Moxa PowerTrans Switch PT-7828 User’s Manual www.moxa.com/product Third Edition, September 2010 © 2010 Moxa Inc. All rights reserved. Reproduction without permission is prohibited.
Moxa PowerTrans Switch PT-7828 User’s Manual The software described in this manual is furnished under a license agreement and may be used only in accordance with the terms of that agreement. Copyright Notice Copyright © 2010 Moxa Inc. All rights reserved. Reproduction without permission is prohibited. Trademarks MOXA is a registered trademark of Moxa Inc. All other trademarks or registered marks in this manual belong to their respective manufacturers.
Table of Contents Chapter 1 Introduction ............................................................................................... 1-1 Overview .............................................................................................................................. 1-2 Package Checklist ................................................................................................................. 1-2 Software Features ............................................................................
Using Virtual LAN ............................................................................................................. 3-47 The Virtual LAN (VLAN) Concept ........................................................................ 3-47 Sample Applications of VLANs using PT-7828 ..................................................... 3-49 Configuring Virtual LAN ........................................................................................ 3-50 Using Multicast Filtering ........................
OSPF Interface Settings .......................................................................................... 3-85 OSPF Virtual Link Settings..................................................................................... 3-86 OSPF Area Aggregation Settings ............................................................................ 3-87 OSPF Neighbor Table ............................................................................................. 3-87 VRRP Settings .............................
1 Chapter 1 Introduction Welcome to the PowerTrans PT-7828, a managed redundant Gigabit Ethernet switch designed especially for connecting Ethernet-enabled devices for industrial field applications.
PT-7828 User’s Manual Introduction Overview The PowerTrans PT-7828 is certified for use in power substation automation systems (IEC 61850-3, IEEE 1613), traffic control systems (NEMA TS 2), and railway applications (EN50121-4). It can be used for Gigabit or Fast Ethernet backbones and supports redundant ring topologies. It also supports dual power inputs (24/48 VDC or 110/220 VDC/VAC) to increase the reliability of communication.
2 Chapter 2 Getting Started This chapter explains how the initial installation process for the PT-7828. There are three ways to access PT-7828’s configuration settings: the serial console, Telnet console, and web console. If you do not know the PT-7828’s IP address, you can open the serial console by connecting the PT-7828 to a PC’s COM port with a short serial cable. You can open the Telnet or web console over an Ethernet LAN or over the Internet.
PT-7828 User’s Manual Getting Started Serial Console Configuration (115200, None, 8, 1, VT100) NOTE NOTE y You cannot connect to the serial and Telnet console at the same time. y You can connect to the web console and another console (serial or Telnet) at the same time. However, it is strongly recommended that you do NOT do so. Following this advice will allow you to maintain better control over the PT-7828’s configuration. We recommend using PComm Terminal Emulator when opening the serial console.
PT-7828 User’s Manual Getting Started 3. The Property window should open. On the Communication Parameter tab for Ports, select the COM port that is being used for the console connection. Set the other fields as follows: 115200 for Baud Rate, 8 for Data Bits, None for Parity, and 1 for Stop Bits. 4. On the Terminal tab, select VT100 for Terminal Type. Click OK. 5. In the terminal window, the PT-7828 will prompt you to select a terminal type. Enter 1 to select ansi/vt100 and press Enter.
PT-7828 User’s Manual Getting Started 6. The serial console will prompt you to log in. Press Enter and select admin or user. Use the down arrow key on your keyboard to select the Password field and enter a password if desired. This password will be required to access any of the consoles (web, serial, Telnet). If you do not wish to create a password, leave the Password field blank and press Enter. 7. The Main Menu of the PT-7828’s serial console should appear.
PT-7828 User’s Manual Getting Started Configuration by Telnet Console You may open the PT-7828’s Telnet or web console over a network. This requires that the PC host and PT-7828 are on the same logical subnet. You may need to adjust your PC host’s IP address and subnet mask. By default, the PT-7828’s IP address is 192.168.127.253 and PT-7828’s subnet mask is 255.255.255.0 (for a Class C network). This means that your PC’s IP address must be set to 192.168.xxx.xxx for a subnet mask of 255.255.0.
PT-7828 User’s Manual Getting Started 3. The Telnet console will prompt you to log in. Press Enter and select admin or user. Use the down arrow key on your keyboard to select the Password field and enter a password if desired. This password will be required to access any of the consoles (web, serial, Telnet). If you do not wish to create a password, leave the Password field blank and press Enter. 4. The Main Menu of the PT-7828’s Telnet console should appear. 5.
PT-7828 User’s Manual 7. Getting Started Use the following keys on your keyboard to navigate the PT-7828’s Telnet console: Key Up, down, right, left arrow keys Tab Enter Space Esc NOTE Function Move the onscreen cursor Display and select options Toggle options Previous menu The Telnet console looks and operates in precisely the same manner as the serial console.
PT-7828 User’s Manual Getting Started After making sure that the PT-7828 is connected to the same LAN and logical subnet as your PC, open the PT-7828’s web console as follows: NOTE 1. Point your web browser to the PT-7828’s IP address by entering it in the Address or URL field. 2. The PT-7828’s web console will open, and you will be prompted to log in. Select the login account (admin or user) and enter the Password. This password will be required to access any of the consoles (web, serial, Telnet).
PT-7828 User’s Manual Getting Started Disabling Telnet and Browser Access If you are connecting the PT-7828 to a public network but do not intend to manage it over the network, we suggest disabling both the Telnet and web consoles. This is done through the serial console, by navigating to System Identification under Basic Settings.
3 Chapter 3 Featured Functions This chapter explains how to access PT-7828’s various configuration, monitoring, and administration functions. These functions can be accessed by serial, Telnet, or web console. The serial console can be used if you do not know PT-7828’s IP address and requires that you connect the PT-7828 to a PC COM port. The Telnet and web consoles can be opened over an Ethernet LAN or the Internet. The web console is the most user-friendly way to configure PT-7828.
PT-7828 User’s Manual Featured Functions Using System Log Using HTTPS/SSL Using Layer 3 Settings OSPF Settings Using System Log Using HTTPS/SSL 3-2
PT-7828 User’s Manual Featured Functions Configuring Basic Settings Basic Settings includes the most common settings required by administrators to maintain and control the PT-7828. System Identification System Identification items are displayed at the top of the web console and will be included in alarm emails. You can set the System Identification items to make it easier to identify different switches that are connected to your network. Switch Name Setting Max.
PT-7828 User’s Manual Featured Functions Password The PT-7828 provides two levels of configuration access. The admin account has read/write access of all configuration parameters, and the user account has read access only. The user account can only view the configuration, but will not be able to make modifications. ATTENTION By default, no password is assigned to the PT-7828’s web, Telnet, and serial consoles.
PT-7828 User’s Manual Featured Functions Accessible IP The PT-7828 uses an IP address-based filtering method to control access. You may add or remove IP addresses to limit access to the PT-7828. When the accessible IP list is enabled, only addresses on the list will be allowed access to the PT-7828. Each IP address and netmask entry can be tailored for different situations: y Grant access to one host with a specific IP address For example, enter IP address 192.168.1.1 with netmask 255.255.255.
PT-7828 User’s Manual Featured Functions Port Port settings are included to give the user control over port access, port transmission speed, flow control, and port type (MDI or MDIX). Enable Setting Checked Unchecked Description Factory Default This allows data transmission through the port. Enabled This immediately shuts off port access.
PT-7828 User’s Manual Featured Functions Speed Setting Auto 100M-Full 100M-Half 10M-Full 10M-Half Description Factory Default This allows the port to use the IEEE 802.3u protocol to negotiate with connected devices. The port and connected devices will determine the best speed for that connection. Auto Choose one of these fixed speed options if the connected Ethernet device has trouble auto-negotiating for line speed.
PT-7828 User’s Manual Featured Functions Auto IP Configuration Setting Disable By DHCP By BootP Description Select this to set the PT-7828’s IP address manually. The PT-7828’s IP address will be assigned automatically by the network’s DHCP server. The PT-7828’s IP address will be assigned automatically by the network’s BootP server. Factory Default Disable Switch IP Address Setting Description IP address for the PT-7828 This assigns the PT-7828’s IP address on a TCP/IP network. Factory Default 192.
PT-7828 User’s Manual Featured Functions Time The PT-7828 has a time calibration function based on information from an NTP server or user specified time and date. Functions such as automatic warning emails can therefore include time and date stamp. NOTE The PT-7828 does not have a real time clock. The user must update the Current Time and Current Date to set the initial time for PT-7828 after each reboot, especially when there is no NTP server on the LAN or Internet connection.
PT-7828 User’s Manual Featured Functions Offset Setting User-specified hour Description Factory Default This specifies the number of hours that the time None should be offset forward during Daylight Savings Time. System Up Time This indicates how long the PT-7828 remained up since the last cold start. The up time is indicated in seconds. Time Zone Setting Time zone NOTE Description This specifies the time zone, which is used to determine the local time offset from GMT (Greenwich Mean Time).
PT-7828 User’s Manual Featured Functions How Does an Ethernet Switch Affect 1588 Synchronization? The following content is taken from the NIST website at http://ieee1588.nist.gov/switch.htm: An Ethernet switch potentially introduces multi-microsecond fluctuations in the latency between the 1588 grandmaster clock and a 1588 slave clock. Uncorrected these fluctuations will cause synchronization errors.
PT-7828 User’s Manual Featured Functions PTP Setting Operation IEEE 1588/PTP Setting Operation Description Disable or enable IEEE 1588(PTP) operation Factory Default Disable Configuration IEEE 1588/PTP Setting Clock Mode Sync Interval Sub-domain Name Description Factory Default Support software-based IEEE 1588(PTP) mode Disable Period for sending synchronization message (in Disable seconds) Support _DFLT(Default) domain only _DFLT Status Setting Offset To Master (nsec) Grandmaster UUID Parent UUID
PT-7828 User’s Manual Featured Functions Clock Stratum The stratum number describes one measure of 4 the quality of a clock. Each clock is characterized by a stratum number used by the best master clock algorithm as one parameter of clock quality. Properties of the clock. DFLT Clock Identifier PTP Port Settings Setting Port Enable Port Status Description Enable or disable PTP port operation. Display PTP port real status.
PT-7828 User’s Manual Featured Functions After setting the desired paths and file names, click Activate to save the setting. Click Download to download the prepared file from the remote TFTP server, or click Upload to upload the desired file to the remote TFTP server. System File Update—By Local Import/Export Configuration File Click Export to save the PT-7828’s configuration file to the local host. Log File Click Export to save the PT-7828’s log file to the local host.
PT-7828 User’s Manual Featured Functions System File Update - By Backup Media User can use Moxa’s Automatic Backup Configurator to save and load the configuration of PT-7828 managed switches through the switch’s RS-232 console port. Restart This Restart function provides users with a quick way to restart the system. Factory Default This function provides users with a quick way of restoring the PT-7828’s configuration to factory defaults.
PT-7828 User’s Manual Featured Functions Using Port Trunking Link aggregation involves grouping links to into a link aggregation group. A MAC client can treat link aggregation groups as if they were a single link. The PT-7828’s port trunking feature allows devices to communicate by aggregating up to 4 trunk groups, with a maximum of 8 ports for each group. If one of the 8 ports fails, the other seven ports will automatically provide backup and share the traffic.
PT-7828 User’s Manual Featured Functions Configuring Port Trunking The Port Trunking Settings page is where ports are assigned to a trunk group. Step 1: Select the desired Trunk Group (Trk1, Trk2, Trk3, Trk4). Step 2: Select the Trunk Type (Static or LACP). Step 3: Select the desired ports under Available Ports and click Up to add to the Trunk Group. Step 4: Select the desired ports under Member Ports and click Down to remove from the group.
PT-7828 User’s Manual Featured Functions This is used to add selected ports into the trunk N/A group from available ports. This is used to remove selected ports from the trunk N/A group. Up Down Trunk Table Setting Trunk group Member port Status Description Displays the trunk type and trunk group. Displays the member ports that belong to the trunk group. Success means port trunking is working properly. Fail means port trunking is not working properly.
PT-7828 User’s Manual Featured Functions Authentication MD5 or SHA based on MD5 or SHA Data encryption key This provides authentication based on HMAC-MD5 or HMAC-SHA algorithms, and data encryption key. 8-character passwords and a data encryption key are the minimum requirements for authentication .and encryption. These parameters are configured on the SNMP page. A more detailed explanation of each parameter is given below the figure.
PT-7828 User’s Manual Featured Functions V1, V2c Write/Read Community Setting Description Factory Default This specifies the community string to authenticate the SNMP agent for Max. 30 characters read/write access. The SNMP server will Private access all objects with read/write permissions using this community string. For SNMP V3, there are two levels of privilege for different accounts to access the PT-7828. Admin privilege provides access and authorization to read and write the MIB file.
PT-7828 User’s Manual Featured Functions User Data Encryption Key (for SNMP V1, V2c, V3 and V3 only) Setting Enable Disable Description This enables data encryption using the specified data encryption key (between 8 and 30 characters). No data encryption Factory Default No No Trap Settings SNMP Trap Mode In Trap mode, the SNMP agent sends a SNMPv1 trap PDU to the NMS. No acknowledgment is sent back from the NMS so the agent has no way of knowing if the trap reached the NMS.
PT-7828 User’s Manual Featured Functions 2nd Trap Server IP/Name Setting Retries Time out Description Enter Inform Retry number Enter Inform Timeout window Factory Default 1 1 Private MIB information Switch Object ID Setting 8691.7.15 Description This indicates the PT-7828’s enterprise value. Factory Default Fixed NOTE: The Switch Object ID cannot be changed.
PT-7828 User’s Manual Featured Functions The Turbo Ring Concept Moxa developed the proprietary Turbo Ring protocol to optimize communication redundancy and achieve a faster recovery time on the network. The Turbo Ring and Turbo Ring V2 protocols designate one switch as the master of the network, and then automatically block packets from traveling through any of the network’s redundant loops.
PT-7828 User’s Manual Featured Functions Turbo Ring with odd number switches If the number of Ethernet switches in the Turbo Ring is 2N+1 (an odd number), the backup segment is the (N+1)st segment counting counterclockwise. Master For the example shown here, N=1, so that N+1=2. Segment N+1 Determining the Redundant Path for Turbo Ring V2 For Turbo Ring V2, the backup segment is the segment connected to the 2nd redundant port on the master.
PT-7828 User’s Manual Featured Functions Ring Coupling for Turbo Ring Switch B Main Path Switch D Coupling Control Port Backup Path Coupling Port Switch A: "Coupler" Switch C To configure the ring coupling for a Turbo Ring, select two PT series Ethernet switches (e.g., Switch A and B in the above figure) in the ring, and another two PT series Ethernet switches in the adjacent ring (e.g., Switch C and D). Select two ports on each switch to be used as coupling ports and link them together.
PT-7828 User’s Manual Featured Functions ATTENTION Ring coupling only needs to be enabled on one of the switches serving as the ring coupler. The coupler must assign separate ports for the two Turbo Ring ports and the coupling port. NOTE You do not need to use the same PT series Ethernet switch for both ring coupling and ring master. Dual-Homing Configuration for Turbo Ring V2 Dual-homing is only supported with Turbo Ring V2 and is used to connect two networks through a single Ethernet switch.
PT-7828 User’s Manual Featured Functions Configuring Turbo Ring and Turbo Ring V2 On the Communication Redundancy page, select Turbo Ring or Turbo Ring V2 as the Redundancy Protocol. Note that each protocol's configuration page is different. Configuring Turbo Ring "Current Status" Items Now Active This shows which communication protocol is in use: Turbo Ring, Turbo Ring V2, RSTP, or none. Master/Slave This indicates whether or not the PT-7828 is the master of the Turbo Ring.
PT-7828 User’s Manual Featured Functions "Settings" Items Redundancy Protocol Setting Turbo Ring Turbo Ring V2 Description This selects the Turbo Ring protocol. This selects the Turbo Ring V2 protocol. RSTP (IEEE 802.1w/1D) This selects the RSTP protocol. None This disables ring redundancy. Factory Default None Set as Master Setting Enabled Disabled Description The PT-7828 is manually selected as the master. The Turbo Ring or Turbo Ring V2 protocol will automatically select the master.
PT-7828 User’s Manual Featured Functions Configuring Turbo Ring V2 NOTE When using a dual-ring architecture, users must complete configuration for both Ring 1 and Ring 2. The status of both rings will appear under Current Status. "Current Status" Items Now Active This shows which communication protocol is in use: Turbo Ring, Turbo Ring V2, RSTP, or none. Ring 1/2—Status This shows Healthy if the ring is operating normally, and shows Break if the ring’s backup link is active.
PT-7828 User’s Manual Featured Functions Ring 1/2—1st Ring Port Status Ring 1/2—2nd Ring Port Status The Ports Status indicators show Forwarding for normal transmission, Blocking if this port is connected to a backup path and the path is blocked, and Link down if there is no connection. Coupling—Mode This indicates either None, Dual Homing, or Ring Coupling. Coupling—Coupling Port status This indicates either Primary, or Backup.
PT-7828 User’s Manual Featured Functions Enable Ring Coupling Setting Enable Disable Description This specifies that this PT-7828 will be a ring coupler. This specifies that this PT-7828 is not a ring coupler. Factory Default Not checked Coupling Mode Setting Dual Homing Ring Coupling (backup) Ring Coupling (primary) Description This enables dual homing through the PT-7828. This specifies that the PT-7828 will be used for a ring coupling backup connection.
PT-7828 User’s Manual Featured Functions Setting Up Turbo Chain LAN Network Tail Port Head Port Tail Head Member Port Member Port Member Port Member Port 1. 2. 3. Select the Head switch, Tail switch, and Member switches. Configure one port as the Head port and one port as the Member port in the Head switch, configure one port as the Tail port and one port as the Member port in the Tail switch, and configure two ports as Member ports in each of the Member switches.
PT-7828 User’s Manual Featured Functions Member Switch Configuration Tail Switch Configuration Explanation of “Current Status” Items Now Active Shows which communication protocol is in use: Turbo Ring, Turbo Ring V2, RSTP, Turbo Chain or None. The “Ports Status” indicators show Forwarding for normal transmission, Blocked if this port is connected to the Tail port as a backup path and the path is blocked, and Link down if there is no connection.
PT-7828 User’s Manual Turbo Ring V2 Turbo Chain RSTP (IEEE 802.1W/1D) None Featured Functions Select this item to change to the Turbo Ring V2 configuration page. Select this item to change to the Turbo Chain configuration page Select this item to change to the RSTP configuration page.
PT-7828 User’s Manual Featured Functions ¾ STP (802.1D) and RSTP (802.1w) can operate on different ports of the same PT-7828. This feature is particularly helpful when PT-7828 ports connect to older equipment, such as legacy switches. You get essentially the same functionality with RSTP and STP. To see how the two systems different, please refer to Differences between RSTP and STP later in this chapter. NOTE The STP protocol is part of the IEEE Std 802.1D, 1998 Edition bridge specification.
PT-7828 User’s Manual Featured Functions What happens if a link failure is detected? As shown in next figure, the STP process reconfigures the network so that traffic from LAN segment 2 flows through Bridge B. STP will determine which path between each bridged segment is most efficient, and then assign a specific reference point on the network. When the most efficient path has been identified, the other paths are blocked.
PT-7828 User’s Manual y y Featured Functions Each bridge must have a Bridge Identifier that specifies which bridge acts as the central reference point, or Root Bridge, for the STP system. Bridges with a lower Bridge Identifier are more likely to be designated as the Root Bridge. The Bridge Identifier is calculated using the MAC address of the bridge and a priority defined for the bridge. The default priority of PT-7828 is 32768. Each port has a cost that specifies the efficiency of each link.
PT-7828 User’s Manual Featured Functions change. The main benefit of RSTP is that the configuration decision is made locally rather than network-wide, allowing RSTP can carry out automatic configuration and restore a link faster than STP. STP Example The LAN shown below has three segments, with adjacent segments connected using two possible links. The various STP factors, such as Cost, Root Port, Designated Bridge Port, and Blocked Port are shown in the figure.
PT-7828 User’s Manual Featured Functions Using STP on a Network with Multiple VLANs IEEE Std 802.1D, 1998 Edition, does not take into account VLANs when calculating STP information—the calculations only depend on the physical connections. Consequently, some network configurations will result in VLANs being subdivided into a number of isolated sections by the STP system.
PT-7828 User’s Manual Featured Functions Configuring STP/RSTP The following figures indicate which Spanning Tree Protocol parameters can be configured. A more detailed explanation of each parameter is given below the figure. At the top of this page, the user can check the Current Status of this function. For RSTP, you will see: Now Active: This field shows which communication protocol is being used—Turbo Ring, RSTP, or neither. Root/Not Root This field appears only for RSTP mode.
PT-7828 User’s Manual Featured Functions Hello Time (sec.) Setting Numerical value input by user Description Factory Default This specifies the time interval between "hello" 2 messages broadcast by the root of the Spanning Tree topology. The "hello" message is used to check if the topology is healthy. Max. Age (sec.
PT-7828 User’s Manual Featured Functions [Eq. 4]: 2 * (Hello Time + 1 sec) ≦ Max. Age ≦ 2 * (Forwarding Delay – 1 sec) The PT-7828’s firmware will alert you immediately if any of these restrictions are violated. For example, suppose Hello Time = 5 sec, Max. Age = 20 sec, and Forwarding Delay = 4 sec. This does not violate Eqs. 1 through 3, but it violates Eq. 4: 2 * (Hello Time + 1 sec) = 12 sec, and 2 * (Forwarding Delay – 1 sec) = 6 sec. You can remedy the situation in any number of ways.
PT-7828 User’s Manual y Featured Functions Differentiated Services (DiffServ)—a layer 3 marking scheme. IEEE 802.1D Traffic Marking The IEEE Std 802.1D, 1998 Edition marking scheme, which is an enhancement to IEEE Std 802.1D, enables Quality of Service on the LAN. Traffic service levels are defined in the IEEE 802.1Q 4-byte tag, which is used to carry VLAN identification as well as IEEE 802.1p priority information. The 4-byte tag immediately follows the destination MAC address and Source MAC address.
PT-7828 User’s Manual Featured Functions received traffic according to the priority information defined in the received packet. Incoming traffic is classified based upon the IEEE 802.1D frame and is assigned to the appropriate priority queue based on the IEEE 802.1p service level value defined in that packet. Service level markings (values) are defined in the IEEE 802.1Q 4-byte tag, and consequently traffic will only contain 802.
PT-7828 User’s Manual Featured Functions Configuring Traffic Prioritization Quality of Service (QoS) provides a traffic prioritization capability to ensure that important data is delivered consistently and predictably. The PT-7828 can inspect IEEE 802.1p/1Q layer 2 CoS tags, and even layer 3 TOS information, to provide a consistent classification of the entire network. The PT-7828’ QoS capability improves your industrial network’s performance and determinism for mission critical applications.
PT-7828 User’s Manual Featured Functions Inspect COS Setting Enable/Disable Description This enables or disables the PT-7828 to inspect the 802.1p COS tag in the MAC frame to determine the priority of each frame. Factory Default Enable CoS Mapping Setting Low/Normal/ Medium/High Description Factory This maps different CoS values to 4 different egress 0: Low queues.
PT-7828 User’s Manual Setting Low/Normal/ Medium/High Featured Functions Description This maps different TOS values to 4 different egress queues. Factory Default 1 to 16: Low 17 to 32: Normal 33 to 48: Medium 49 to 64: High Using Virtual LAN Setting up Virtual LANs (VLANs) on your PT-7828 increases the efficiency of your network by dividing the LAN into logical segments, as opposed to physical segments. In general, VLANs are easier to manage.
PT-7828 User’s Manual y y Featured Functions network, and retains its original subnet membership, you only need to specify that the new port is on VLAN Marketing. You do not need to carry out any re-cabling. VLANs provide extra security. Devices within each VLAN can only communicate with other devices on the same VLAN. If a device on VLAN Marketing nePT to communicate with devices on VLAN Finance, the traffic must pass through a routing device or Layer 3 switch. VLANs help control traffic.
PT-7828 User’s Manual Featured Functions tagged with a VLAN identifier so that the switches can identify which packets belong in which VLAN. To communicate between VLANs, a router must be used. The PT-7828 supports two types of VLAN port settings: y y Access Port: The port connects to a single device that is not tagged. The user must define the default port PVID that assigns which VLAN the device belongs to.
PT-7828 User’s Manual Featured Functions Access Port with PVID 5. y Port 7 connects a single untagged device and assigns it to VLAN 4; it should be configured as Access Port with PVID 4. After proper configuration: y Packets from Device A will travel through Trunk Port 3 with tagged VID 5. Switch B will recognize its VLAN, pass it to port 6, and then remove tags received successfully by Device G, and vice versa. y Packets from Devices B and C will travel through Trunk Port 3 with tagged VID 2.
PT-7828 User’s Manual Featured Functions Port Type Setting Access Trunk Description This port type is used to connect single devices without tags. Select Trunk port type to connect another 802.1Q VLAN aware switch or another LAN that combines tagged and/or untagged devices and/or other switches/hubs.
PT-7828 User’s Manual NOTE Featured Functions The physical network can have a maximum of 64 VLAN settings. Using Multicast Filtering Multicast filtering improves the performance of networks that carry multicast traffic. This section explains multicasts, multicast filtering, and how multicast filtering can be implemented on your PT-7828. The Concept of Multicast Filtering What is an IP Multicast? A multicast is a packet sent by one host to multiple hosts.
PT-7828 User’s Manual Featured Functions Network without multicast filtering 22 44 66 M1 88 2 M2 6 4 2 4 M3 6 2 4 6 8 1 3 5 7 M4 M1 M1 STAT STAT FAULT FAULT LNK/ACT LNK/ACT MODE MODE PWR1 PWR1 MASTER MASTER 11 33 22 44 55 PT-7728 2 4 2 1 3 1 77 PWR2 PWR2 FDX/HDX FDX/HDX COUPLER COUPLER PORT PORT 66 88 4 M2 M2 COUPLER COUPLER SPEED SPEED RING PORT PORT RING 11 33 55 77 22 44 66 11 33 55 77 11 22 33 44 RX TX RX TX TX RX RX TX TX RX T
PT-7828 User’s Manual Featured Functions Query Mode Query mode allows the PT-7828 to work as the Querier if it has the lowest IP address on the subnetwork to which it belongs. IGMP querying is enabled by default on the PT-7828 to help prevent interoperability issues with some multicast routers that may not follow the lowest IP address election method. Enable query mode to run multicast sessions on a network that does not contain IGMP routers (or queriers).
PT-7828 User’s Manual Featured Functions Configuring IGMP Snooping IGMP Snooping provides the ability to prune multicast traffic so that it travels only to those end destinations that require that traffic, thereby reducing the amount of traffic on the Ethernet LAN. IGMP Snooping Settings IGMP Snooping Enable Setting Enable/Disable Description Click the checkbox to enable the IGMP Snooping function globally.
PT-7828 User’s Manual NOTE Featured Functions At least one switch must be designated the Querier or enable IGMP snooping and GMRP when enabling Turbo Ring and IGMP snooping simultaneously. IGMP Table The PT-7828 displays the current active IGMP groups that were detected. The information includes VID, Auto-learned Multicast Router Port, Static Multicast Router Port, Querier Connected Port, and the IP and MAC addresses of active IGMP groups.
PT-7828 User’s Manual Featured Functions Configuring GMRP GMRP is a MAC-based multicast management protocol, whereas IGMP is IP-based. GMRP provides a mechanism that allows bridges and end stations to register or un-register Group membership information dynamically.
PT-7828 User’s Manual Featured Functions Using Bandwidth Management In general, one host should not be allowed to occupy unlimited bandwidth, particularly when the device malfunctions. For example, so-called “broadcast storms” could be caused by an incorrectly configured topology, or a malfunctioning device.
PT-7828 User’s Manual Featured Functions Using Port Access Control The PT-7828 provides two kinds of Port-Base Access Control. One is Static Port Lock and the other is IEEE 802.1X. Static Port Lock The PT-7828 can also be configured to protect static MAC addresses for a specific port. With the Port Lock function, these locked ports will not learn any additional addresses, but only allow traffic from preset static MAC addresses, helping to block hackers and careless usage. IEEE 802.1X The IEEE 802.
PT-7828 User’s Manual Featured Functions Configuring Static Port Lock The PT-7828 supports adding unicast groups manually if required. Setting MAC Address Port Description Add the static unicast MAC address into the address table. Fix the static address with a dedicated port. Factory Default None 1-1 Configuring IEEE 802.1X Database Option Setting Local (Max.
PT-7828 User’s Manual Featured Functions Server Port Setting Numerical Description The UDP port of the RADIUS server Factory Default 1812 Shared Key Setting alphanumeric (Max. 40 characters) Description Factory Default A key to be shared between the external RADIUS server None and PT-7828. Both ends must be configured to use the same key. Re-Auth Setting Enable/Disable Description Select to require re-authentication of the client after a preset time period of no activity has elapsed.
PT-7828 User’s Manual Featured Functions Local User Database Setup When setting the Local User Database as the authentication database, set the database first. Local User Database Setup Setting User Name (Max. 30 characters) Password (Max. 16 characters) Description (Max. 30 characters) NOTE Description User Name for Local User Database Factory Default None Password for Local User Database None Description for Local User Database None The user name for the Local User Database is case-insensitive.
PT-7828 User’s Manual Featured Functions Using IP Filter IP filtering lets users control which IP addresses are allowed to access the port. Using Auto Warning Since industrial Ethernet devices are often located at the endpoints of a system, these devices will not always know what is happening elsewhere on the network. This means that an industrial Ethernet switch that connects to these devices must provide system maintainers with real-time alarm messages.
PT-7828 User’s Manual Featured Functions Event Type Event Types can be divided into two basic groups: System Events and Port Events. System Events are related to the overall function of the switch, whereas Port Events are related to the activity of a specific port. System Events Warning e-mail is sent when… Switch Cold Start Power is cut off and then reconnected. Switch Warm Start PT-7828 is rebooted, such as when network parameters are changed (IP address, subnet mask, etc.).
PT-7828 User’s Manual Featured Functions NOTE The Traffic-Overload, Traffic-Threshold (%), and Traffic-Duration (sec.) Port Event items are related. If you Enable the Traffic-Overload event, then be sure to enter a nonzero Traffic-Threshold percentage, as well as a Traffic-Duration between 1 and 300 seconds.
PT-7828 User’s Manual Featured Functions Password Setting Setting Description Disable/Enable to To reset the password from the Web Browser interface, change password click the Change password check-box, type the Old password, type the New password, retype the New password, and then click Activate; Max. 45 characters. Old password Type the current password when changing the password New password Type new password when enabled to change password; Max. 45 characters.
PT-7828 User’s Manual Featured Functions Event Setup Event Types can be divided into two basic groups: System Events and Port Events. System Events are related to the overall function of the switch, whereas Port Events are related to the activity of a specific port. The PT-7828 supports two relay outputs. You can configure which relay output is related to which events. This helps administrators identify the importance of the different events.
PT-7828 User’s Manual Featured Functions Override relay alarm settings Click the checkbox to override the relay warning setting temporarily. Releasing the relay output will allow administrators to fix any problems with the warning condition. Warning List Use this table to see if any relay alarms have been issued.
PT-7828 User’s Manual Featured Functions Take the following steps to use the Set device IP function: STEP 1—Set up the connected devices Set up those Ethernet-enabled devices connected to PT-7828 for which you would like IP addresses to be assigned automatically. The devices must be configured to obtain their IP address automatically. The devices’ configuration utility should include a setup page that allows you to choose an option similar to Obtain an IP address automatically.
PT-7828 User’s Manual Featured Functions Desired IP Address Setting IP Address Description Set the desired IP of connected devices. Factory Default None DHCP Relay Agent (Option 82) The DHCP Relay Agent makes it possible for DHCP broadcast messages to be sent over routers. The DHCP Relay Agent enables DHCP clients to obtain IP addresses from a DHCP server on a remote subnet, or those that are not located on the local subnet.
PT-7828 User’s Manual Featured Functions Server IP Address 1st Server Setting IP address for the 1st DHCP server Description This assigns the IP address of the 1st DHCP server that the switch tries to access. Factory Default None 2nd Server Setting Description Factory Default IP address for the This assigns the IP address of the 2nd DHCP server that None 2nd DHCP server the switch tries to access.
PT-7828 User’s Manual Featured Functions DHCP Option 82 Enable Option82 Setting Description Enable or Disable Enable or disable DHCP Option 82 function. Factory Default Disable Type Setting IP MAC Client-ID Other Description Use switch IP address as the remote ID sub-option. Use switch MAC address as the remote ID sub-option. Use the combination of switch MAC address and IP address as the remote ID sub-option. Use the user-defined value as the remote ID sub-option.
PT-7828 User’s Manual Featured Functions The Mirror port function can be used to monitor data being transmitted through a specific port. This is done by setting up another port (the mirror port) to receive the same data being transmitted from, or both to and from, the port under observation. This allows the network administrator to sniff the observed port and thus keep tabs on network activity.
PT-7828 User’s Manual Featured Functions periodically inform its neighbors about its self-information and configurations. As a result, all of the devices will have knowledge about each other; and through SNMP, this knowledge can be transferred to Moxa’s MXview for auto-topology and network visualization. LLDP Web Interface From the switch’s web interface, users have the option of either enabling or disabling the LLDP, as well as setting the LLDP transmit interval (as shown in the figure below).
PT-7828 User’s Manual Featured Functions address. Neighbor Port: The port number of the neighbor device. Neighbor Port Description: A textual description of the neighbor device’s interface. Neighbor System: Hostname of the neighbor device. Using Monitor You can monitor statistics in real time from PT-7828’s web console and serial console. Monitor by Switch Access the Monitor by selecting System from the left selection bar.
PT-7828 User’s Manual Featured Functions being viewed. That is, as time progresses, the height of the bar moves up or down so that the user can view the change in the rate of packet transmission. The blue colored bar shows Uni-cast packets, the red colored bar shows Multi-cast packets, and the orange colored bar shows Broad-cast packets. The graph is updated every few seconds, allowing the user to analyze data transmission activity in real-time.
PT-7828 User’s Manual Featured Functions Using System Log Event Log Bootup Date Time System Startup Time Events NOTE This field shows how many times the PT-7828 has been rebooted or cold started. The date is updated based on how the current date is set in the Basic Setting page. The time is updated based on how the current time is set in the Basic Setting page. The system startup time related to this event. Events that have occurred. The following events will be record into PT-7828’s Event Log Table.
PT-7828 User’s Manual Featured Functions Syslog This function provides the event logs for the syslog server. The function supports 3 configurable syslog servers and syslog server UDP port numbers. When an event occurs, the event will be sent as a syslog UDP packet to the specified syslog servers. Syslog Server 1 Setting IP Address Port Destination (1 to 65535) Description Enter the IP address of 1st Syslog server used by your network. Enter the UDP port of 1st Syslog server.
PT-7828 User’s Manual y y Featured Functions dot1x Auth Fail Port link off / on Using HTTPS/SSL To secure your HTTP access, the PT-7828 supports HTTPS/SSL to encrypt all HTTP traffic. Perform the following steps to access the PT-7828’s web browser interface via HTTPS/SSL. 1. Open Internet Explorer and type https://PT-7828’s IP address in the address field. Press Enter to establish the connection. 2.
PT-7828 User’s Manual Featured Functions Using Layer 3 Settings The PT-7828 is a Layer-3 switch uses the Network Layer (layer 3) of the ISO’s OSI layer model for data switching. Unlike Layer-2 switching for which the MAC address is used for exchanging data, a Layer-3 switch uses the IP address to determine the destination of a data packet.
PT-7828 User’s Manual Featured Functions the PT-7828. The PT-7828 can efficiently update and maintain the routing table and optimize the routing with the smallest metric and most matched mask prefix. Interface Setting The IP Interface Setting page is used to assign the interface. Interface Name Use this option to describe this interface (Max. of 30 characters). IP Address Use this option to specify the IP address of this interface.
PT-7828 User’s Manual Featured Functions Delete For removing the selected entries in the IP Interface Table. Modify For modifying the content of a selected entry in the IP Interface Table. NOTE The entries in the IP Interface Table will not be added into the PT-7828’s interface table until you click the Activate button. RIP The RIP page is used to set up the RIP parameters. RIP Enable Setting Enable/Disable Description This option is used to enable or disable the RIP function globally.
PT-7828 User’s Manual Featured Functions OSPF Settings OSPF (Open Shortest Path First) is a dynamic routing protocol for use in Internet Protocol (IP) networks. Specifically, it is a link-state routing protocol and falls into the group of interior gateway protocols, operating within a single autonomous system. As a link-state routing protocol, OSPF establishes and maintains neighbor relationships in order to exchange routing updates with other routers.
PT-7828 User’s Manual Featured Functions OSPF Area Settings An OSPF domain is divided into areas that are labeled with 32-bit area identifiers which are commonly written in the dot-decimal notation of an IPv4 address. Areas are used to divide a large network into smaller network areas. They are logical groupings of hosts and networks, including their routers having interfaces connected to any of the included networks.
PT-7828 User’s Manual Featured Functions OSPF Interface Settings Before using OSPF, we have to assign an interface for each area. Also the detailed information of the interface can be defined in this section. See the details in the following descriptions: OSPF Interface Setting Entry Configuration details Setting Interface Name Area ID Router Priority Hello Interval Dead Interval Auth Type Description Define the interface name. Define the Area ID. Define the L3 switch/router’s priority.
PT-7828 User’s Manual Auth Key MD5 Key ID Metric Featured Functions Authentication key means the clear-text password when using “Simple” method of the authentication type or MD5 encrypted password when using MD5 of authentication type. MD5 authentication provides higher security than plain text authentication. This method uses the MD5 to calculate a hash value from the contents of the OSPF packet and the authentication key. This hash value is transmitted in the packet, along with a key ID.
PT-7828 User’s Manual Featured Functions OSPF Virtual Link Table Shows the current OSPF virtual link table. OSPF Area Aggregation Settings Each of OSPF areas which consist of a set of interconnected subnets and traffic across areas is handled by routers attached to two or more areas, known as Area Border Routers (ABRs). With OSPF aggregation function, users can combine groups of routes with common addresses into a single routing table entry. The function is used to reduce the size of routing tables.
PT-7828 User’s Manual Featured Functions VRRP Settings The Virtual Router Redundancy Protocol (VRRP) feature can solve the static configuration problem. VRRP enables a group of routers to form a single virtual router with a virtual IP address. The LAN clients can then be configured with the virtual router’s virtual IP address as their default gateway. The virtual router is the combination of a group of routers, and also known as a VRRP group.
PT-7828 User’s Manual Priority Featured Functions Determines priority in a VRRP group. The priority value 100 range is 1 to 255 and the 255 is the highest priority. If several L3 switches / routers have the same priority, the router with higher IP address has the higher priority. The usable range is “1 to 255”. Static Route The Static Route page is used to set up the PT-7828’s static routing table. Destination Address Use this option to specify the destination’s IP address.
PT-7828 User’s Manual Featured Functions Routing Table The Routing Table page shows all routing entries that the PT-7828 is using.
PT-7828 User’s Manual Featured Functions Enable Setting Bootup Date Time System Startup Time Events Description This field shows how many times the PT-7828 has been rebooted or cold started. The date is updated based on how the current date is set in the “Basic Setting” page. The time is updated based on how the current time is set in the “Basic Setting” page. The system startup time related to this event. Events that have occurred.
PT-7828 User’s Manual NOTE Featured Functions The following events will be recorded into the PT-7828’s Event Log table, and will then be sent to the specified Syslog Server: 1. Cold start 2. Warm start 3. Configuration change activated 4. Power 1/2 transition (Off ( On), Power 1/2 transition (On ( Off) 5. Authentication fail 6. Topology changed 7. Master setting is mismatched 8. DI 1/2 transition (Off ( On), DI 1/2 transition (On ( Off) 9. Port traffic overload 10. dot1x Auth Fail 11.
PT-7828 User’s Manual NOTE Featured Functions Moxa provides a Root CA certificate. After installing this certificate into your PC or Notebook, you can access the web browser interface directly and will not see any warning messages again. You may download the certificate from the PT-7828’s CD-ROM.
A Appendix A MIB Groups The PT-7828 comes with built-in SNMP (Simple Network Management Protocol) agent software that supports cold/warm start trap, line up/down trap, and RFC 1213 MIB-II. The standard MIB groups that the PT-7828 supports are as follows: MIB II.1 – System Group sysORTable MIB II.2 – Interfaces Group ifTable MIB II.4 – IP Group ipAddrTable ipNetToMediaTable IpGroup IpBasicStatsGroup IpStatsGroup MIB II.5 – ICMP Group IcmpGroup IcmpInputStatus IcmpOutputStats MIB II.
PT-7828 User’s Manual MIB Groups MIB II.10 – Transmission Group dot3 dot3StatsTable MIB II.11 – SNMP Group SnmpBasicGroup SnmpInputStats SnmpOutputStats MIB II.
PT-7828 User’s Manual MIB Groups The PT-7828 also provides a private MIB file, located in the file Moxa-PT7828-MIB.my on the PT-7828 utility CD-ROM.
B Appendix B Technology Standards Flow control Protocols: MIB: Switch Properties Priority Queues: Max. Number of Available VLANs: VLAN ID Range: IGMP Groups: Interface Fast Ethernet Specifications IEEE 802.3 for 10BaseT, IEEE 802.3u for 100BaseT(X) and 100BaseFX, IEEE 802.3ab for 1000BaseT(X), IEEE 802.3z for 1000BaseSX/LX/LHX/ZX, IEEE 802.3x for Flow Control, IEEE 802.1D for Spanning Tree Protocol, IEEE 802.1w for Rapid STP, IEEE 802.1Q for VLAN Tagging, IEEE 802.1p for Class of Service, IEEE 802.
PT-7828 User’s Manual Specifications Optical Fiber (100BaseFX) 100BaseFX Multi Mode Single Mode Wavelength 1300 nm 1310 nm Max. TX -10 dBm 0 dBm Min. TX -20 dBm -5 dBm RX Sensitivity -32 dBm -34 dBm Link Budget 12 dB 29 dB 40 kmc Typical Distance 5 kma 4 kmb Saturation -6 dBm -3 dBm a. 50/125 μm, 800 MHz*km fiber optic cable b. 62.5/125 μm, 500 MHz*km fiber optic cable c. 9/125 μm, 3.5 PS/(nm*km) fiber optic cable d.
PT-7828 User’s Manual Connection Overload Current Protection Reverse Polarity Protection Mechanical Casing Dimensions (W x H x D) Installation Environmental Operating Temp. Storage Temp. Ambient Relative Humidity Warranty Specifications 10-pin terminal block Present Present IP30 protection 440 x 44 x 325 mm (17.32 x 1.73 x 12.80 in.) 19-inch rack mounting -40 to 85°C (-40 to 185°F) Cold start of min.
C Appendix C Modbus/TCP Map PT-7828 Modbus information v1.
PT-7828 User’s Manual Specifications 0x0055 3 words 0x0058 1 word 0x0059 1 word 0x005A 1 word 0x0080 1 word 0x0081 1 word 0x0082 1 word 0x0083 1 word Ethernet MAC Address Ex: MAC = 00-01-02-03-04-05 Word 0 Hi byte = 0x00 Word 0 Lo byte = 0x01 Word 1 Hi byte = 0x02 Word 1 Lo byte = 0x03 Word 2 Hi byte = 0x04 Word 2 Lo byte = 0x05 Power 1 0x0000:Off 0x0001:On Power 2 0x0000:Off 0x0001:On Fault LED Status 0x0000:No 0x0001:Yes DI1 0x0000:Off 0x0001:On DI2 0x0000:Off 0x0001:On DO1 0x0000:Off 0x
PT-7828 User’s Manual 0x1400 to 0x1413(Port 1) 0x1414 to 0x1427(Port 2) Specifications 20 words Port 1 to 10 Description Port Description = "100TX,RJ45." Word 0 Hi byte = ‘1’ Word 0 Lo byte = ‘0’ Word 1 Hi byte = ‘0’ Word 1 Lo byte = ‘T’ … Word 4 Hi byte = ‘4’ Word 4 Lo byte = ‘5’ Word 5 Hi byte = ‘.
PT-7828 User’s Manual Specifications 0x3301 1 word 0x3302 1 word 0x3303 1 word 0x3304 1 word 0x3305 1 word 0x3500 1 word 0x3501 1 word TR 1st Port status 0x0000:Port Disabled 0x0001:Not Redundant 0x0002:Link Down 0x0003:Blocked 0x0004:Learning 0x0005:Forwarding TR 2nd Port status 0x0000:Port Disabled 0x0001:Not Redundant 0x0002:Link Down 0x0003:Blocked 0x0004:Learning 0x0005:Forwarding TR Coupling 0x0000:Off 0x0001:On 0xFFFF:Turbo Ring Not Enable TR Coupling Port status 0x0000:Port Disabled
PT-7828 User’s Manual Specifications 0x3502 1 word 0x3600 1 word 0x3601 1 word 0x3602 1 word 0x3603 1 word 0x3680 1 word 0x3681 1 word 0x3682 1 word TR2 Coupling Port Backup status (Only using in Dual Homing) 0x0000:Port Disabled 0x0001:Not Coupling Port 0x0002:Link Down 0x0003:Blocked 0x0004:Learning 0x0005:Forwarding 0xFFFF:Turbo Ring V2 Not Enable TR2 Ring 1 status 0x0000:Healthy 0x0001:Break 0xFFFF:Turbo Ring V2 Not Enable TR2 Ring 1 Master/Slave 0x0000:Slave 0x0001:Master 0xFFFF:Turbo
PT-7828 User’s Manual Specifications 0x3683 1 word 0x3700 1 word 0x3701 1 word 0x3702 1 word TR2 Ring 2 2nd Port status 0x0000:Port Disabled 0x0001:Not Redundant 0x0002:Link Down 0x0003:Blocked 0x0004:Learning 0x0005:Forwarding 0xFFFF:Turbo Ring V2 Ring 2 Not Enable Turbo Chain Switch Role 0x0000:Head 0x0001:Member 0x0002:Tail 0xFFFF: Turbo Chain Not Enable Turbo Chain 1st Port status 0x0000: Link Down 0x0001: Blocking 0x0002: Blocked 0x0003: Forwarding 0xFFFF:Turbo Ring V2 Ring 2 Not Enable Turbo