch. The host key is shared

Page 148 - 14.1 Exec Commands

User’s Manual 231 16.77 jumbo frame This command enables support for jumbo frames. Use the no form to disable it. Syntax Description [no] jumbo fr

Page 149 - 14.2 Configuration Commands

232 Asanté IntraCore 36000 Series Usage Guidelines The ports on both ends of an LACP trunk must be configured for full duplex, either by forced mode

Page 150 - 14.3 Command Groups

User’s Manual 233 Syntax Description lacp {actor | partner} admin-key key [no] lacp {actor | partner} admin-key actor The local side an aggrega

Page 151 - User’s Manual 151

234 Asanté IntraCore 36000 Series Default 0 Command Mode Interface Configuration (Port Channel) Usage Guidelines Ports are only allowed to join th

Page 152 - 15.2 General Commands

User’s Manual 235 If an active port link goes down, the backup port with the highest priority replaces the downed link. If two or more ports have t

Page 153 - 15.2.1 Flash/File Commands

236 Asanté IntraCore 36000 Series 16.83 line This command identifies a specific line for configuration, and to process subsequent line configuration

Page 154 - 15.3.3 IP Filter Commands

User’s Manual 237 Default 23 Command Mode Global Configuration Usage Guidelines The command specifies the facility type tag sent in syslog messa

Page 155 - 15.3.5 Secure Shell Commands

238 Asanté IntraCore 36000 Series critical 2 Critical conditions (such as, memory allocation, or free memory error - resource exhausted) Alerts 1

Page 156

User’s Manual 239 The maximum number of host IP addresses allowed is five. Example Console(config)#logging host 10.1.0.3 Console(config)# 16.87 lo

Page 157 - 15.3.7 SMTP Alert Commands

24 Asanté IntraCore 36000 Series 4. When using HyperTerminal, select Terminal keys, not Windows keys. When using HyperTerminal with Microsoft® Windo

Page 158 - 15.3.10 Frame Size Commands

240 Asanté IntraCore 36000 Series Command Mode Global Configuration Example Console(config)#logging sendmail Console(config)# 16.89 logging sendmail

Page 159 - 15.4.2 RADIUS Client

User’s Manual 241 Command Mode Global Configuration Usage Guidelines You can specify up to three SMTP servers for event handing. You must enter a

Page 160 - 15.4.3 TACACS+ Client

242 Asanté IntraCore 36000 Series 16.92 logging sendmail source-email This command sets the email address used for the “From” field in alert messages

Page 161 - User’s Manual 161

User’s Manual 243 Example Console(config)#logging trap 4 Console(config)# 16.94 login This command enables password checking at login. Use the no

Page 162 - 15.5.1 IP ACLs

244 Asanté IntraCore 36000 Series password 16.95 mac access-group This command binds a port to a MAC ACL. Use the no form to remove the port. Syntax

Page 163 - 15.5.2 MAC ACLs

User’s Manual 245 Default 300 seconds Command Mode Global Configuration Usage Guidelines Use this command to dynamically delete learned forwardi

Page 164 - 15.7 DHCP Commands

246 Asanté IntraCore 36000 Series Command Mode Global Configuration Usage Guidelines You can define the static address for a host device to a speci

Page 165 - 15.8 Interface Commands

User’s Manual 247 Usage Guidelines If anyone tries to access a management interface on the switch from an invalid address, the switch rejects the

Page 166 - 15.10 Rate Limit Commands

248 Asanté IntraCore 36000 Series A packet matching a rule within the specified ACL is mapped to one of the output queues as shown in the following t

Page 167 - User’s Manual 167

User’s Manual 249 source-port Check the protocol source port field. destination-port Check the protocol destination port field. port-bitmask Pro

Page 168 - 15.13 Spanning Tree Commands

User’s Manual 25 2. Type configure and press Enter. 3. Type username guest password 0 [password] where password is your new password. Press Enter.

Page 169 - 15.14 VLAN Commands

250 Asanté IntraCore 36000 Series This shows how to create a standard ACL with an ingress mask to deny access to the IP host 171.69.198.102, and perm

Page 170 - 15.14.1 Editing VLANs

User’s Manual 251 Switch(config-ext-acl)#permit any any Switch(config-ext-acl)#deny tcp any any control-flag 2 2 Switch(config-ext-acl)#end Consol

Page 171 - User’s Manual 171

252 Asanté IntraCore 36000 Series A packet matching a rule within the specified ACL then maps to one of the output queues as shown below. Priority

Page 172 - 15.16 Priority Commands

User’s Manual 253 Syntax Description map ip dscp dscp-value cos cos-value no map ip dscp dscp-value DSCP value. (Range: 0-63) cos-value Class-o

Page 173 - User’s Manual 173

254 Asanté IntraCore 36000 Series 16.104 map ip port (Global Configuration) This command enables IP port mapping (For example, class of service mappi

Page 174

User’s Manual 255 This command sets the IP port priority for all interfaces. Example The following example shows how to map HTTP traffic to CoS va

Page 175 - 15.18 IP Interface Commands

256 Asanté IntraCore 36000 Series cos-value Class-of-Service value (Range: 0-7) Default The list below shows the default priority mapping.

Page 176 - 16.1 access-list ip

User’s Manual 257 source-bitmask Source address of rule must match this bitmask. destination-bitmask Destination address of rule must match this b

Page 177 - 16.3 access-list mac

258 Asanté IntraCore 36000 Series Console# This example creates an Egress MAC ACL. Console(config)#access-list mac M5 Console(config-mac-acl)#deny t

Page 178

User’s Manual 259 Command Mode Interface Configuration (Ethernet) Usage Guidelines You must configure an ACL mask before you can change frame prior

Page 179 - User’s Manual 179

26 Asanté IntraCore 36000 Series 2.4.1 Manual Configuration You can manually assign an IP address to the switch. You may also need to specify a defau

Page 180 - 16.6 authentication enable

260 Asanté IntraCore 36000 Series Usage Guidelines You must configure an ACL mask before you can change frame priorities based on an ACL rule. Exampl

Page 181 - 16.8 boot system

User’s Manual 261 Syntax Description mst instance_id priority priority no mst instance_id priority instance_id Instance identifier of the spannin

Page 182 - 16.9 bridge-ext gvrp

262 Asanté IntraCore 36000 Series Command Mode MST Configuration Usage Guidelines Use this command to group VLANs into spanning tree instances. MST

Page 183 - 16.10 calendar set

User’s Manual 263 Related Commands revision 16.115 negotiation This command enables auto-negotiation for a specified interface. Use the no form to

Page 184 - 16.11 capabilities

264 Asanté IntraCore 36000 Series none No parity even Even parity odd Odd parity Default no parity Command Mode Line Configuration Usage Guid

Page 185 - 16.13 clear counters

User’s Manual 265 set the number of times a user can enter an incorrect password before the system terminates the line connection and returns the t

Page 186 - 16.14 clear dns cache

266 Asanté IntraCore 36000 Series Related Commands silent-time 16.119 permit, deny (Extended ACL) This command adds a rule to an Extended IP ACL. T

Page 187 - 16.16 clear logging

User’s Manual 267 port-bitmask Decimal number representing the port bits to match. (Range: 0-65535) control-flags Decimal number (representing a

Page 188 - 16.18 clock timezone

268 Asanté IntraCore 36000 Series Console(config-ext-acl)#permit 10.7.1.1 255.255.255.0 any Console(config-ext-acl)# This allows TCP packets from cl

Page 189 - 16.19 combo-forced-mode

User’s Manual 269 host A specific MAC address. source Source MAC address. destination Destination MAC address range with bitmask. address-bitmas

Page 190 - 16.21 copy

User’s Manual 27 2.4.2 Dynamic Configuration You can set the switch for dynamic configuration when your network provides DHCP/BOOTP services. If yo

Page 191 - Example

270 Asanté IntraCore 36000 Series 16.121 permit, deny (Standard ACL) This command adds a rule to a Standard IP ACL. The rule sets a filter condition

Page 192 - 16.22 databits

User’s Manual 271 host IP address or IP alias of the host. size Number of bytes in a packet. (Range: 32-512, default: 32) The actual packet size

Page 193 - 16.23 delete

272 Asanté IntraCore 36000 Series 16.123 port security This command enables or configures port security. Use the no form without any keywords to disa

Page 194 - 16.25 description

User’s Manual 273 • Cannot be a multi-VLAN port. • Cannot be connected to a network interconnection device. • Cannot be a trunk port. If a po

Page 195 - 16.26 dir

274 Asanté IntraCore 36000 Series 16.125 protocol-vlan protocol-group (Configuring Groups) This command creates a protocol group, or to add specific

Page 196 - 16.27 disable

User’s Manual 275 Default No protocol groups are mapped for any interface. Command Mode Interface Configuration (Ethernet, Port Channel) Usage Gu

Page 197 - 16.29 dot1x default

276 Asanté IntraCore 36000 Series Usage Guidelines A private VLAN provides port-based security and isolation between ports within the VLAN. Data traf

Page 198 - 16.31 dot1x operation-mode

User’s Manual 277 16.129 queue cos-map This command assigns class of service (CoS) values to the priority queues (For example, hardware output queu

Page 199 - 16.33 dot1x re-authenticate

278 Asanté IntraCore 36000 Series Related Commands show queue cos-map 16.130 queue mode This command sets the queue mode to strict priority or Weig

Page 200

User’s Manual 279 Command Mode Normal Exec, Privileged Exec Usage Guidelines The quit and exit commands can both exit the configuration program. E

Page 201 - User’s Manual 201

28 Asanté IntraCore 36000 Series 4. Then save your configuration changes by typing “copy running-config startup-config.” Enter the startup file name

Page 202 - 16.38 enable

280 Asanté IntraCore 36000 Series no radius-server key key_string Encryption key used to authenticate logon access for client. Do not use blank spa

Page 203 - 16.40 end

User’s Manual 281 number_of_retries Number of times the switch will try to authenticate logon access via the RADIUS server. (Range: 1 - 30) Defau

Page 204 - 16.41 exec-timeout

282 Asanté IntraCore 36000 Series no rate-limit {input | output} input Input rate output Output rate rate Maximum value in Mbps. (Range: 1 to 1

Page 205 - 16.43 flowcontrol

User’s Manual 283 Syntax Description revision number number Revision number of the spanning tree. (Range: 0-65535) Default 0 Command Mode MST

Page 206 - 16.44 garp timer

284 Asanté IntraCore 36000 Series Command Mode Privileged Exec Usage Guidelines Once the ACL is bound to an interface (for example, the ACL is active

Page 207 - 16.45 hostname

User’s Manual 285 Related Commands mask (IP ACL) 16.143 show access-list mac mask-precedence This command shows the ingress or egress rule masks

Page 208 - 16.47 interface vlan

286 Asanté IntraCore 36000 Series Console#show bridge-ext Max support vlan numbers: 255 Max support vlan ID: 4094 Extended multicast filtering ser

Page 209 - 16.48 ip access-group

User’s Manual 287 10.1.0.55 Console# 16.147 show dns cache This command displays entries in the DNS cache. Default None Command Mode Privileg

Page 210 - 16.49 ip address

288 Asanté IntraCore 36000 Series Syntax Description show dot1x [statistics] [interface interface] interface ethernet unit/port • unit - This is dev

Page 211 - 16.51 ip dhcp restart

User’s Manual 289 Backend State Machine State Current state (including request, response, success, fail, timeout, idle, initialize). Request Cou

Page 212 - 16.52 ip domain-list

User’s Manual 29 Console(config)#snmp-server community private Console(config)# 2.5.2 Trap Receivers You can also specify SNMP stations that are to

Page 213 - 16.53 ip domain-lookup

290 Asanté IntraCore 36000 Series Supplicant 00-00-e8-49-5e-dc Current Identifier 3 Authenticator State Machine State Authen

Page 214 - 16.54 ip domain-name

User’s Manual 291 16.150 show gvrp configuration This command shows if GVRP is enabled. Syntax Description show gvrp configuration [interface] int

Page 215 - 16.55 ip host

292 Asanté IntraCore 36000 Series Execution command history: 2 config 1 show history Configuration command history: 4 interface vlan 1 3 exit 2

Page 216 - 16.57 ip http secure-port

User’s Manual 293 interface ethernet unit/port (source port) unit - Switch (unit 1). port - port number port-channel channel-id (Range: 1-6) De

Page 217 - 16.58 ip http secure-server

294 Asanté IntraCore 36000 Series 16.154 show interfaces protocol-vlan protocol-group This command shows the mapping from protocol groups to VLANs fo

Page 218 - 16.59 ip http server

User’s Manual 295 port-channel Channel-id (Range: 1-6) vlan Vlan-id (Range: 1-4094) Default Shows the status for all interfaces. Command Mode N

Page 219 - 16.60 ip igmp snooping

296 Asanté IntraCore 36000 Series interface Ethernet unit/port (source port) unit - Switch (unit 1). port - Port number. port-channel channel-id

Page 220

User’s Manual 297 Acceptable frame type Shows if acceptable VLAN frames include all types or tagged frames only. Native VLAN Indicates the defaul

Page 221 - User’s Manual 221

298 Asanté IntraCore 36000 Series Example The following is sample output from the show ip access-list command. Console#show ip access-list standard

Page 222

User’s Manual 299 vlan-id VLAN ID (Range: 1-4094) Default Displays multicast router ports for all configured VLANs. Command Mode Privileged Exec

Page 223 - User’s Manual 223

User’s Manual 3 Table of Contents Table of Contents 3 Chapter 1: Introduction 16 1.1 Description of Software Features...

Page 224

30 Asanté IntraCore 36000 Series Operation Code — System software that is executed after boot-up, also known as run-time code. This code runs the swi

Page 225 - 16.69 ip name-server

300 Asanté IntraCore 36000 Series 16.162 show ip redirects This command shows the default gateway configured for this device. Default None Command M

Page 226

User’s Manual 301 counters Statistics for LACP protocol messages. internal Configuration settings and operational state for local side. neighb

Page 227 - 16.72 ip ssh crypto zeroize

302 Asanté IntraCore 36000 Series Console#show lacp 1 internal Channel group : 1 -------------------------------------------------------------------

Page 228 - 16.74 ip ssh server

User’s Manual 303 Aggregation – The system considers this link to be aggregatable; For example, a potential candidate for aggregation. Long timeout

Page 229 - 16.75 ip ssh server-key size

304 Asanté IntraCore 36000 Series Oper State Operational values of the partner’s state parameters. (See preceding table.) The following is sample o

Page 230 - 16.76 ip ssh timeout

User’s Manual 305 Example The following is sample output from the show line command. Console#show line Console configuration: Password threshol

Page 231 - 16.78 lacp

306 Asanté IntraCore 36000 Series Console# The following table show logging output. Field Description Syslog logging Shows if system logging has bee

Page 232 - Related Command

User’s Manual 307 Command Mode Normal Exec, Privileged Exec Example The following is sample output from the show logging sendmail command . Consol

Page 233 - User’s Manual 233

308 Asanté IntraCore 36000 Series acl_name Name of the ACL. (Maximum length: 16 characters) Command Mode Privileged Exec Example The following is s

Page 234 - 16.81 lacp port-priority

User’s Manual 309 Usage Guidelines The MAC Address Table contains the MAC addresses associated with each interface. Note that the Type field may i

Page 235 - 16.82 lacp system-priority

User’s Manual 31 If you download to a new destination file, then select the file from the drop-down box for the operation code used at startup, and

Page 236 - 16.84 logging facility

310 Asanté IntraCore 36000 Series vlan- id VLAN ID (1 to 4094) user Display only the user configured multicast entries. Igmp- snooping Display

Page 237 - 16.85 logging history

User’s Manual 311 Console#show map access-list ip Eth 1/25 access-list ip david cos 0 Console# Related Commands map access-list ip 16.174 show ma

Page 238 - 16.86 logging host

312 Asanté IntraCore 36000 Series port - Port number. port-channel channel-id (Range: 1-6) Default None Command Mode Privileged Exec Example The f

Page 239 - 16.88 logging sendmail

User’s Manual 313 Command Mode Privileged Exec Example The following is sample output from the show map ip port command. The example shows that HT

Page 240 - 16.90 logging sendmail host

314 Asanté IntraCore 36000 Series Eth 1/ 5 0 0 Eth 1/ 5 1 1 Eth 1/ 5 2 2 Eth 1/ 5 3 3 Eth 1/ 5

Page 241 - 16.91 logging sendmail level

User’s Manual 315 Telnet-Client: Start ip address End ip address ----------------------------------------------- 1. 192.168.1.19

Page 242 - 16.93 logging trap

316 Asanté IntraCore 36000 Series Command Mode Privileged Exec Usage Guidelines This command displays the currently configured source port, destina

Page 243 - 16.94 login

User’s Manual 317 Console# 16.182 show public-key Use this command to show the public key for the specified user or for the host. Syntax Descriptio

Page 244 - 16.95 mac access-group

318 Asanté IntraCore 36000 Series 16.183 show pvlan This command displays the configured private VLAN. Command Mode Privileged Exec Example The foll

Page 245 - User’s Manual 245

User’s Manual 319 16.185 show queue cos-map This command shows the class of service priority map. Syntax Description show queue cos-map [interface

Page 246 - 16.98 management

32 Asanté IntraCore 36000 Series If you download to a new file name, then select the new file from the drop-down box for Startup Configuration File,

Page 247 - 16.99 map access-list ip

320 Asanté IntraCore 36000 Series 16.187 show radius-server This command displays the current settings for the RADIUS server. Default None Command M

Page 248 - 16.100 mask (IP ACL)

User’s Manual 321 • Spanning tree settings • Any configured settings for the console port and Telnet Example The following is sample output from

Page 249 - User’s Manual 249

322 Asanté IntraCore 36000 Series line console ! line vty ! end Console# Related Commands show startup-config 16.189 show snmp This command checks t

Page 250

User’s Manual 323 0 Set-request PDUs 0 SNMP packets output 0 Too big errors 0 No such name errors 0 Bad values errors 0 General

Page 251 - 16.101 map access-list mac

324 Asanté IntraCore 36000 Series zeroes) Default None Command Mode Privileged Exec Usage Guidelines Use the show spanning-tree command with no pa

Page 252

User’s Manual 325 Role : root State : forwarding External path cost : 100000 Internal path cost : 100000 Pr

Page 253 - User’s Manual 253

326 Asanté IntraCore 36000 Series Example The following is sample output from the show ssh command. Console#show ssh Connection Version State

Page 254

User’s Manual 327 3DES Triple DES (Uses three iterations of DES, 112- bit key) Aes Advanced Encryption Standard (160 or 224-bit key) Blowfish Bl

Page 255 - User’s Manual 255

328 Asanté IntraCore 36000 Series building startup-config, please wait... ! phymap 00-00-a3-42-00-80 ! sntp server 0.0.0.0 0.0.0.0 0.0.0.0 ! snmp-s

Page 256 - 16.108 mask (MAC ACL)

User’s Manual 329 16.195 show system This command displays system information. Default None Command Mode Normal Exec, Privileged Exec Usage Guide

Page 257

User’s Manual 33 CLI Use the reload command to restart the switch. Console#reload System will be restarted, continue <y/n>? Note: When rest

Page 258 - 16.109 match access-list ip

330 Asanté IntraCore 36000 Series Command Mode Privileged Exec Example The following is sample output from the show tacacs-server command. Console#

Page 259 - User’s Manual 259

User’s Manual 331 Default None Command Mode Normal Exec, Privileged Exec Usage Guidelines See section 2.10.3 Displaying Switch Hardware/Software

Page 260 - 16.112 mst priority

332 Asanté IntraCore 36000 Series Example This example shows how to display information for VLAN 1: Console#show vlan id 1 VLAN Type Name

Page 261 - 16.113 mst vlan

User’s Manual 333 Default no silent-time. Command Mode Line Configuration Example The following is sample output from the silent-time command. T

Page 262 - 16.114 name

334 Asanté IntraCore 36000 Series Usage Guidelines The first snmp-server community command you enter enables SNMP (SNMPv1). The no snmp-server commu

Page 263 - 16.116 parity

User’s Manual 335 authentication Keyword to issue authentication failure traps. link-up-down Keyword to issue link-up or link-down traps. The li

Page 264 - 16.117 password

336 Asanté IntraCore 36000 Series version Specifies whether to send notifications as SNMP v1 or v2c traps. Default Host Address: None SNMP Versio

Page 265 - 16.118 password-thresh

User’s Manual 337 Default None Command Mode Global Configuration Example The following is sample output from the snmp-server location command .

Page 266

338 Asanté IntraCore 36000 Series Default Disabled Command Mode Global Configuration Usage Guidelines The time acquired from time servers is used

Page 267

User’s Manual 339 seconds Interval between time requests. (Range: 16 - 16384 seconds) Default 16 seconds Command Mode Global Configuration Usag

Page 268

34 Asanté IntraCore 36000 Series Field Attributes System Name: Name assigned to the switch system. Object ID: MIB II object ID for switch’s network m

Page 269 - Related Commands

340 Asanté IntraCore 36000 Series Console(config)#sntp server 10.1.0.19 Console# Related Commands sntp client sntp poll show sntp 16.211 spanning-

Page 270 - 16.122 ping

User’s Manual 341 cost The path cost for the port. (Range: 1-200,000,000)) The recommended range is: • Ethernet: 200,000-20,000,000 • Fast Ethe

Page 271

342 Asanté IntraCore 36000 Series Usage Guidelines You can enable this option if an interface is attached to a LAN segment that is at the end of a b

Page 272 - 16.123 port security

User’s Manual 343 Example The following is sample output from the spanning-tree forward-time command. Console(config)#spanning-tree forward-time 2

Page 273 - 16.124 prompt

344 Asanté IntraCore 36000 Series auto Automatically derived from the duplex mode setting. point-to-point Point-to-point link. shared Shared medium

Page 274

User’s Manual 345 Default Ethernet – half duplex: 2,000,000; full duplex: 1,000,000; trunk: 500,000 Fast Ethernet – half duplex: 200,000; full dup

Page 275 - 16.127 pvlan

346 Asanté IntraCore 36000 Series Command Mode Interface Configuration (Ethernet, Port Channel) Usage Guidelines This command defines the priority

Page 276 - 16.128 queue bandwidth

User’s Manual 347 configuration message) becomes the designated port for the attached LAN. If it is a root port, a new root port is selected from a

Page 277 - 16.129 queue cos-map

348 Asanté IntraCore 36000 Series Multiple Spanning Tree Protocol • To allow multiple spanning trees to operate over the network, you must configure

Page 278 - 16.131 quit

User’s Manual 349 16.222 spanning-tree pathcost method This command configures the path cost method used for Rapid Spanning Tree and Multiple Spann

Page 279 - 16.133 radius-server key

User’s Manual 35 System information System Up time: 0 days, 2 hours, 4 minutes, and 7.13 seconds System Name : R&D 5 System Locat

Page 280 - 16.134 radius-server port

350 Asanté IntraCore 36000 Series Usage Guidelines This command is used to enable/disable the fast spanning-tree mode for the selected port. In this

Page 281 - 16.137 rate-limit

User’s Manual 351 Example The following is sample output from the spanning-tree port-priority command. Console(config)#interface ethernet 1/5 Cons

Page 282 - 16.139 revision

352 Asanté IntraCore 36000 Series Syntax Description [no] spanning-tree spanning-disabled Default Enabled Command Mode Interface Configuration (Et

Page 283 - 16.141 show access-list

User’s Manual 353 16.228 speed This command sets the terminal line’s baud rate. This command sets both the transmit (to terminal) and receive (from

Page 284

354 Asanté IntraCore 36000 Series 10full Forces 10 Mbps full-duplex operation 10half Forces 10 Mbps half-duplex operation Default Auto-negotiatio

Page 285 - 16.144 show bridge-ext

User’s Manual 355 Default 1 stop bit Command Mode Line Configuration Example To specify 2 stop bits, enter this command: Console(config-line)#s

Page 286 - 16.146 show dns

356 Asanté IntraCore 36000 Series Related Commands switchport mode 16.232 switchport allowed vlan This command configures VLAN groups on the selecte

Page 287 - 16.148 show dot1x

User’s Manual 357 Console(config)#interface ethernet 1/1 Console(config-if)#switchport allowed vlan add 1,2,5,6 tagged Console(config-if)# 16.233 s

Page 288 - Syntax Description

358 Asanté IntraCore 36000 Series remove vlan-list List of VLAN identifiers to remove. vlan-list Separate nonconsecutive VLAN identifiers with a co

Page 289 - Backend State Machine

User’s Manual 359 Console(config-if)# 16.236 switchport ingress-filtering This command enables ingress filtering for an interface. Use the no form

Page 290 - 16.149 show garp timer

36 Asanté IntraCore 36000 Series CLI Use the following command to display version information. Console#show version Unit1 Serial number :A

Page 291 - 16.151 show history

360 Asanté IntraCore 36000 Series hybrid Specifies a hybrid VLAN interface. The port may transmit tagged or untagged frames. Default All ports ar

Page 292 - 16.152 show hosts

User’s Manual 361 Example The following is sample output from the switchport native vlan command. This example shows how to set the PVID for port

Page 293

362 Asanté IntraCore 36000 Series 16.240 tacacs-server host This command specifies the TACACS+ server. Use the no form to restore the default. Syntax

Page 294

User’s Manual 363 16.242 tacacs-server port This command specifies the TACACS+ server network port. Use the no form to restore the default. Syntax

Page 295 - User’s Manual 295

364 Asanté IntraCore 36000 Series Default The default access level is Normal Exec. The factory defaults for the user name and password is: [Defaul

Page 296

User’s Manual 365 Related Commands show vlan 16.245 vlan This command configures a VLAN. Use the no form to restore the default settings or delet

Page 297 - 16.158 show ip access-list

366 Asanté IntraCore 36000 Series Related Commands show vlan 16.246 whichboot This command shows which files were booted when the system powered up

Page 298 - 16.159 show ip igmp snooping

User’s Manual 367 Appendix A: Web Browser Interface and Command Line Interface Overview A.1 Navigating the Web Browser Interface To access the web-

Page 299 - 16.161 show ip interface

368 Asanté IntraCore 36000 Series Revert Cancels specified values and restores current values prior to pressing Apply. Apply Sets specified values

Page 300 - 16.164 show lacp

User’s Manual 369 To access the switch through a Telnet session, you must first set the IP address for the switch, and set the default gateway if y

Page 301

User’s Manual 37 Local VLAN Capable: This switch supports multiple local bridges; For example, multiple spanning trees. (Refer to section 3.3 Confi

Page 302

370 Asanté IntraCore 36000 Series Console>enable Console#show startup-config • To enter commands that require parameters, enter the required par

Page 303 - User’s Manual 303

User’s Manual 371 pvlan Information of private VLAN queue Information of priority queue radius-server RADIUS s

Page 304 - 16.165 show line

372 Asanté IntraCore 36000 Series display a list of possible matches. You can also use the following editing keystrokes for command-line processing:

Page 305 - 16.166 show logging

User’s Manual 373 Appendix B: Upgrading Firmware Through the Serial Port The switch contains three firmware components that can be upgraded; the lo

Page 306 - 16.167 show logging sendmail

374 Asanté IntraCore 36000 Series Press x to start downloading the new code file. If using Windows HyperTerminal, click the “Transfer” button, and t

Page 307 - 16.169 show mac access-list

User’s Manual 375 Appendix C: Software Specifications Authentication • Local, RADIUS, TACACS, Port (802.1x), HTTPS, SSH, Port Security Access Cont

Page 308

376 Asanté IntraCore 36000 Series • Up to 255 groups; port-based, protocol-based, or tagged (802.1Q), • GVRP for automatic VLAN learning, private V

Page 309 - User’s Manual 309

User’s Manual 377 • Trap management to specified hosts RMON • Groups 1, 2, 3, 9 (Statistics, History, Alarm, Event) Standards • IEEE 802.3 Ethe

Page 310

378 Asanté IntraCore 36000 Series • SNMP (RFC 1157) • SNMPv2 (RFC 1907) • RIPv2 (RFC 2453) • OSPF (RFC 2328, 1587) • SNTP (RFC 2030) • SSH (Ver

Page 311 - 16.175 show map ip dscp

User’s Manual 379 • RMON II Probe Configuration Group (RFC 2021, partial implementation) • TACACS+ Authentication Client MIB • TCP MIB (RFC 2013

Page 312 - 16.176 show map ip port

38 Asanté IntraCore 36000 Series Chapter 3: Configuring Global Settings The switch’s HTTP web agent allows you to configure switch parameters, monito

Page 313 - User’s Manual 313

380 Asanté IntraCore 36000 Series Appendix D: Troubleshooting and Pinouts D.1 Troubleshooting Chart Symptom Action Cannot connect using Telnet, Web b

Page 314 - 16.178 show management

User’s Manual 381 Appendix E: FCC Compliance and Warranty Statements E.1 FCC Compliance Statement This equipment has been tested and found to compl

Page 315 - 16.180 show port monitor

382 Asanté IntraCore 36000 Series E.3 IntraCare Warranty Statement Products: IntraCore 36240 IntraCore 36480 Duration: 3 years product warranty;

Page 316

User’s Manual 383 Appendix F. Online Warranty Registration Please register the switch online at www.asante.com/support/warranty/index.html. By doin

Page 317 - 16.182 show public-key

384 Asanté IntraCore 36000 Series

Page 319 - 16.186 show queue mode

User’s Manual 39 You can also use the Command Line Interface (CLI) to manage the switch over a serial connection to the console port or via Telnet

Page 320 - 16.188 show running-config

4 Asanté IntraCore 36000 Series 6.3 Configuring HTTPS...

Page 321

40 Asanté IntraCore 36000 Series Multiple Spanning Tree Protocol To allow multiple spanning trees to operate over the network, you must configure a r

Page 322 - 16.189 show snmp

User’s Manual 41 • Default: 20 • Minimum: The higher of 6 or [2 x (Hello Time + 1)]. • Maximum: The lower of 40 or [2 x (Forward Delay - 1)] Forw

Page 323 - 16.191 show spanning-tree

42 Asanté IntraCore 36000 Series CLI This example enables Spanning Tree Protocol, sets the mode to MST, and then configures the STA and MSTP paramet

Page 324

User’s Manual 43 Forward Transitions – The number of times this port has transitioned from the Learning state to the Forwarding state. Designated C

Page 325 - 16.193 show ssh

44 Asanté IntraCore 36000 Series tree to reconfigure when the interface changes state, and also overcomes other STA-related timeout problems. The Ed

Page 326

User’s Manual 45 the preferred path, link type to indicate a point-to-point connection or shared-media connection, and edge port to indicate if the

Page 327 - 16.194 show startup-config

46 Asanté IntraCore 36000 Series Auto – The switch automatically determines if the interface is attached to a point-to-point link or to shared media.

Page 328

User’s Manual 47 Region (section 3.1.1) with the same set of instances, and the same instance (on each bridge) with the same set of VLANs. Also, no

Page 329 - 16.196 show tacacs-server

48 Asanté IntraCore 36000 Series CLI This displays STA settings for instance 1, followed by settings for each port. Console#show spanning-tree mst

Page 330 - 16.198 show version

User’s Manual 49 Designated root : 4096.2.0000E9313131 Designated bridge : 4096.2.0000E9313131 Fast forwarding : enable Forward tr

Page 331 - 16.199 show vlan

User’s Manual 5 11.5 Selecting IP Precedence/DSCP Priority...

Page 332 - 16.201 silent-time

50 Asanté IntraCore 36000 Series CLI This displays STA settings for instance 0, followed by settings for each port. The settings for instance 0 are g

Page 333 - 16.202 snmp-server community

User’s Manual 51 Field Attributes Read Only Attributes STA State – Displays current state of this port within the Spanning Tree. (For more informat

Page 334 - 16.203 snmp-server contact

52 Asanté IntraCore 36000 Series CLI This example sets the MSTP attributes for port 4. Console(config)#interface ethernet 1/4 Console(config-if)#sp

Page 335 - 16.205 snmp-server host

User’s Manual 53 Chapter 4: Configuring SNTP You can configure the switch to send time synchronization requests to specific time servers (For examp

Page 336 - 16.206 snmp-server location

54 Asanté IntraCore 36000 Series 4.2.1 Attributes Current Time – Displays the current time. Name – Assigns a name to the time zone. Hours (0-12) – Th

Page 337 - 16.208 sntp client

User’s Manual 55 Chapter 5: Simple Network Management Protocol Simple Network Management Protocol (SNMP) is a communication protocol designed spec

Page 338 - 16.209 sntp poll

56 Asanté IntraCore 36000 Series CLI The following example adds the string “james” with read/write access. Console(config)#snmp-server community jame

Page 339 - 16.210 sntp server

User’s Manual 57 Chapter 6: Configuring Security You can restrict management access to this switch using the following options: User Accounts – Ma

Page 340 - 16.212 spanning-tree cost

58 Asanté IntraCore 36000 Series 6.2.1 Usage Guidelines By default, management access is always checked against the authentication database stored on

Page 341 - User’s Manual 341

User’s Manual 59 Configuring Switch Using the Web or CLI Web Click Security – Authentication Settings. To configure local or remote authentication

Page 342

6 Asanté IntraCore 36000 Series 15.16 Priority Commands ...

Page 343 - User’s Manual 343

60 Asanté IntraCore 36000 Series If you enable HTTPS, you must indicate this in the URL that you specify in your browser: https://device[:port_number

Page 344

User’s Manual 61 6.3.2 Replacing the Default Secure-site Certificate When you log onto the web interface using HTTPS (for secure access), a Secure

Page 345 - User’s Manual 345

62 Asanté IntraCore 36000 Series 1. Generate a Host Key Pair – On the SSH Host Key Settings page, create a host public/private key pair. 2. Provide

Page 346 - 16.219 spanning-tree max-age

User’s Manual 63 6.4.2 Generating the Host Key Pair A host public/private key pair is used to provide secure communications between an SSH client a

Page 347 - 16.220 spanning-tree mode

64 Asanté IntraCore 36000 Series CLI This example generates a host-key pair using both the RSA and DSA algorithms, stores the keys to flash memory, a

Page 348

User’s Manual 65 Configuring Switch Using the Web or CLI Web Click Security – SSH, Settings. Enable SSH and adjust the authentication parameters a

Page 349 - User’s Manual 349

66 Asanté IntraCore 36000 Series To add new VLAN members later, you can manually add secure addresses with the Static Address Table (section 8.1 Sett

Page 350

User’s Manual 67 CLI This example sets the command mode to Port 5, sets the port security action to send a trap and disable the port, and then ena

Page 351 - User’s Manual 351

68 Asanté IntraCore 36000 Series • Each client that needs to be authenticated must have dot1x client software installed and properly configured. •

Page 352

User’s Manual 69 CLI This example shows the default protocol settings for 802.1x. For a description of the additional entries displayed in the CLI

Page 353 - 16.229 speed-duplex

User’s Manual 7 16.26 dir...

Page 354 - 16.230 stopbits

70 Asanté IntraCore 36000 Series Port-control Auto Supplicant 00-00-e8-49-5e-dc Current Identifier 3 Authenticator State Machine St

Page 355 - User’s Manual 355

User’s Manual 71 CLI This enables re-authentication and sets all of the global parameters for 802.1x. Console(config)#dot1x re-authentication Cons

Page 356

72 Asanté IntraCore 36000 Series Configuring Switch Using the Web or CLI Web Click Security – 802.1x, Port Configuration. Select the authentication

Page 357 - User’s Manual 357

User’s Manual 73 which the Packet Body Length field is invalid. Rx Last EAPOLVer The protocol version number carried in the most recently received

Page 358 - 16.235 switchport gvrp

74 Asanté IntraCore 36000 Series Console# 6.7 Configuring Access Control Lists Access Control Lists (ACL) provide packet filtering for IP frames (bas

Page 359 - 16.237 switchport mode

User’s Manual 75 Command Attributes Name – Name of the ACL. (Maximum length: 16 characters) Type – There are three filtering modes: • Standard: IP

Page 360

76 Asanté IntraCore 36000 Series Configuring Switch Using the Web or CLI Web Specify the action (For example, Permit or Deny). Select the address ty

Page 361 - User’s Manual 361

User’s Manual 77 • 1 (fin) – Finish • 2 (syn) – Synchronize • 4 (rst) – Reset • 8 (psh) – Push • 16 (ack) – Acknowledgement • 32 (urg) – Urge

Page 362 - 16.241 tacacs-server key

78 Asanté IntraCore 36000 Series Command Attributes Action – An ACL can contain all permit rules or all deny rules. (Default: Permit rules) Source/De

Page 363 - 16.243 username

User’s Manual 79 6.7.6 Configuring ACL Masks You can specify optional masks that control the order in which ACL rules are checked. The switch inclu

Page 364 - 16.244 vlan database

8 Asanté IntraCore 36000 Series 16.55 ip host ...

Page 365 - 16.245 vlan

80 Asanté IntraCore 36000 Series Follow these guidelines. Masks that include an entry for a Layer 4 protocol source port or destination port can only

Page 366 - 16.246 whichboot

User’s Manual 81 Console(config-std-acl)#deny 10.1.1.1 255.255.255.255 Console(config-std-acl)#exit Console(config)#access-list ip mask-precedence

Page 367 - Interface Overview

82 Asanté IntraCore 36000 Series CLI This example shows how to create an Ingress MAC ACL and bind it to a port. You can see the mask has changed the

Page 368 - A.6 Telnet Connection

User’s Manual 83 IN – ACL for ingress packets. OUT – ACL for egress packets. ACL Name – Name of the ACL. Configuring Switch Using the Web or CLI W

Page 369 - A.7 Entering Commands

84 Asanté IntraCore 36000 Series SNMP IP Filter List – Configures IP address(es) for the SNMP group. Telnet IP Filter List – Configures IP address(es

Page 370 - A.7.4 Showing Commands

User’s Manual 85 Chapter 7: Configuring Ports 7.1 Displaying Connection Status You can use the Port Information or Trunk Information pages to displ

Page 371 - A.7.7 Using Command History

86 Asanté IntraCore 36000 Series Field Attributes (CLI) Basic information Port type – Indicates the port type. (1000BASE-T, 1000BASE-SX, 1000BASE-LX

Page 372

User’s Manual 87 Operation speed-duplex – Shows the current speed and duplex mode. Flow control type – Indicates the type of flow control currently

Page 373 - B.1 Power Cycle the Switch

88 Asanté IntraCore 36000 Series • 10full - Supports 10 Mbps full-duplex operation • 100half - Supports 100 Mbps half-duplex operation • 100full

Page 374

User’s Manual 89 CLI Select the interface, and then enter the required settings. Console(config)#interface ethernet 1/13 Console(config-if)#descri

Page 375 - User’s Manual 375

User’s Manual 9 16.84 logging facility ...

Page 376

90 Asanté IntraCore 36000 Series • All the ports in a trunk have to be treated as a whole when moved from/to, added or deleted from a VLAN. • STP,

Page 377 - User’s Manual 377

User’s Manual 91 Port security: Disabled Max MAC count: 0 Current status: Created by: User Link status: Down Operation speed-duplex: 100

Page 378

92 Asanté IntraCore 36000 Series Console(config)#interface ethernet 1/6 Console(config-if)#lacp Console(config-if)#end Console#show interfaces status

Page 379 - User’s Manual 379

User’s Manual 93 Admin Key – The LACP administration key must be set to the same value for ports that belong to the same LAG. (Range: 0-65535; Defa

Page 380 - D.1 Troubleshooting Chart

94 Asanté IntraCore 36000 Series 4 32768 00-00-E9-31-31-31 5 32768 00-00-E9-31-31-31

Page 381 - E.1 FCC Compliance Statement

User’s Manual 95 CLI The following example displays LACP counters for port channel 1. Console#show lacp 1 counters Channel group : 1 --------------

Page 382

96 Asanté IntraCore 36000 Series Aggregation – The system considers this link to be aggregatable; For example, a potential candidate for aggregation.

Page 383 - User’s Manual 383

User’s Manual 97 7.4.4 Displaying LACP Settings and Status for the Remote Side You can display configuration settings and the operational state for

Page 384

98 Asanté IntraCore 36000 Series CLI The following example displays the LACP configuration settings and operational state for the remote side of por

Page 385 - User’s Manual 385

User’s Manual 99 7.5.1 Guidelines Broadcast Storm Control is enabled by default. The default threshold is 500 packets per second. Broadcast control

Comments to this Manuals

No comments