Owner manual
Table Of Contents
- Contents
- Figures
- Tables
- Preface
- Section I
- Basic Operations
- Chapter 1
- Overview
- Chapter 2
- Enhanced Stacking
- Chapter 3
- SNMPv1 and SNMPv2c
- Chapter 4
- MAC Address Table
- Chapter 5
- Static Port Trunks
- Chapter 6
- LACP Port Trunks
- Chapter 7
- Port Mirror
- Section II
- Advanced Operations
- Chapter 8
- File System
- Chapter 9
- Event Logs and the Syslog Client
- Chapter 10
- Classifiers
- Chapter 11
- Access Control Lists
- Chapter 12
- Class of Service
- Chapter 13
- Quality of Service
- Chapter 14
- Denial of Service Defenses
- Chapter 15
- Power Over Ethernet
- Section III
- Snooping Protocols
- Chapter 16
- IGMP Snooping
- Chapter 17
- MLD Snooping
- Chapter 18
- RRP Snooping
- Chapter 19
- Ethernet Protection Switching Ring Snooping
- Section IV
- SNMPv3
- Chapter 20
- SNMPv3
- Section V
- Spanning Tree Protocols
- Chapter 21
- Spanning Tree and Rapid Spanning Tree Protocols
- Chapter 22
- Multiple Spanning Tree Protocol
- Section VI
- Virtual LANs
- Chapter 23
- Port-based and Tagged VLANs
- Chapter 24
- GARP VLAN Registration Protocol
- Chapter 25
- Multiple VLAN Modes
- Chapter 26
- Protected Ports VLANs
- Chapter 27
- MAC Address-based VLANs
- Section VII
- Routing
- Chapter 28
- Internet Protocol Version 4 Packet Routing
- Supported Platforms
- Overview
- Routing Interfaces
- Interface Names
- Static Routes
- Routing Information Protocol (RIP)
- Default Routes
- Equal-cost Multi-path (ECMP) Routing
- Routing Table
- Address Resolution Protocol (ARP) Table
- Internet Control Message Protocol (ICMP)
- Routing Interfaces and Management Features
- Local Interface
- AT-9408LC/SP AT-9424T/GB, and AT-9424T/SP Switches
- Routing Command Example
- Non-routing Command Example
- Upgrading from AT-S63 Version 1.3.0 or Earlier
- Chapter 29
- BOOTP Relay Agent
- Chapter 30
- Virtual Router Redundancy Protocol
- Section VIII
- Port Security
- Chapter 31
- MAC Address-based Port Security
- Chapter 32
- 802.1x Port-based Network Access Control
- Section IX
- Management Security
- Chapter 33
- Web Server
- Chapter 34
- Encryption Keys
- Chapter 35
- PKI Certificates and SSL
- Chapter 36
- Secure Shell (SSH)
- Chapter 37
- TACACS+ and RADIUS Protocols
- Chapter 38
- Management Access Control List
- Appendix A
- AT-S63 Management Software Default Settings
- Address Resolution Protocol Cache
- Boot Configuration File
- BOOTP Relay Agent
- Class of Service
- Denial of Service Defenses
- 802.1x Port-Based Network Access Control
- Enhanced Stacking
- Ethernet Protection Switching Ring (EPSR) Snooping
- Event Logs
- GVRP
- IGMP Snooping
- Internet Protocol Version 4 Packet Routing
- MAC Address-based Port Security
- MAC Address Table
- Management Access Control List
- Manager and Operator Account
- Multicast Listener Discovery Snooping
- Public Key Infrastructure
- Port Settings
- RJ-45 Serial Terminal Port
- Router Redundancy Protocol Snooping
- Server-based Authentication (RADIUS and TACACS+)
- Simple Network Management Protocol
- Simple Network Time Protocol
- Spanning Tree Protocols (STP, RSTP, and MSTP)
- Secure Shell Server
- Secure Sockets Layer
- System Name, Administrator, and Comments Settings
- Telnet Server
- Virtual Router Redundancy Protocol
- VLANs
- Web Server
- Appendix B
- SNMPv3 Configuration Examples
- Appendix C
- Features and Standards
- 10/100/1000Base-T Twisted Pair Ports
- Denial of Service Defenses
- Ethernet Protection Switching Ring Snooping
- Fiber Optic Ports (AT-9408LC/SP Switch)
- File System
- DHCP and BOOTP Clients
- Internet Protocol Multicasting
- Internet Protocol Version 4 Routing
- MAC Address Table
- Management Access and Security
- Management Access Methods
- Management Interfaces
- Management MIBs
- Port Security
- Port Trunking and Mirroring
- Spanning Tree Protocols
- System Monitoring
- Traffic Control
- Virtual LANs
- Virtual Router Redundancy Protocol
- Appendix D
- MIB Objects
- Index
AT-S63 Management Software Features Guide
517
I
IEEE 802.1D standard 219
IGMP snooping. See Internet Group Management Protocol
(IGMP) snooping
interface monitoring 348
Internet Group Management Protocol (IGMP) snooping
default settings 458
described 183
supported platforms 182
Internet Protocol version 4 routing
see also routing interfaces, Routing Information Proto-
col (RIP), static routes
default settings 459
described 307
examples 330, 334
supported platforms 306
intrusion actions 359
See also MAC address-based port security
IP configuration 50
IP destination addresses in classifiers 116
IP DSCP in classifiers 115
IP options attack 170
IP protocol in classifiers 116
IP source addresses in classifiers 116
IP Type of Service in classifiers 115
K
key exchange algorithms 401
L
LACP. See Link Aggregation Control Protocol (LACP) port
trunk
land attack 166
limited port security mode 357
Link Aggregation Control Protocol (LACP) port trunk
adminkey parameter 89
aggregate trunks 87
aggregators 87
described 87
guidelines 91
load distribution methods 82, 90
port priority 89
system priority 88
load distribution methods
Link Aggregation Control Protocol (LACP) port trunk
82, 90
static port trunks 82
local interface 64, 327
local management session 45
locked port security mode 358
M
MAC address table 76
MAC address-based port security
default settings 460
described 357
guidelines 360
intrusion actions 359
levels 357
MAC address-based VLANs
described 293
egress ports 294
general steps 300
guidelines 301
multiple switches 297
supported platforms 292
management access control list
default setting 462
described 439
examples 442
guidelines 441
supported platforms 438
manager access levels 47
manager accounts 431
manager accounts, default settings 463
master switch
enhanced stacking 62
Virtual Router Redundancy Protocol (VRRP) 346
MD5 authentication algorithm 401
MD5 authentication protocol 206
MIB objects 495
MIB subtree view 209
MIB tree
diagram 208
RFC 208
MIB view 208
MIBs
supported 46, 495
viewing 205
mirroring traffic, denial of service defenses 171
MLD snooping. See Multicast Listener Discovery (MLD)
snooping
MSTI priority 243
MSTI. See Multiple Spanning Tree Instances (MSTI)
MSTP. See Multiple Spanning Tree Protocol (MSTP)
Multicast Listener Discovery (MLD) snooping
default settings 464
described 187
supported platforms 186
Multiple Spanning Tree Instances (MSTI) 234
guidelines 238
ports in multiple instances 240
Multiple Spanning Tree Protocol (MSTP)
associations 239
configuration name 241
connecting VLANs 249
default settings 473
described 233
diagram 236
MSTI priority, defined 243
regional root 243
regions 241
revision number 241
with STP and RSTP 244
multiple VLAN modes 281