GS-5416PLC / GS-5424PLC User Manual 11-2020 / v1.
CONTENTS I Introduction .......................................................................................... 1 I-1 I-2 I-3 I-4 Overview ....................................................................................................... 1 Package Content............................................................................................ 1 Features ......................................................................................................... 2 Product Components.................
IV-3-5 Jumbo Frame ........................................................................................ 43 IV-4 PoE............................................................................................................... 44 IV-4-1 Global Setting ....................................................................................... 44 IV-4-2 Priority Setting ...................................................................................... 46 IV-4-3 Power Limit ................................
IV-11-4 IPv4 ACE ....................................................................................... 158 IV-11-5 ACL Binding .................................................................................. 162 IV-12 QoS ............................................................................................................ 164 IV-12-1 General......................................................................................... 164 IV-12-2 Rate Limit .............................................
I Introduction Thank you for choosing a Edimax (PoE) WEB Smart Ethernet Switch. This device is designed to be operational right out-of-the-box as a standard bridge. In the default configuration, it will forward packets between connecting devices after powered up. Before you begin installing the switch, make sure you have all of the package contents available, and a PC with a web browser for using web-based system management tools.
I-3 Features Supports up to 24 10/100/1000Mbps Gigabit Ethernet ports and 4 SFP slots or 4 mini-GBIC/SFP slots IEEE 802.3af/at PoE compliant to simplify deployment and installation GS-5416PLC supports PoE up to 30W per port with 330W total power budget. Available PoE power output budget is 280W GS-5424PLC supports PoE up to 30W per port with 450W total power budget. Available PoE power output budget is 400W Automatically detects powered devices (PD) and power consumption levels IEEE 802.
The following is the rear view of the switches: 1 Figure 3 - Rear View No. Name 1 AC power in I-4-2 Description Support AC100 – 240V 50-60Hz. LED Indicators The following are the front views of the switches. 1 2 3 4 5 Figure 4 – GS-5424PLC Front View LED Indicators 1 2 3 4 Figure 5 – GS-5416PLC Front View LED Indicators No.
II Installation This chapter describes how to install and connect your Edimax Switch. Read the following topics and perform the procedures in the correct order. Incorrect installation may cause damage to the product. Please note, since the installation / mounting instructions for different models of switches are almost identical, GS-5424PLC is used as the graphical demonstrations here. II-1 Mounting the Switch There are two ways to physically set up the switch. Place the switch on a flat surface.
II-1-2 Desktop Mounting Please install the four rubber feet (included) on the bottom of the switch and place the switch at the desired location. Figure 6 - Desktop Installation II-1-3 Rack Mounting You can mount the switch in any standard size, 19-inch (about 48 cm) wide rack. The switch requires 1 rack unit (RU) of space, which is 1.75 inches (44.45 mm) high. For stability, load the rack from the bottom to the top, with the heaviest devices on the bottom.
1. Align the mounting brackets with the mounting holes on the switch’s side panels and secure the brackets with the screws provided. Figure 7 - Rack Mounting – Bracket Installation 2. Secure the switch on the equipment rack with the screws provided.
III Getting Started This section provides an introduction to the web-based configuration utility, and covers the following topics: Powering on the device Connecting to the network Power over Ethernet (PoE) considerations Starting the web-based configuration utility III-1 Connecting to Power Power down and disconnect the power cord before servicing or wiring a switch. Do not disconnect modules or cabling unless the power is first switched off.
III-2 Connecting to Network To connect the switch to the network: 1. Connect an Ethernet cable to the Ethernet port of a computer 2. Connect the other end of the Ethernet cable to one of the numbered Ethernet ports of the switch. The LED of the port lights if the device connected is active. 3. Repeat Step 1 and Step 2 for each device to connect to the switch. We strongly recommend using CAT-5E or better cable to connect network devices.
III-3 Power over Ethernet (PoE) Considerations Devices considered a Power Sourcing Equipment (PSE), can support up to 30 Watts per PoE port to a Powered Device (PD). Model GS-5416PLC GS-5424PLC Power Dedicated to PoE 280W 400W PoE Ports 1 to 16 1 to 24 PoE Standard Supported IEEE802.3at/af IEEE802.3at/af Ports 1-16 of GS-5416PLC and ports 1-24 of GS-5424PLC provide PoE power supply functionality with a maximum output power up to 30W each port.
III-4 Starting the Web-based Configuration Utility This section describes how to navigate the web-based switch configuration utility. Be sure to disable any pop-up blocker. Browser Restrictions If you are using older versions of Internet Explorer, you cannot directly use an IPv6 address to access the device. You can, however, use the DNS (Domain Name System) server to create a domain name that contains the IPv6 address, and then use that domain name in the address bar in place of the IPv6 address.
Figure 12 - GS-5416PLC Login Window Please note that, unless otherwise specified, pictures / interfaces of GS-5424PLC will be used hereafter in the document.
III-4-1 Logging In Note: Unless otherwise specified, pictures / interfaces of GS-5424PLC will be used hereafter in the document. The default username is admin and the default password is 1234. The first time that you log in with the default username and password, you are required to enter a new password. To log in to the device configuration utility: 1. Enter the default user ID (admin) and the default password (1234). 2.
Figure 13 - System Information If you entered an incorrect username or password, an error message appears and the Login page remains displayed on the window. If you are having problems logging in, please see the Launching the Configuration Utility section in the Administration Guide for additional information. III-4-2 Logging Out By default, the application logs out after ten minutes of inactivity. To manually logout, click Logout in the top right corner of any page.
14
IV Web-based Switch Configuration The PoE smart switch software provides rich Layer 2 functionality for switches in your networks. This chapter describes how to use the web-based management interface (Web UI) to configure the switch’s features. For the purposes of this manual, the user interface is separated into four sections, as shown in the following figure: 4 3 1 2 Figure 14 - User Interface No. Name Description 1 Configuration menu Navigate to locate specific switch functions.
IV-1 Status Use the Status pages to view system information and status. IV-1-1 System Information This page shows switch panel, CPU utilization, Memory utilization and other system current information. It also allows user to edit some system information. To display the Device Information web page, click Status > System Information. Figure 15 - Status > System Information Item Model System Name System Location System Contact MAC Address IPv4 Address Description Model name of the switch.
System OID System Uptime Current Time Loader Version Loader Date Firmware Version Firmware Date Telnet SSH HTTP HTTPS SNMP SNMP system object ID. Total elapsed time from booting. Current system time. Boot loader image version. Boot loader image build date. Current running firmware image version. Current running firmware image build date. Current Telnet service enable/disable state. Current SSH service enable/disable state. Current HTTP service enable/disable state.
IV-1-2 Logging Message To view the logging messages stored on the RAM and Flash, click Status > Logging Message. Figure 17 - Status > Logging Message Item Log ID Time Severity Description Description The log identifier. The time stamp for the logging message. The severity for the logging message. The description of logging message. Viewing RAM: Show the logging messages stored on the RAM. Flash: Show the logging messages stored on the Flash. Clear the logging messages.
IV-1-3 IV-1-3-1 Port Statistics This page displays standard counters on network traffic form the Interfaces, Ethernet -like and RMONMIB. Interfaces and Ethernet-like counters display errors on the traffic passing through each port. RMON counters provide a total count of different frame types and sizes passing through each port. The “Clear” button will clear MIB counter of current selected port. To display the Port Flow Chart web page, click Status > Port > Statistics.
20
Figure 18 - Status > Port > Statistics Item Port MIB Counter Refresh Rate Description Select one port to show counter statistics. Select the MIB counter to show different counter type All: All counters. Interface: Interface related MIB counters. Etherlike: Ethernet-like related MIB counters. RMON: RMON related MIB counters. Refresh the web page every period of seconds to get new counter of specified port.
IV-1-3-2 Error Disabled To display the Error Disabled web page, click Status > Port > Error Disabled. Figure 19 - Status > Port > Error Disabled Item □ Port Reason Description Select one or more port to operate. Interface or port number.
Time Left (sec) Refresh Recover IV-1-3-3 Port Security Violation DHCP rate limit ARP rate limit The time left in second for the error recovery. Refresh the current page. Recover the selected port status. Bandwidth Utilization This page allows user to browse ports’ bandwidth utilization in real time. This page will refresh automatically in every refresh period. To display Bandwidth Utilization web page, click Status > Port > Bandwidth Utilization.
IV-1-4 Link Aggregation To display the Link Aggregation web page, click Status > Link Aggregation. Figure 21 - Status > Link Aggregation Item LAG Name Type Link Status Active Member Inactive Member Description LAG Name. LAG port description. The type of the LAG. Static: The group of ports assigned to a static LAG are always active members. LACP: The group of ports assigned to dynamic LAG are candidate ports. LACP determines which candidate ports are active member ports. LAG port link status.
IV-1-5 MAC Address Table The MAC address table page displays all MAC address entries on the switch including static MAC address created by administrator or auto learned from hardware. The “Clear” button will clear all dynamic entries and “Refresh” button will retrieve latest MAC address entries and show them on page. To display the MAC Address Table web page, click Status > MAC Address Table. Figure 22 - Status > MAC Address Table Item VLAN MAC Address Type Port Description VLAN ID of the mac address.
IV-2 Network Use the Network pages to configure settings for the switch network interface and how the switch connects to a remote server to get services. IV-2-1 IP Address This section allows you to edit the IP address, Netmask, Gateway and DNS server of the switch. To view the IP Address menu, navigate to Network > IP Address.
Figure 23 - Network > IP Address Item Address Type IP Address Subnet Mask Default Gateway Description The address type of switch IP configuration including Static: Static IP configured by users will be used. Dynamic: Enable the DHCP to obtain the IP address from a DHCP server. Specify the switch static IP address on the static configuration. Specify the switch subnet mask on the static configuration. Specify the default gateway on the static configuration.
default gateway must be in the same subnet with switch IP address configuration. DNS Server 1 Specify the primary user-defined IPv4 DNS server configuration. Specify the secondary user-defined IPv4 DNS server DNS Server 2 configuration. Table 3-2: IPv6 Address fields IPv4 Address The operational IPv4 address of the switch. IPv4 Gateway The operational IPv4 gateway of the switch. IPv6 Address v6 The operational IPv6 address of the switch. IPv6 Gateway The operational IPv6 gateway of the switch.
IV-2-2 System Time This page allows user to set time source, static time, time zone and daylight saving settings. Time zone and daylight saving takes effect both static time or time from SNTP server. To display System Time page, click Network > System Time.
Item Source Time Zone SNTP Address Type Server Address Server Port Manual Time Date Time Daylight Saving Time Type Offset Recurring From Recurring To Non-recurring From Non-recurring To Non-recurring From Non recurring To Description Select the time source. SNTP: Time sync from NTP server. From Computer: Time set from browser host. Manual Time: Time set by manually configure. Select a time zone difference from listing district. Select the address type of NTP server.
IV-3 Port Use the Port pages to configure settings for switch port related features. IV-3-1 Port Setting This page shows port current status and allow user to edit port configurations. Select port entry and click “Edit” button to edit port configurations. To display Port Setting web page, click Port > Port Setting. Figure 25 - Port > Port Setting Item Port Type Description Description Port Name. Port media type. Port Description.
State Link Status Speed Duplex Flow Control Port admin state Enabled: Enable the port. Disabled: Disable the port. Current port link status Up: Port is link up. Down: Port is link down. Current port speed configuration and link speed status. Current port duplex configuration and link duplex status. Current port flow control configuration and link flow control status.
Duplex Flow Control Auto-100M: Auto speed with 100M ability only. Auto-1000M: Auto speed with 1000M ability only. Auto-10M/100M: Auto speed with 10M/100M abilities. 10M: Force speed with 10M ability. 100M: Force speed with 100M ability. 1000M: Force speed with 1000M ability. Port duplex capabilities. Auto: Auto duplex with all capabilities. Half: Auto speed with 10M and 100M ability only. Full: Auto speed with 10M/100M/1000M ability only. Port flow control.
IV-3-2 Long Range Mode This page shows port current status and Enable long range mode will double the cabling distance but reduce the speed to 10Mbps. To display Long Range Mode web page, click Port > Long Range Mode Setting.
IV-3-3 Error Disable To display Error Disabled web page, click Port > Error Disabled Figure 28 - Port > Error disable Item Recover Interval Description Auto recovery after this interval for error disabled port. Enabled to auto shutdown port when BPDU Guard reason occur. This BPDU Guard reason caused by STP BPDU Guard mechanism. UDLD Enabled to auto shutdown port when UDLD violation occur. Self Loop Enabled to auto shutdown port when Self Loop reason occur.
ARP rate limit IV-3-4 Enabled to auto shutdown port when ARP rate limit reason occur. This reason caused by DHCP packet rate exceed ARP rate limit. Link Aggregation IV-3-4-1 Group This page allows user to configure link aggregation group load balance algorithm and group member. To view the Group menu, navigate to Port > Link Aggregation > Group.
Active Member Inactive Member Active member ports of the LAG. Inactive member ports of the LAG. Click “Edit” to edit Link Aggregation Group menu. Figure 30 - Port > Link Aggregation > Group > Edit Link Aggregation Group Item LAG Name Type Member Description Selected LAG group ID. LAG port description. The type of the LAG Static: The group of ports assigned to a static LAG are always active members. LACP: The group of ports assigned to dynamic LAG are candidate ports.
IV-3-4-2 Port Setting This page shows LAG port current status and allow user to edit LAG port configurations. Select LAG entry and click “Edit” button to edit LAG port configurations. To display LAG Port Setting web page, click Port > Link Aggregation > Port Setting. Figure 31 - Port > Link Aggregation > Port Setting Item LAG Type Description State Link Status Speed Duplex Flow Control Description LAG Port Name. LAG Port media type. LAG Port description. LAG Port admin state Enabled: Enable the port.
Click “Edit” to view Edit Port Setting menu. Figure 32 - Port > Link Aggregation > Port Setting > Edit Port Setting Item Port Description State Speed Flow Control Description Selected Port list. Port description. Port admin state Enabled: Enable the port. Disabled: Disable the port. Port speed capabilities Auto: Auto speed with all capabilities. Auto-10M: Auto speed with 10M ability only. Auto-100M: Auto speed with 100M ability only. Auto-1000M: Auto speed with 1000M ability only.
IV-3-4-3 LACP This page allows user to configure LACP global and port configurations. Select ports and click “Edit” button to edit port configuration. To display the LACP Setting web page , click Port > Link Aggregation > LACP. Figure 33 - Port > Link Aggregation > LACP Item System Priority Port Port Priority Timeout Description Configure the system priority of LACP. This decides the system priority field in LACP PDU. Port Name. LACP priority value of the port.
Click "Edit" button to view Edit LACP Port Setting menu. Figure 34 - Port > Link Aggregation > LACP > Edit LACP Port Setting Item Port Port Priority Timeout Description Selected port list. Enter the LACP priority value of the port The periodic transmissions type of LACP PDUs. Long: Transmit LACP PDU with slow periodic (30s). Short: Transmit LACPP DU with fast periodic (1s).
IV-3-4-4 EEE This page allows user to configure Energy Efficient Ethernet settings. To display the EEE web page, click Port > EEE. Figure 35 - Port > EEE Item Port State Operational Status Description Port Name. Port EEE admin state Enabled: EEE is enabled. Disabled: EEE is disabled. Port EEE operational status Enabled: EEE is operating. Disabled: EEE is no operating.
Click “Edit” to edit the EEE menu. Figure 36 - Port > EEE > Edit EEE Setting Item Port Description Port Name Port EEE admin state Enabled: EEE is enabled. Disabled: EEE is disabled. State IV-3-5 Jumbo Frame This page allows user to configure switch jumbo frame size. To display Jumbo Frame web page, click Port > Jumbo Frame. Figure 37 - Port > Jumbo Frame Item Jumbo Frame Description Enable or disable jumbo frame. When jumbo frame is enabled, switch max frame size is allowed to configure.
IV-4 PoE Port security can set port isolation and specific behavior. IV-4-1 Global Setting To display the Global web page, click PoE > Global Setting.
Item Nominal Power Consuming Power Remaining Power Schedule Status Name Port List Schedule Status Description Maximum supply power. Current consumed power. Remaining available power. Schedule status global switch. PoE Schedule Name. The ports provide power in designated schedule index. The current schedule status. Click “Edit” to view PoE Schedule List menu.
IV-4-2 Priority Setting Use this section to set the power supply priority of PoE ports. Individual ports can be assigned critical, high, or low power supply priority. To display the Priority Setting web page, click PoE > Priority Setting. Figure 40 - PoE > Priority Setting Click the port to change its priority status according to the bottom right hand chart.
IV-4-3 Power Limit To display the Power Limit web page, click PoE > Power Limit. Figure 41 - PoE > Power Limit Item Port Power Limit Description Port name. The max supply power for this port.
Click “Edit” to view Power Limit Setting menu. Figure 42 - PoE > Power Setting > Power Limit Setting Table Item Port List Power Limit Description Selected port list. Enter max supply power value for the selected port list.
IV-4-4 PoE Status To display the PoE Status web page, click PoE > Power Status. Figure 43 - PoE > Power Stauts Per Port PoE Status Checked: Port PoE status is enabled. Unchecked: Port PoE status is disabled.
IV-4-5 PD (Powered Device) Alive Check To display the PD Alive Check web page, click PoE > PD Alive Check. Figure 44 - PoE > PD Alive Check Click “Edit” button to view Edit PD Alive Check menu.
Item Port List Status Ping PD IP Address Interval Time Retry Count Action Reboot Time Description Port name. Check to enable PD Alive Check. IP address of connected device. The time interval of how long the system issues a ping request to the connected PD to check if the device is dead or alive. Time range is 10-300 seconds. This column allows users to set how many times the system retries issuing a ping request to the PD. After the retries and fails, the system will carry out the “Action” below.
IV-5 VLAN A virtual local area network, virtual LAN or VLAN, is a group of hosts with a common set of requirements that communicate as if they were attached to the same broadcast domain, regardless of their physical location. A VLAN has the same attributes as a physical local area network (LAN), but it allows for end stations to be grouped togeth-er even if they are not located on the same network switch.
Created VLAN VLAN Name Type VLAN had been created. Select created VLANs from right box then move to left box to delete The VLAN ID. The VLAN Name. The VLAN Type. Static: Port base VLAN. Dynamic: 802.1q VLAN. Click “Edit” button to view Edit VLAN Name menu. Figure 47 - VLAN > VLAN > Create VLAN > Edit VLAN Name Item Name Description Input VLAN name.
IV-5-1-2 VLAN Configuration This page allows user to configure the membership for each port of selected VLAN. To display VLAN Configuration page, click VLAN > VLAN > VLAN Configuration. Figure 48 - VLAN > VLAN > VLAN Configuration Item VLAN Port Mode Membership Description Select specified VLAN ID to configure VLAN configuration. Display the interface of port entry. Display the interface VLAN mode of port. Select the membership for this port of the specified VLAN ID.
PVID IV-5-1-3 Excluded: Specify the port is excluded in the VLAN. Tagged: Specify the port is tagged member in the VLAN. Untagged: Specify the port is untagged member in the VLAN. Display if it is PVID of interface. Membership This page allows user to view membership information for each port and edit membership for specified interface. To display Membership page, click VLAN > VLAN > Membership.
Item Port Mode Administrative VLAN Operational VLAN Description Display the interface of port entry. Display the interface VLAN mode of port. Display the administrative VLAN list of this port. Display the operational VLAN list of this port. Operational VLAN means the VLAN status that really runs in device. It may different to administrative VLAN.
VLAN ID for this port. PVID may auto select or can’t select in differ settings. IV-5-1-4 Port Setting This page allows user to configure ports VLAN settings such as VLAN port mode, PVID etc…The attributes depend on different VLAN port mode. To display Port Setting page, click VLAN > VLAN > Port Setting.
Item Port Mode PVID Accept Frame Type Ingress Filtering Uplink TPID Description Display the interface. Display the VLAN mode of interface. Display the Port-based VLAN ID of port. Display accept frame type of port. Display ingress filter status of port. Display uplink status. Display TPID used of interface. Click “Edit” button to Edit Port Setting menu. Figure 52 - VLAN > VLAN > Port Setting > Edit Port Setting Item Port Mode PVID Accepted Type Ingress Description Display selected port to be edited.
Filtering Uplink TPID Hybrid mode. Set checkbox to enable/disable uplink mode. It’s only available with trunk mode. Select TPID used of interface. It’s only available with trunk mode.
IV-5-2 Voice VLAN Use the Voice VLAN pages to configure settings of Voice VLAN. IV-5-2-1 Property This page allows user to configure global and per interface settings of voice VLAN. To display Property Web page, click VLAN> Voice VLAN> Property.
Item State VLAN Description Set checkbox to enable or disable voice VLAN function. Select Voice VLAN ID. Voice VLAN ID cannot be default VLAN. Select a value of VPT. Qualified packets will use this VPT value as inner Cos/802.1p priority. Set checkbox to enable or disable 1p remarking. If enabled, qualified Remarking packets will be remark by this value. Input value of aging time. Default is 1440 minutes. A voice VLAN entry will Aging Time be age out after this time if without any packet pass through.
IV-5-2-2 Voice OUI This page allows user to add, edit or delete OUI MAC addresses. Default has 8 pre-defined OUI MAC. To display the Voice OUI Web page, click VLAN > Voice VLAN > Voice OUI. Figure 55 - VLAN > Voice VLAN > Voice OUI Item OUI Description Description Display OUI MAC address. Display description of OUI entry. Click “Add” or “Edit” button to Add/Edit Voice OUI menu.
Item OUI Description Input OUI MAC address. Can’t be edited in edit dialog. Input description of the specified MAC address to the voice VLAN OUI table. Description IV-5-3 MAC VLAN Use the MAC VLAN pages to configure settings of MAC VLAN. IV-5-3-1 MAC Group This page allows user to add or edit groups settings of MAC VLAN. To display the MAC page , click VLAN > MAC VLAN > MAC Group. Figure 57 - VLAN > MAC VLAN > MAC Group Item Group ID MAC Address Mask Description Display group ID of entry.
Figure 58 - VLAN > MAC VLAN > MAC Group > Add/Edit MAC Item Group ID MAC Address Mask IV-5-3-2 Description Input group ID that is a unique ID of mac group entry. The range from 1 to 2147483647. Only available on Add Dialog. Input mac address for classifying packets. Input mask of mac address. Group Binding This page allows user to bind MAC VLAN group to each port with VLAN ID. To display Group Binding page, click VLAN> MAC VLAN > Group Binding.
Item Port Group ID VLAN Description Display port ID that binding with MAC group entry. Display group ID that port binding with. Display VLAN ID that assign to packets which match MAC group. Click “Add” or “Edit” button to view the Add/Edit Group Binding menu. Figure 60 - VLAN > MAC VLAN > Add/Edit Group Binding Item Port Group ID VLAN Description Select ports in left box then move to right to binding with MAC group. Or select ports in right box then move to left to unbind with MAC group.
IV-6 MAC Address Table Use the MAC Address Table pages to show dynamic MAC table and configure settings for static MAC entries. IV-6-1 Dynamic Address To display the Dynamic Address web page, click MAC Address Table > Dynamic Address. Figure 61 - MAC Address Table > Dynamic Address Item Aging Time IV-6-2 Description The time in seconds that an entry remains in the MAC address table. Its valid range is from 10 to 630 seconds, and the default value is 300 seconds.
Item MAC Address VLAN Port IV-6-3 Description The MAC address to which packets will be statically forwarded. Specify the VLAN to show or clear MAC entries. Interface or port number. Filtering Address To display the Filtering Address web page, click MAC Address Table > Filtering Address. Figure 63 - MAC Address Table > Filtering Address Item MAC Address VLAN Description Specify unicast MAC address in the packets to be dropped. Specify the VLAN to show or clear MAC entries.
IV-7 Spanning Tree The Spanning Tree Protocol (STP) is a network protocol that ensures a loop-free topology for any bridged Ethernet local area network. IV-7-1 Property To display the Property web page, click Spanning Tree > Property.
Item State Description Enable/disable the STP on the switch. Specify the STP operation mode. STP: Enable the Spanning Tree (STP) operation. Operation Mode RSTP: Enable the Rapid Spanning Tree (RSTP) operation. MSTP: Enable the Multiple Spanning Tree (MSTP) operation. Specify the path cost method. Long: Specifies that the default port path costs are within the Path Cost range: 1-200,000,000. Short: Specifies that the default port path costs are within the range: 1-65,535.
Last Topology Change IV-7-2 The last time for the topology change. Port Setting To configure and display the STP port settings, click STP > Port Setting. Figure 65 - Spanning Tree > Port Setting Item Port State Path Cost Priority BPDU Filter BPDU Guard Operational Edge Operational Point-to-Point Description Specify the interface ID or the list of interface IDs. The operational state on the specified port. STP path cost on the specified port. STP priority on the specified port.
Designated Port ID Designated Cost Protocol Migration Check The designated port ID on the switch. The path cost of the designated port on the switch. Restart the Spanning Tree Protocol (STP) migration process (re-negotiate with its neighborhood) on the specific interface. Click "Edit" button to view Edit Port Setting menu. Figure 66 - Spanning Tree > Port Setting > Edit Port Setting Item Port State Path Cost Priority Edge Port Description Selected port ID. Enable/Disable the STP on the specified port.
BPDU Filter BPDU Guard Point-to-Point IV-7-3 In the edge mode, the interface would be put into the Forwarding state immediately upon link up. If the edge mode is enabled for the interface and there are BPDUs received on the interface, the loop might be occurred in the short time before the STP state change. The BPDU Filter configuration avoids receiving / transmitting BPDU from the specified ports. Enable: Enable BPDU filter function. Disable: Disable BPDU filter function.
Item Description MSTI Designated port number. Priority The bridge priority on the specified MSTI. Bridge Identifier The bridge identifier on the specified MSTI. Designated Root Bridge The designated root bridge identifier on the specified MSTI. Root Port The designated root port on the specified MSTI. Root Path Cost The designated root path cost on the specified MSTI. Remaining Hop The configuration of remaining hop on the specified MSTI. VLAN The VLAN configuration on the specified MSTI.
IV-7-4 MST Port Setting To configure and display MST port setting, click STP > MST Port Setting. Figure 69 - Spanning Tree > MST Port Setting Item MSTI Port Path Cost Priority Port Role Port State Mode Type Description Specify the port setting on the specified MSTI. Specify the interface ID or the list of interface IDs. The port path cost on the specified MSTI. The port priority on the specified MSTI. The current port role on the specified port.
Internal: The port attaching an MST Bridge to a LAN that is not in the same region. Designated Bridge Designated Port ID Designated Cost Remaining Hop The bridge ID of the designated bridge. The designated port ID on the switch. The path cost of the designated port on the switch. The remaining hops count on the specified port. Click "Edit" button to view Edit MST Port Setting menu.
IV-7-5 Statistics To display the STP statistics, click STP > Statistics. Figure 71 - Spanning Tree > Statistics Item Description Refresh Rate The option to refresh the statistics automatically. Receive BPDU (Config) The counts of the received CONFIG BPDU. Receive BPDU (TCN) The counts of the received TCN BPDU. Receive BPDU (MSTP) The counts of the received MSTP BPDU. Transmit BPDU (Config) The counts of the transmitted CONFIG BPDU. Transmit BPDU (TCN) The counts of the transmitted TCN BPDU.
Click "View" button to view the STP Port Statistic menu. Figure 72 - Spanning Tree > Statistics > STP Port Statistic Item Refresh Rate Clear Description The option to refresh the statistics automatically. Clear the statistics for the selected interfaces.
IV-8 Discovery Use this section to configure LLDP. IV-8-1 LLDP LLDP is a one-way protocol; there are no request/response sequences. Informa-tion is advertised by stations implementing the transmit function, and is received and processed by stations implementing the receive function. The LLDP category contains LLDP and LLDP-MED pages. IV-8-1-1 Property To display LLDP Property Setting web page, click Discovery > LLDP > Property.
Interval Holdtime Multiplier Reinitialization Delay seconds, and the valid range is 5–32767 seconds. Select the multiplier on the transmit interval to assign to TTL (range 2–10, default = 4). Select the delay before a re-initialization (range 1–10 seconds, default = 2). Select the delay after an LLDP frame is sent (range 1–8191 seconds, Transmit Delay default = 3). Fast Start Repeat Select fast start repeat count when port link up (range 1–10, default = Count 3).
IV-8-1-2 Port Setting To display LLDP Port Setting, click Discovery > LLDP > Port Setting. Figure 74 - Discovery > LLDP > Port Setting Item Port Mode Selectde TLV Description Port Name. The port LLDP mode. The Selected LLDP TLV.
Click "Edit" button to view Edit Port Setting menu. Figure 75 - Discovery > LLDP > Port Setting > Edit Port Setting Item Port Mode Optional TLV Description Select specified port or all ports to configure LLDP state. Select the transmission state of LLDP port interface. Disable: Disable the transmission of LLDP PDUs. RX Only: Receive LLDP PDUs only. TX Only: Transmit LLDP PDUs only. TX And RX: Transmit and receive LLDP PDUs both.
802.1 VLAN Name IV-8-1-3 Select the VLAN Name ID to be carried (multiple selection is allowed). Packet View To display LLDP Overloading, click Discovery > LLDP > Packet View.
Item Port In-Use (Bytes) Description Port Name. Total number of bytes of LLDP information in each packet. Total number of available bytes left for additional LLDP information Available (Bytes) in each packet. Operational Status Overloading or not. Click "Detail" button to view Packet View Detail menu.
Figure 77 - Discovery > LLDP > Packet View > Packet View Detail Item Port Mandatory TLVs Description Port Name. Total mandatory TLV byte size. Status is sent or overloading. Total MED Capabilities TLV byte size. Status is sent or MED Capabilities overloading. MED Location Total MED Location byte size. Status is sent or overloading. Total MED Network Policy byte size. Status is sent or MED Network Policy overloading. MED Inventory Total MED Inventory byte size.
IV-8-1-4 Local Information Use the LLDP Local Information to view LLDP local device information. To display LLDP Local Device, click Discovery > LLDP > Local Information.
Figure 78 - Discovery > LLDP > Local Information Item Description Chassis ID Subtype Type of chassis ID, such as the MAC address. Identifier of chassis. Where the chassis ID subtype is a MAC address, Chassis ID the MAC address of the switch is displayed. System Name Name of switch. System Description of the switch. Description Capabilities Primary functions of the device, such as Bridge, WLAN AP, or Router.
Supported Capabilities Enabled Port ID Subtype LLDP Status LLDP Med Status Primary enabled functions of the device. Type of the port identifier that is shown. LLDP Tx and Rx abilities. LLDP MED enable state. Click “Detail” button on the page to view detail information of the selected port.
Figure 79 - Discovery > LLDP > Local Information > Detail IV-8-1-5 Neighbor Use the LLDP Neighbor page to view LLDP neighbors information. To display LLDP Remote Device, click Discovery > LLDP > Neighbor.
Item Local Port Chassis ID Subtype Port ID Subtype Port ID System Name Time to Live Description Number of the local port to which the neighbor is connected. Type of chassis ID (for example, MAC address). Type of the port identifier that is shown. Identifier of port. Published name of the switch. Time interval in seconds after which the information for this neighbor is deleted.
Click “detail” to view selected neighbor detail information 90
Figure 81 - LLDP Neighbor Detail Page 91
IV-8-1-6 Statistics The Link Layer Discovery Protocol (LLDP) Statistics page displays summary and per-port information for LLDP frames transmitted and received on the switch.
To display LLDP Statistics status, click Discovery > LLDP > Statistics.
Item Insertions Deletions Drops Age Outs Description The number of times the complete set of information advertised by a particular MAC Service Access Point (MSAP) has been inserted into tables associated with the remote systems. The number of times the complete set of information advertised by MSAP has been deleted from tables associated with the remote systems.
IV-9 Multicast Use this section to configure Multicast. IV-9-1 General Use the General pages to configure settings of IGMP and MLD common function. IV-9-1-1 Property To display multicast general property Setting web page, click Multicast> General> Property. Figure 83 - Multicast > General > Property Item Unknown Multicast Action IPv4 IPv6 Description Set the unknown multicast action Flood: flood the unknown multicast data. Drop: drop the unknown multicast data.
IV-9-1-2 Group Address This page allows user to browse all multicast groups that dynamic learned or statically added. To display Multicast General Group web page, click Multicast> General > Group Address. Figure 84 - Multicast > General > Group Address Item IP Version VLAN Group Address Member Type Life(Sec) Description IP Version IPv4: ipv4 multicast group IPv6: ipv6 multicast group The VLAN ID of group. The group IP address. The member ports of group. The type of group. Static or Dynamic.
Click “Add” or “Edit” button to view Add or Edit Group Address menu. Figure 85 - Multicast > General > Group Address > Add/Edit Group Address Item VLAN IP Version Group Address Member Description The VLAN ID of group. IP Version IPv4: ipv4 multicast group IPv6: ipv6 multicast group The group IP address. The member ports of group.
Available Port: Optional port member Selected Port: Selected port member IV-9-1-3 Router Port This page allows user to browse all router port information. The static and forbidden router port can set by user. To display multicast router port table web page, click Multicast > General > Router Port. Figure 86 - Multicast > General > Router Port Item VLAN Description IP Version IPv4: ipv4 multicast router IPv6: ipv6 multicast router The VLAN ID router entry.
Click "Add" or “Edit” button to view Add/Edit Router Port menu.
Item VLAN IP Version Type Port IV-9-2 Description The VLAN ID for router entry Available VLAN: Optional VLAN member Selected VLAN: Selected VLAN member. IP Version IPv4: ipv4 multicast router IPv6: ipv6 multicast router The router port type Static: static router port Forbidden: forbidden router port, can’t learn dynamic router port member The member ports of router entry.
Item Description Set the enabling status of IGMP Snooping functionality State Enable: If Checked Enable IGMP Snooping, else is Disabled IGMP Snooping. Set the igmp snooping version Version IGMPv2: Only support process igmp v2 packet. IGMPv3: Support v3 basic and v2. Set the enabling status of IGMP v2 report suppression Report Suppression Enable: If Checked Enable IGMP Snooping v2 report suppression, else Disable the report suppression function. VLAN The IGMP entry VLAN ID.
Click "Edit" button to Edit VLAN Setting menu. Figure 89 - Multicast > IGMP Snooping > Property >Edit VLAN Setting Item VLAN Description The selected VLAN List. Set the enabling status of IGMP Snooping VLAN functionality State Enable: If Checked Enable IGMP Snooping VLAN, else is Disabled IGMP Snooping VLAN. Set the enabling status of IGMP Snooping router port learning Router Port Auto Enable: If checked Enable learning router port by query and PIM, Learn DVRMP, else Disable the learning router port.
Query Interval The Admin interval of querier to send general query. The Admin query max response interval, In Membership Query Query Max Messages, it specifies the maximum allowed time before sending a Response Interval responding report in units of 1/10 second. The Admin last member query count that Querier-switch sends Last Member Group-Specific Queries when it receives a Leave Group message for a Query Counter group.
Item VLAN State Operational Status Querier Version Querier IP Description IGMP Snooping querier entry VLAN ID. The IGMP Snooping querier Admin State. The IGMP Snooping querier operational status. The IGMP Snooping querier operational version. The operational Querier IP address on the VLAN. Click "Edit" button to view Edit Querier menu. Figure 91 - Multicast > IGMP Snooping > Querier > Edit Querier Item VLAN State Version Description The Selected Edit IGMP Snooping querier VLAN List.
IV-9-2-3 Statistics This page allows user to clear IGMP snooping statics. To display IGMP Snooping Statistics, click Multicast > IGMP Snooping > Statistics. Figure 92 - Multicast > IGMP Snooping > Statistics Item Receive Packet Total Valid InValid Other Leave Report General Query Special Group Query Source-specific Description Total RX igmp packet, include ipv4 multicast data to CPU. The valid igmp snooping process packet. The invalid igmp snooping process packet.
Group Query Transmit Packet Leave Report General Query Special Group Query Source-specific Group Query IGMP leave packet IGMP join and report packet IGMP general query packet include querier transmit general query packet. IGMP special group query packet include querier transmit special group query packet. IGMP Special Source and Group General Query packet.
IV-9-3 MVR Use the MVR pages to configure settings of MVR function. IV-9-3-1 Property To display multicast MVR property Setting web page, click Multicast > MVR > Property. Figure 93 - Multicast > MVR > Property Item State VLAN Mode Group Start Group Count Query Time Maximum Current Description Enable: if checked enable the MVR state, else disable the MVR state. The MVR VLAN ID. Set the MVR mode Compatible: compatible mode. Dynamic: learn group member on source port. MVR group range start.
IV-9-3-2 Port Setting This page allows user to configure port role and port immediate leave. To display MVR port role and immediate leave state setting web page, click Multicast > MVR > Port Setting.
Item Entry Port Role Immediate Leave Description Entry of number. Port Name. Port Role for MVR, the type is None/Receiver/Source. Status of immediate leave. Click "Edit" button to view Edit Port Setting menu. Figure 95 - Multicast > MVR > Port Setting > Edit Port Setting Item Port Role Immediate Leave Description Display the selected port list. MVR port role None: port role is none. Receiver: port role is receiver. Source: port role is source.
IV-9-3-3 Group Address This page allows user to browse all multicast MVR groups that dynamic learned or statically added. To display Multicast MVR Group web page, click Multicast > MVR > Group Address. Figure 96 - Multicast > MVR > Group Address Item VLAN Group Address Member Type Life(Sec) Description The VLAN ID of MVR group. The MVR group IP address. The member ports of MVR group. The type of MVR group. Static or Dynamic. The life time of this dynamic MVR group.
Item VLAN Group Address Member Description The VLAN ID of MVR group. The MVR group IP address. The member ports of MVR group. Available Port: Optional port member, it is only receiver port when MVR mode is compatible, it include source port when mode is dynamic.
IV-10 Security Use the Security pages to configure settings for the switch security features. IV-10-1 RADIUS This page allows user to add, edit or delete RADIUS server settings and modify default parameter of RADIUS server. To display RADIUS web page, click Security > RADIUS. Figure 98 - Security > RADIUS Item Retry Timeout Key String RADIUS Table Server Address Server Port Priority Retry Timeout Description Set default retry number. Set default timeout value.
Usage keep trying until timeout. RADIUS server usage type Login: For login authentifation. 802.1x: For 802.1x authentication. All: For all types. Click "Add" or “Edit” button to view Add/Edit RADIUS Server menu.
Figure 99 - Security > RADIUS > Add/Edit RADIUS Server Item Address Type Server Address Server Port Priority Retry Timeout Usage Description In add dialog, user need to specify server Address Type Hostname: Use domain name as server address. IPv4: Use IPv4 as server address. IPv6: Use IPv6 as server address. In add dialog, user need to input server address based on address type. In edit dialog, it shows current edit server address. Set RADIUS server port.
IV-10-2 Management Access Use the Management Access pages to configure settings of management access. IV-10-2-1 Management Service This page allows user to change management services related configurations. To display Management Service click Security > Management Access > Management Service.
Item Description Management service admin state. Telnet: Connect CLI through telnet. Management SSH: Connect CLI through SSH. Service HTTP: Connect WEBUI through HTTP. HTTPS: Connect WEBUI through HTTPS. SNMP: Manage switch trough SNMP. Set session timeout minutes for user access to user interface. 0 minutes Session Timeout means never timeout. Retry count is the number which CLI password input error Password Retry tolerance count.
IV-10-2-3 Management ACE This page allows user to add, edit or delete ACE rule. An ACE rule cannot be edited or deleted if ACL under active. New ACE cannot be added if ACL under active To display Management ACE page, click Security > Management Access > Management ACE. Figure 102 - Security > Management Access > Management ACE Item ACL Name Priority Action Service Port Address / Mask Description Select the ACL name to which an ACE is being added. Display the priority of ACE. Display the action of ACE.
Click "Add" or “Edit” button to view Add/Edit Management ACE menu.
Figure 103 - Security > Management Access > Add/Edit Management ACE Item ACL Name Priority Service Action Description Display the ACL name to which an ACE is being added. Specify the priority of the ACE. ACEs with higher sequence are processed first (1 is the highest priority). Only available on Add Dialog. Select the type service of rule. All: All services. HTTP: Only HTTP service. HTTPs: Only HTTPs service SNMP: Only SNMP service. SSH: Only SSH service.
Port IP Version IPv4 IPv6 Deny: Drop packets that meet the ACE criteria. Select ports which will be matched. Select the type of source IP address. All: All IP addresses can access. IPv4: Specify IPv4 address ca access. IPv6: Specify IPv6 address ca access. Enter the source IPv4 address value and mask to which will be matched. Enter the source IPv6 address value and mask to which will be matched.
IV-10-3 Authentication Manager IV-10-3-1 Property This page allows user to edit authentication global settings and some port mods’ configurations. To display authentication manager Property web page, click Security > Authentication Manager > Property. Figure 104 - Security > Authentication Manager > Property Item Authentication Type Description Set checkbox to enable/disable following authentication types 802.1x: Use IEEE 802.
authentication Set checkbox to enable/disable guest VLAN, if guest VLAN is enabled, Guest VLAN you need to select one available VLAN ID to be guest VID. Select mac-based authentication RADIUS username/password ID format. XXXXXXXXXXXX Xxxxxxxxxxxx XX:XX:XX:XX:XX:XX xx:xx:xx:xx:xx:xx XX-XX-XX-XX-XX-XX xx-xx-xx-xx-xx-xx XX.XX.XX.XX.XX.XX MAC-Based User xx.xx.xx.xx.xx.xx ID Format XXXX:XXXX:XXXX xxxx:xxxx:xxxx XXXX-XXXX-XXXX XXXX-XXXX-XXXX XXXX.XXXX.XXXX XXXX.XXXX.
Order Method Guest VLAN VLAN Assign Mode Support following authentication type order combinations. Web Authentication should always be the last type. The authentication manager will go to next type if current type is not enabled or authenticated fail. 802.1x MAC-Based WEB-Based 802.1x MAC-Based 802.1x WEB-Based MAC-Based 802.1x WEB-Based 802.1x 802.1x MAC-Based WEB-Based 802.1x WEB-Based MAC-Based Support following authentication method order combinations.
Click “Edit” button to view the Edit Port Mode menu. Figure 105 - Security > Authentication Manager > Property > Edit Port Mode Item Description Port Selected port list. Authentication Type Set checkbox to enable/disable authentication types. Select authenticating host mode Multiple Authentication: In this mode, every client need to pass authenticate procedure individually.
Order Method Guest VLAN VLAN Assign Mode Support following authentication type order combinations. Web Authentication should always be the last type. The authentication manager will go to next type if current type is not enabled or authenticated fail. 802.1x MAC-Based WEB-Based 802.1x MAC-Based 802.1x WEB-Based MAC-Based 802.1x WEB-Based 802.1x 802.1x MAC-Based WEB-Based 802.1x WEB-Based MAC-Based Support following authentication method order combinations.
IV-10-3-2 Port Setting This page allows user to configure authentication manger port settings To display the authentication manager Port Setting web page, click Security > Authentication Manager > Port Setting. Figure 106 - Security > Authentication Manager > Port Setting Item Port Description Port Support following authentication port control types. Disable: Disable authentication function and all clients have network accessibility.
In Multiple Authentication mode, total host number cannot not exceed max hosts number. Common Timer After re-authenticate period, host will return to initial state and need (Reauthentication) to pass authentication procedure again. If no packet from the authenticated host, the inactive timer will Common Timer increase. After inactive timeout, the host will be unauthorized and (Inactive) corresponding session will be deleted. In multi-host mode, the packet is counting on the authorized host only.
Click "Edit" button to view Edit Port Setting menu. Figure 107 - Security > Authentication Manager > Port Setting > Edit Port Setting Item Port Description Port Name. Support following authentication port control types. Disable: Disable authentication function and all clients have network accessibility.Force Authorized: Port is force authorized and all clients have network accessibility. Port Control Force Unauthorized: Port is force unauthorized and all clients have no network accessibility.
In Multiple Authentication mode, total host number cannot not exceed max hosts number. Max Hosts Common Timer After re-authenticate period, host will return to initial state and need to pass authentication procedure again. If no packet from the authenticated host, the inactive timer will increase. After inactive timeout, the host will be unauthorized and corresponding session will be deleted. In multi-host mode, the packet is counting on the authorized host only and not all packets on the port.
Item Session ID Port MAC Address Description Session ID is unique of each session. Port name which the host located. Host MAC address. Show current authenticating type 802.1x: Use IEEE 802.1X to do authenticating Current Type MAC-Based: Use MAC-Based authentication to do authenticating. WEB-Based: Use WEB-Based authentication to do authenticating.
IV-10-4 Port Security This page allows user to configure port security settings for each interface. When port security is enabled on interface, action will be perform once learned MAC address over limitation. To display Port Security web page, click Security > Port Security.
Item State Port State MAC Address Action Description Enable/Disable the port security function. Select one or multiple ports to configure. Select the status of port security Disable: Disable port security function. Enable: Enable port security function. Specify the number of how many mac addresses can be learned. Select the action if learned mac addresses Forward: Forward this packet whose SMAC is new to system and exceed the learning-limit number.
IV-10-5 Protected Port This page allows user to configure protected port setting to prevent the selected ports from communication with each other. Protected port is only allowed to communicate with unprotected port. In other words, protected port is not allowed to communicate with another protected port. To display Protected Port web page, click Security > Protected Port.
Item Port State Description Port Name. Port protected admin state. Protected: Port is protected. Unprotected: Port is unprotected Click "Edit" button to view Edit Protected Port menu. Figure 112 - Security > Protected Port > Edit Protected Port Item Port State Description Selected port list. Port protected admin state. Protected: Enable protecting function. Unprotected: Disable protecting function.
IV-10-6 Storm Control To display Storm Control global setting web page, click Security > Storm Control. Figure 113 - Security > Storm Control Item Mode(Unit) IFG Description Select the unit of storm control Packet / Sec: storm control rate calculates by packet-based Kbits / Sec: storm control rate calculates by octet-based. Select the rate calculates w/o preamble & IFG (20 bytes) Excluded: exclude preamble & IFG (20 bytes) when count ingress storm control rate.
Included: include preamble & IFG (20 bytes) when count ingress storm control rate. Click "Edit" button to view Edit Port Setting menu. Figure 114 - Security > Storm Control > Edit Port Setting Item Port Description Select the setting ports. Select the state of setting State Enable: Enable the storm control function. Enable: Enable the storm control function of Broadcast packet.
IV-10-7 DoS A Denial of Service (DoS) attack is a hacker attempt to make a device unavailable to its users. DoS attacks saturate the device with external communication requests, so that it cannot respond to legitimate traffic. These attacks usually lead to a device CPU overload. The DoS protection feature is a set of predefined rules that protect the network from malicious attacks. The DoS Security Suite Settings enables activating the security suite.
IV-10-7-1 Property To display Dos Global Setting web page, click Security > Dos > Property. Figure 115 - Security > DoS > Property Item POD Land UDP Blat Description Avoids ping of death attack. Drops the packets if the source IP address is equal to the destination IP address.
TCP Blat DMAC = SMAC destination port. Drops the packages if the TCP source port is equal to the TCP destination port. Drops the packets if the destination MAC address is equal to the source MAC address. Drops the packets with NULL scan. Drops the packets if the sequence number is zero, and the FIN, URG and PSH bits are set. Null Scan Attach X-Mas Scan Attack TCP SYN-FIN Drops the packets with SYN and FIN bits set.
IV-10-7-2 Port Setting To configure and display the state of DoS protection for interfaces, click Security > DoS > Port Setting. Figure 116 - Security > DoS > Port Setting Item Port State Description Interface or port number. Enable/Disable the DoS protection on the interface.
IV-10-8 DHCP Snooping Use the DHCP Snooping pages to configure settings of DHCP Snooping. IV-10-8-1 Property This page allows user to configure global and per interface settings of DHCP Snooping. To display property page, click Security > DHCP Snooping > Property.
Item State Description Set checkbox to enable/disable DHCP Snooping function. Select VLANs in left box then move to right to enable DHCP Snooping. Or select VLANs in right box then move to left to disable DHCP Snooping. VLAN Port Setting Table Port Trust Verify Chaddr Rate Limit Display port ID. Display enable/disabled trust attribute of interface. Display enable/disabled chaddr validation attribute of interface. Display rate limitation value of interface.
IV-10-8-2 Statistics This page allows user to browse all statistics that recorded by DHCP snooping function. To view the Statistics menu, navigate to Security > DHCP Snooping > Statistics. Figure 119 - Security > DHCP Snooping > Statistics Item Port Forwarded Description Display port ID. Display how many packets forwarded normally.
Chaddr Check Drop Display how many packets dropped by chaddr validation. Untrusted Port Display how many DHCP server packets that are received by Drop untrusted port dropped. Untrusted Port Display how many packets dropped by untrusted port with option82 with Option82 checking. Drop Invalid Drop Display how many packets dropped by invalid checking.
IV-10-8-3 Option82 Property This page allows user to set string of DHCP option82 remote ID filed. The string will attach in option82 if option inserted. To display Option82 Property page, click Security > DHCP Snooping > Option82 Property. Figure 120 - Security > DHCP Snooping > Option82 Property Item User Defined Description Set checkbox to enable user-defined remote-ID. By default, remote ID is switch mac in byte order.
Remote ID Input user-defined remote ID. Only available when enable user-define remote ID. Port Setting Table Port Display port ID. State Display option82 enable/disable status of interface. Allow untrusted Display allow untrusted action of interface. Click "Edit" button to view Edit Port Setting menu. Figure 121 - DHCP Snooping > Option82 Property > Edit Port Setting Item Port State Description Display selected port to be edited Set checkbox to enable/disable option82 function of interface.
IV-10-8-4 Option82 Circuit ID This page allows user to set string of DHCP option82 circuit ID filed. The string will attach in option82 if option inserted. To display Option82 Circuit ID page, click Security > DHCP Snooping > Option82 Circuit ID. Figure 122 - Security > DHCP Snooping > Option82 Circuit ID Item Description Port Display port ID of entry. VLAN Display associate VLAN of entry. Circuit ID Display circuit ID string of entry.
Item Port VLAN Circuit ID Description Select port from list to associate to CID entry. Only available on Add dialog. Input VLAN ID to associate to circuit ID entry. VLAN ID is not mandatory. Only available on Add dialog. Input String as circuit ID. Packets match port and VLAN will be inserted circuit ID.
IV-10-9 IP Source Guard Use the IP Source Guard pages to configure settings of IP Source Guard. IV-10-9-1 Port Setting Use the IP Source Guard pages to configure settings of IP Source Guard. To display Port Setting page, click Security > IP Source Guard > Port Setting.
Item Port State Verify Source Current Binding Entry Max Binding Entry Description Display port ID. Display IP Source Guard enable/disable status of interface. Display mode of IP Source Guard verification Display current binding entries of a interface. Display the number of maximum binding entry of interface. Click "Edit" button to view the Edit Port Setting menu.
IV-10-9-2 IMPV Binding This page allows user to add static IP source guard entry and browse all IP source guard entries that learned by DHCP snooping or statically create by user. To display IPMV Binding page, click Security > IP Source Guard > IMPV Binding. Figure 126 - Security > IP Source Guard > IMPV Binding Item Port VLAN MAC Address IP Address Binding Type Lease Time Description Display port ID of entry. Display VLAN ID of entry. Display MAC address of entry.
Click "Add" or “Edit” button to view the Add/Edit IP-MAC-Port-VLAN Binding menu. Figure 127 - Security > IP Source Guard > Add/Edit IP-MAC-Port-VLAN Binding Item Port VLAN Binding MAC Address IP Address Description Select port from list of a binding entry. Specify a VLAN ID of a binding entry. Select matching mode of binding entry IP-MAC-Port-VLAN: packet must match IP address、MAC address、 Port and VLAN ID. IP-Port-VLAN: packet must match IP address or subnet、Port and VLAN ID. Input MAC address.
IV-10-9-3 Save Database This page allows user to configure DHCP snooping database which can backup and restore dynamic DHCP snooping entries. To display Save Database page, click Security > DHCP Snooping > Save Database. Figure 128 - Security > IP Source Guard > Save Database Item Type Filename Address Type Server Address Write Delay Timeout Description Select the type of database agent. None: Disable database agent service. Flash: Save DHCP dynamic binding entries to flash.
IV-11 ACL Use the ACL pages to configure settings for the switch ACL features.. IV-11-1 MAC ACL This page allows user to add or delete ACL rule. A rule cannot be deleted if under binding. To display MAC ACL page, click ACL > MAC ACL. Figure 129 - ACL > MAC ACL Item ACL Name ACL Name Rule Port Description Input MAC ACL name. Display MAC ACL name. Display the number ACE rule of ACL. Display the port list that bind this ACL.
IV-11-2 MAC ACE This page allows user to add, edit or delete ACE rule. An ACE rule cannot be edited or deleted if ACL under binding. New ACE cannot be added if ACL under binding. To display MAC ACE page, click ACL > MAC ACE. Figure 130 - ACL > MAC ACE Item ACL Name Sequence Action Source MAC Destination MAC Ethertype VLAN ID 802.1p Value 802.1p Mask Description Select the ACL name to which an ACE is being added. Display the sequence of ACE. Display the action of ACE.
Click “Edit” button to view the Edit ACE menu. Figure 131 - ACL > Edit ACE Item ACL Name Sequence Action Source MAC Destination MAC Description Display the ACL name to which an ACE is being added.. Specify the sequence of the ACE. ACEs with higher sequence are processed first (1 is the highest priority). Only available on Add Dialog. Select the action after ACE match packet. Permit: Forward packets that meet the ACE criteria. Deny: Drop packets that meet the ACE criteria.
Ethertype VLAN 802.1p IV-11-3 Any: All destination addresses are acceptable. User Defined: Only a destination address or a range of destination addresses which users define are acceptable. Enter the destination MAC address and mask to which will be matched. Select the type for Ethernet frame type. Any: All Ethernet frame type is acceptable. User Defined: Only an Ethernet frame type which users define is acceptable. Enter the Ethernet frame type value to which will be matched.
Item ACL Name ACL Name Rule Port IV-11-4 Description Input IPv4 ACL name. Display IPv4 ACL name. Display the number ACE rule of ACL. Display the port list that bind this ACL. IPv4 ACE This page allows user to add, edit or delete ACE rule. An ACE rule cannot be edited or deleted if ACL under binding. New ACE cannot be added if ACL under binding. To display IPv4 ACE page, click ACL > IPv4 ACE.
Click "Add" or “Edit” button to view the Add/Edit ACE menu.
Item ACL Name Description Display the ACL name to which an ACE is being added. Specify the sequence of the ACE. ACEs with higher sequence are Sequence processed first (1 is the highest sequence). Only available on Add dialog. Select the action for a match. Permit: Forward packets that meet the ACE criteria. Deny: Drop packets that meet the ACE criteria. Action Shutdown: Drop packets that meet the ACE criteria, and disable the port from where the packets were received.
configured (shared between source and destination ports). TCP and UDP protocols each have eight port ranges. Select one or more TCP flags with which to filter packets. Filtered packets are either forwarded or dropped. Filtering packets by TCP flags TCP Flags increases packet control, which increases network security. Only available when protocol is TCP. Select the type of service for a match. Any: All types of service are acceptable.
IV-11-5 ACL Binding This page allows user to bind or unbind ACL rule to or from interface. IPv4 and Ipv6 ACL cannot be bound to the same port simultaneously. To display ACL Binding page, click ACL > ACL Binding.
Item Port MAC ACL IPv4 ACL IPv6 ACL Description Display port entry ID. Display mac ACL name that bound of interface. Empty means no rule bound. Display ipv4 ACL name that bound of interface. Empty means no rule bound. Display ipv6 ACL name that bound of interface. Empty means no rule bound. Click “Edit” button to view the Edit ACL Binding menu. Figure 136 - ACL > Edit ACL Binding Item Port MAC ACL IPv4 ACL IPv6 ACL Description Display port entry ID. Select mac ACL name from list to bind.
IV-12 QoS Use the QoS pages to configure settings for the switch QoS interface. IV-12-1 General Use the QoS general pages to configure settings for general purpose.
IV-12-1-1 Property To display Property web page, click QoS > General > Property.
Item State Trust Description Set checkbox to enable/disable QoS. Select QoS trust mode CoS: Traffic is mapped to queues based on the CoS field in the VLAN tag, or based on the per-port default CoS value (if there is no VLAN tag on the incoming packet), the actual mapping of the CoS to queue can be configured on port setting dialog. CoS-DSCP: Uses the trust CoS mode for non-IP traffic and trust DSCP mode for IP traffic. IP Precedence: Traffic is mapped to queues based on the IP precedence.
Item Port CoS Trust Remarking (CoS) Remarking (IP Precedence) Description Selected port list. Set default CoS/802.1p priority value for the selected ports. Set checkbox to enable/disable port trust state. Set checkbox to enable/disable port CoS remarking. Set checkbox to enable/disable port IP Precedence remarking.
IV-12-1-2 Queue Scheduling The switch supports eight queues for each interface. Queue number 8 is the highest priority queue. Queue number 1 is the lowest priority queue. There are two ways of determining how traffic in queues is handled, Strict Priority (SP) and Weighted Round Robin (WRR). ‧ Strict Priority (SP)—Egress traffic from the highest priority queue is transmitted first.
Item Queue Strict Priority WRR Weight WRR Bandwidth IV-12-1-3 Description Queue ID to configure. Set queue to strict priority type. Set queue to Weight round robin type. If the queue type is WRR, set the queue weight for the queue. Percentage of WRR queue bandwidth. CoS Mapping The CoS to Queue table determines the egress queues of the incoming packets based on the 802.1p priority in their VLAN tags. For incoming untagged packets, the 802.1p priority will be the default CoS/802.
Item Description CoS to Queue Mapping CoS CoS value. Queue Select queue id for the CoS value. Queue to CoS Mapping Queue Queue ID CoS Select CoS value for the queue id. IV-12-1-4 IP Precedence Mapping This page allows user to configure IP Precedence to Queue mapping and Queue to IP Precedence mapping. To display IP Precedence Mapping web page, click QoS > General > IP Precedence Mapping.
Item Description IP Precedence to Queue Mapping IP Precedence IP Precedence value. Queue Queue value which IP Precedence is mapped. Queue to IP Precedence Mapping Queue Queue ID. IP Precedence IP Precedence value which queue is mapped.
IV-12-2 Rate Limit Use the Rate Limit pages to define values that determine how much traffic the switch can receive and send on specific port or queue. IV-12-2-1 Ingress/Egress Port This page allows user to configure ingress port rate limit and egress port rate limit. The ingress rate limit is the number of bits per second that can be received from the ingress interface. Excess bandwidth above this limit is discarded.
Figure 142 - QoS > Rate Limit > Ingress / Egress Port Item Port Ingress (State) Ingress (Rate) IP Precedence Egress (State) Description Port name. Port ingress rate limit state Enabled: Ingress rate limit is enabled Disabled: Ingress rate limit is disabled Port ingress rate limit value if ingress rate state is enabled. IP Precedence value which queue is mapped.
Egress (Rate) Enabled: Egress rate limit is enabled Disabled: Egress rate limit is disabled Port egress rate limit value if egress rate state is enabled. Click "Edit" button to view the Ingress / Egress Port menu. Figure 143 - QoS > Rate Limit > Ingress / Egress Port Item Port Ingress Egress Description Select port list. Set checkbox to enable/disable ingress rate limit. If ingress rate limit is enabled, rate limit value need to be assigned. Set checkbox to enable/disable egress rate limit.
IV-13 Diagnostics Use the Diagnostics pages to configure settings for the switch diagnostics feature or operating diagnostic utilities. IV-13-1 IV-13-1-1 Logging Property To enable/disable the logging service, click Diagnostic > Logging > Property. Figure 144 - Diagnostics > Logging > Property Item State Description Enable/Disable the global logging services. When the logging service is enabled, logging configuration of each destination rule can be individually configured.
State Enable/Disable the flash logging service. Minimum Severity The minimum severity for the flash loggin. IV-13-1-2 Remote Server To configure the remote logging server, click Diagnostic > Logging > Remote Server. Figure 145 - Diagnostics > Logging > Remote Server Item Server Address Server Ports Description The IP address of the remote logging server. The port number of the remote logging server. The facility of the logging messages.
IV-13-2 Mirroring To display Port Mirroring web page, click Diagnostics > Mirroring. Figure 146 - Diagnostics > Mirroring Item Session ID State Monitor Port Ingress port Egress port Description Select mirror session ID. Select mirror session state : port-base mirror or disable Enabled: Enable port based mirror Disabled: Disable mirror. Select mirror session monitor port, and select whether normal packet could be sent or received by monitor port. Select mirror session source rx ports.
Click "Edit" button to view the Edit Mirroring menu. Figure 147 - Diagnostics > Mirroring > Edit Mirroring Item Session ID State Monitor Port Ingress port Egress port Description Selected mirror session ID. Select mirror session state : port-base mirror or disable Enabled: Enable port based mirror Disabled: Disable mirror. Select mirror session monitor port, and select whether normal packet could be sent or received by monitor port. Select mirror session source rx ports.
IV-13-3 Ping For the ping functionality, click Diagnostic > Ping. Figure 148 - Diagnostics > Ping Item Address Type Server Address Count Description Specify the address type to “Hostname”or “IPv4”. Specify the Hostname/IPv4 address for the remote logging server. Specify the numbers of each ICMP ping request.
IV-13-4 Traceroute For trace route functionality, click Diagnostic > Traceroute. Figure 149 - Diagnostics > Traceroute Item Address Type Server Address Time to Live Description Specify the address type to “Hostname”or “IPv4”. Specify the Hostname/IPv4 address for the remote logging server. Specify the max hops of hosts for traceroute.
IV-13-5 Copper Test For copper length diagnostic, click Diagnostic > Copper Test. Figure 150 - Diagnostics > Logging>Copper Test Item Description Port Specify the interface for the copper test. Copper Test Result Port The interface for the copper test. The status of copper test. It include: OK: Correctly terminated pair. Short Cable: Shorted pair. Result Open Cable: Open pair, no link partner. Impedance Mismatch: Terminating impedance is not in the reference range.
IV-13-6 Fiber Module The Optical Module Status page displays the operational information reported by the Small Form-factor Pluggable (SFP) transceiver. Some information may not be available for SFPs without the supports of digital diagnostic monitoring standard SFF-8472. To display the Optical Module Diagnostic page, click Diagnostic > Fiber Module.
Click "Detail" button to view the Fiber Module Status menu Figure 152 - Diagnostics > Logging>Fiber Module>Fiber Module Status IV-13-7 UDLD Use the UDLD pages to configure settings of UDLD function. IV-13-7-1 Property This page allows user to configure global and per interface settings of UDLD.
To display Property page, click Diagnostics > UDLD > Property.
Item Message Time Port Mode Bidirectional State Operational Status Neighbor Description Input the interval for sending message. Range is 1 -90 seconds. Display port ID of entry. Display UDLD running mode of interface. Display bidirectional state of interface. Display operational status of interface. Display the number of neighbor of interface.
Item Entry Expiration Time Current Neighbor State Device ID Device Name Port ID Message Interval Timeout Interval Description Display entry index. Display expiration time before age out. Display neighbor current state. Display neighbor device ID. Display neighbor device name. Display neighbor port ID that connected. Display neighbor message interval. Display neighbor timeout interval. IV-14 Management Use the Management pages to configure settings for the switch management features.
Click "Add" or “Edit” button to view the Add/Edit User Account menu. Figure 157 - Management > User Account > Add/Edit User Account Item Username Password Confirm Password Privilege Description User name of the account. Set password of the account. Set the same password of the account as in “Password” field. Select privilege level for new account. Admin: Allow to change switch settings. Privilege value equals to 15. User: See switch settings only. Not allow to change it. Privilege level equals to 1.
IV-14-2 IV-14-2-1 Fireware Upgrade / Backup This page allows user to upgrade or backup firmware image through HTTP or TFTP server. For Upgrade action and HTTP method: Figure 158 - Management > Firmware > Upgrade (Default Method: HTTP) Item Action Method Filename Description Firmware operations Upgrade: Upgrade firmware from remote host to DUT. Backup: Backup firmware image from DUT to remote host. Firmware upgrade / backup method. TFTP: Using TFTP to upgrade/backup firmware.
Item Action Method Address Type Server Address Filename Description Firmware operations Upgrade: Upgrade firmware from remote host to DUT Backup: Backup firmware image from DUT to remote host Firmware upgrade / backup method TFTP: Using TFTP to upgrade/backup firmware. HTTP: Using WEB browser to upgrade/backup firmware. Specify TFTP server address type Hostname: Use domain name as server address IPv4: Use IPv4 as server address IPv6: Use IPv6 as server address Specify TFTP server address.
For Backup action and TFTP method: Figure 161 - Management > Firmware > Backup (Method: TFTP) Item Action Method Firmware Address Type Server Address Filename Description Firmware operations Upgrade: Upgrade firmware from remote host to DUT Backup: Backup firmware image from DUT to remote host Firmware upgrade / backup method TFTP: Using TFTP to upgrade/backup firmware. HTTP: Using WEB browser to upgrade/backup firmware.
IV-14-2-2 Active Image This page allows user to select firmware image on next booting and show firmware information on both flash partitions. To display the Active Image web page, click Management > Firmware > Active Image. Figure 162 - Management > Firmware > Active Image Item Active Image Firmware Version Name Size Created Description Select firmware image to use on next booting Firmware flash partition name. Firmware version. Firmware name. Firmware image size. Firmware image created date.
IV-14-3 Configuration IV-14-3-1 Upgrade / Backup This page allows user to upgrade or backup configuration file through HTTP or TFTP server.
For Upgrade action and TFTP method: Figure 164 - Management > Configuration > Upgrade (Method: TFTP) Item Action Method Configuration Address Type Server Address Filename Description Configuration operations Upgrade: Upgrade firmware from remote host to DUT Backup: Backup firmware image from DUT to remote host Configuration upgrade / backup method TFTP: Using TFTP to upgrade/backup firmware HTTP: Using WEB browser to upgrade/backup firmware Configuration types Running Configuration: Merge to
To display firmware upgrade or backup web page, click Management > Configuration > Upgrade/Backup.
For Backup action and TFTP method: Figure 166 - Management > Configuration > Backup (Method: TFTP) Item Action Method Configuration Address Type Server Address Filename Description Configuration operations Upgrade: Upgrade firmware from remote host to DUT Backup: Backup firmware image from DUT to remote host Configuration upgrade / backup method TFTP: Using TFTP to upgrade/backup firmware HTTP: Using WEB browser to upgrade/backup firmware Configuration types Running Configuration: Backup runn
IV-14-3-2 Save Configuration This page allows user to manage configuration file saved on DUT and click “Restore Factory Default” button to restore factory defaults. To display the Save Configuration web page, click Management > Configuration > Save Configuration. Figure 167 - Management > Configuration > Save Configuration Item Source File Destination File IV-14-4 IV-14-4-1 Description Source file types Running Configuration: Copy running configuration file to destination.
Item View OID Subtree Type IV-14-4-2 Description The SNMP view name. Its maximum length is 30 characters Specify the ASN.1 subtree object identifier (OID) to be included or excluded from the SNMP view Include or exclude the selected MIBs in the view Group To configure and display the SNMP group settings, click Management > SNMP > Group.
Click "Add" or “Edit” button to view the Add/Edit Group menu. Figure 170 - Management > SNMP > Group > Add/Edit Group Item Group Version Description Specify SNMP group name, and the maximum length is 30 characters. Spedify SNMP version SNMPv1: SNMP Version 1.
Security Level SNMPv2: Community-based SNMP Version 2. SNMPv3: User security model SNMP version 3. Specify SNMP security level No Security : Specify that no packet authentication is performed. Authentication: Specify that no packet authentication without encryption is performed. Authentication and Privacy: Specify that no packet authentication with encryption is performed. View Read Write Notify Select read view name if Read is checked. Select write view name, if Write is checked.
Click "Add" or “Edit” button to view the Add/Edit Community menu. Figure 172 - Management > SNMP > Group > Add/Edit Community Item Community Type View Access Group Description The SNMP community name. Its maximum length is 20 characters. SNMP Community mode Basic: SNMP community specifies view and access right. Advanced: SNMP community specifies group. Specify the SNMP view to define the object available to the community. SNMP access mode Read-Only: Read only. Read-Write: Read and write.
IV-14-4-4 User To configure and display the SNMP users, click Management > SNMP > User. Figure 173 - Management > SNMP > User Item User Group Security Level Authentication Method Privacy Method Description Specify the SNMP user name on the host that connects to the SNMP agent. The max character is 30 characters. For the SNMP v1 or v2c, the user name must match the community name. Specify the SNMP group to which the SNMP user belongs.
Click "Add" or “Edit” button to view Add/Edit User menu.
Item User Group Security Level Description Specify the SNMP user name on the host that connects to the SNMP agent. The max character is 30 characters. Specify the SNMP group to which the SNMP user belongs. SNMP privilege mode No Security: Specify that no packet authentication is performed. Authentication: Specify that no packet authentication without encryption is performed. Authentication and Privacy: Specify that no packet authentication with encryption is performed.
IV-14-4-5 Engine ID To configure and display SNMP local and remote engine ID, click Management > SNMP > Engine ID. Figure 175 - Management > SNMP > Engine ID Item Local Engine ID Description If checked “User Defined”, the local engine ID is configure by user, else use the default Engine ID which is made up of MAC and Engine ID Enterprise ID. The user defined engine ID is range 10 to 64 hexadecimal characters, and the hexadecimal number must be divided by 2.
Click "Add" button to view Add Remote Engine ID menu. Figure 176 - Management > SNMP > Add Engine ID Item Address Type Server Address Engine ID Description Remote host address type for Hostname/IPv4/IPv6. Remote host. Specify Remote SNMP engine ID. The engine ID is range10 to 64 hexadecimal characters, and the hexadecimal number must be divided by 2. Click “Edit” button to view Edit Remote Engine ID menu.
IV-14-4-6 Trap Event To configure and display SNMP trap event, click Management > SNMP > Trap Event. Figure 178 - Management > SNMP > Trap Event Item Authentication Failure Link Up/Down Cold Start Warm Start Description SNMP authentication failure trap, when community not match or user authentication password not match. Port link up or down trap. Device reboot configure by user trap. Device reboot by power down trap.
Type Community/User UDP Port Timeout Security Level SNMPv2: SNMP Version 2 notification. SNMPv3: SNMP Version 3 notification. Notification Type Trap: Send SNMP traps to the host. Inform: Send SNMP informs to the host. SNMP community/user name for notification. If version is SNMPv3 the name is user name, else is community name. Specify the UDP port number. Specify the SNMP informs timeout. SNMP trap packet security level No Security: Specify that no packet authentication is performed.
Item Address Type Server Address Description Notify recipients host address type. IP address or the hostname of the SNMP trap recipients. Specify SNMP notification version SNMPv1: SNMP Version 1 notification. Version SNMPv2: SNMP Version 2 notification. SNMPv3: SNMP Version 3 notification. Notification Type Type Trap: Send SNMP traps to the host. Inform: Send SNMP informs to the host.(version 1 have no inform) SNMP community/user name for notification.
Click "Edit" button to view the Edit Notification menu. Figure 181 - Management > SNMP > Notification > Edit Notification Item Server Address Description Edit SNMP notify recipients address Specify SNMP notification version SNMPv1: SNMP Version 1 notification. Version SNMPv2: SNMP Version 2 notification. SNMPv3: SNMP Version 3 notification. Notification Type Type Trap: Send SNMP traps to the host. Inform: Send SNMP informs to the host.
Timeout Retry is 162, else user configure. Specify the SNMP informs timeout, if “use default” checked the value is 15, else user configure. Specify the SNMP informs retry count, if “use default” checked the value is 3, else user configure.
COPYRIGHT Copyright Edimax Technology Co., Ltd. all rights reserved. No part of this publication may be reproduced, transmitted, transcribed, stored in a retrieval system, or translated into any language or computer language, in any form or by any means, electronic, mechanical, magnetic, optical, chemical, manual or otherwise, without the prior written permission from Edimax Technology Co., Ltd. Edimax Technology Co., Ltd.
Federal Communication Commission Interference Statement This equipment has been tested and found to comply with the limits for a Class B digital device, pursuant to Part 15 of FCC Rules. These limits are designed to provide reasonable protection against harmful interference in a residential installation. This equipment generates, uses, and can radiate radio frequency energy and, if not installed and used in accordance with the instructions, may cause harmful interference to radio communications.
EU Declaration of Conformity English: This equipment is in compliance with the essential requirements and other relevant provisions of Directive 2014/30/EU. Français: Cet équipement est conforme aux exigences essentielles et autres dispositions de la directive 2014/30/EU. Čeština: Toto zařízení je v souladu se základními požadavky a ostatními příslušnými ustanoveními směrnic 2014/30/EU. Polski: Urządzenie jest zgodne z ogólnymi wymaganiami oraz szczególnymi warunkami określonymi Dyrektywą UE 2014/30/EU.
Declaration of Conformity We, Edimax Technology Co., Ltd., declare under our sole responsibility, that the equipment described below complies with the requirements of the European R&TTE directives. Equipment: 16-port GbE Switch + 4 Combo GbE Ports with 16 PoE ports Model No.
Declaration of Conformity We, Edimax Technology Co., Ltd., declare under our sole responsibility, that the equipment described below complies with the requirements of the European R&TTE directives. Equipment: 24-port GbE Switch+4 Combo Ports with 24 PoE ports Model No.
Notice According to GNU General Public License Version 2 This product includes software that is subject to the GNU General Public License version 2. The program is free software and distributed without any warranty of the author. We offer, valid for at least three years, to give you, for a charge no more than the costs of physically performing source distribution, a complete machine-readable copy of the corresponding source code.
intact all the notices that refer to this License and to the absence of any warranty; and give any other recipients of the Program a copy of this License along with the Program. You may charge a fee for the physical act of transferring a copy, and you may at your option offer warranty protection in exchange for a fee. 2.
6. Each time you redistribute the Program (or any work based on the Program), the recipient automatically receives a license from the original licensor to copy, distribute or modify the Program subject to these terms and conditions. You may not impose any further restrictions on the recipients’ exercise of the rights granted herein. You are not responsible for enforcing compliance by third parties to this License. 7.