Netgear GSM7328Sv1 7000 Series Managed Switch Administration Guide for Softwar
Netgear GSM7328Sv1 - ProSafe 24+4 Gigabit Ethernet L3 Managed Stackable Switch Manual
View all Netgear GSM7328Sv1 manuals
Add to My Manuals
Save this manual to your list of manuals |
Netgear GSM7328Sv1 manual content summary:
- Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 1
NETGEAR Managed Switches Software Administration Manual, Release 8.0 NETGEAR, Inc. 350 East Plumeria Drive San Jose, CA 95134 202-10515-01 October 2009 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 2
areas. When used near a radio or TV receiver, it may become the cause of radio interference. Read instructions for correct handling. FCC Information to User Declaration Of Conformity We NETGEAR, Inc., 4500 Great America Parkway, Santa Clara, CA 95054, declare under our sole responsibility that the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 3
for Operation in the United States Radio Frequency Interference Warnings & Instructions This equipment has been tested and found to comply with the limits made to the product, unless expressly approved by NETGEAR, Inc., could void the user's right to operate the equipment. Canadian Department of - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 4
Connectivity 1-1 Starting the Switch ...1-4 Initial Configuration ...1-4 Software Installation ...1-5 Loading Firmware Using the Boot Menu 1-9 Using Ezconfig for Switch Setup 1-10 Using the Web Interface 1-13 Chapter 2 Auto Install Configuration Switch IP Address Assignment 2-1 Assignment of - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 5
RIP for the Switch 7-5 Enable RIP for Ports 1/0/2 and 1/0/3 7-6 VLAN Routing RIP Configuration 7-8 Chapter 8 OSPF Configure an Inter-Area Router 8-2 Configure OSPF on a Border Router 8-8 Configure Area 1 as a Stub Area 8-15 Configure Area 1 as a nssa Area 8-24 VLAN Routing OSPF Configuration - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 6
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Chapter 9 Proxy Address Resolution Protocol (ARP) Proxy ARP Examples ...9-1 Chapter 10 Virtual Router Redundancy Protocol Configure VRRP on a Master Router 10-2 Configure VRRP on a Backup Router 10-4 Chapter 11 Access Control - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 7
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Chapter 14 IGMP Snooping and Querier Enable IGMP Snooping 14-1 Show igmpsnooping ...14-2 Show mac-address-table igmpsnooping 14-3 Configure the Switch with an External Multicast Router 14-4 Configure the Switch with a Multicast - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 8
Interface: Upgrading Firmware 19-16 Chapter 20 SNMP Add a New Community 20-1 Enable SNMP Trap ...20-2 Configure SNMP V3 ...20-3 sFlow ...20-5 Configure Time-Based Sampling of Counters with sFlow 20-9 Chapter 21 DNS Specify Two DNS Servers 21-1 Manually Add a Host Name and an IP Address 21-2 ix - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 9
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Chapter 22 DHCP Server Configure a DHCP Server in Dynamic Mode 22-1 Configure a DHCP Reservation 22-3 Chapter 23 Double VLANs Enable a Double VLAN 23-2 Chapter 24 Private VLAN Groups Create a Private VLAN Group 24-1 Chapter 25 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 10
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Chapter 32 Captive Portal Captive Portal Configuration 32-2 Enable Captive Portal 32-2 Client Access, Authentication, and Control 32-5 Block a Captive Portal Instance 32-5 Local Authorization User/Group Configuration 32-6 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 11
This Manual The NETGEAR® Managed Switches Software Administration Manual, Release 8.0 describes how to install, configure and troubleshoot the 7000 Series Managed Switch. The information in this manual is intended for readers with intermediate computer and Internet skills. Note: Product updates are - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 12
the platform specific functionality of the Switching, Routing, SNMP, Config, Management, and other packages. In addition, see the following publications: • The NETGEAR installation guide for your switch • NETGEAR CLI Reference for the Prosafe 7X00 Series Managed Switch. Refer to the Command Line - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 13
NETGEAR Managed Switches Software Administration Manual, Release 8.0 How to Print This Manual To print this manual, your computer must have the free Adobe Acrobat reader installed in order to view and print PDF files. The Acrobat reader is available on the Adobe Web site at http://www.adobe.com. Tip - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 14
to assign an IP address to the switch via DHCP, the default IP address for the switch is 169.254.100.100. Subnet Subnet mask for the LAN gateway IP address of the default router, if the switch is a node outside the IP range of the LAN MAC Address MAC address of the switch 1-1 v1.0, October - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 15
admin for the user name and the password is blank. The switch is installed and loaded with the default configuration. 5. Reduce network traffic by turning off the Network Configuration Protocol. Enter the following command: configure network protocol none 6. Set the IP address, subnet mask, and - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 16
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Subnet Subnet mask for the LAN. The default value is 255.255.255.0. gateway IP address of the default router, if the switch is a node outside the IP range of the LAN. 7. To enable these changes to be retained during a reset of - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 17
the initial configuration of the switch, obtain the following information from your network administrator: • The IP address to be assigned to the management interface through which the switch is managed. • The IP subnet mask for the network. • The IP address of the default gateway. Getting Started - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 18
following steps: - Type admin at the login prompt. Since a number of the Quick Setup commands require administrator account rights, log in to an administrator account. - Do not enter a password because the default mode does not use a password. - Check the CLI User EXEC prompt is displayed. - Enter - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 19
versions • Physical port data • User account management • IP address configuration • Uploading from Networking Device to Out-of-Band PC (Only XMODEM) • Downloading from Out-of-Band PC to Networking Device (Only XMODEM) • Downloading from TFTP Server • Restoring factory defaults If you configure any - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 20
in all units of the stack. logout User EXEC Logs the user out of the networking device. Privileged EXEC show network User EXEC Displays the following network configuration information: • IP Address - IP Address of the interface (default: 0.0.0.0) • Subnet Mask - IP Subnet Mask for the interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 21
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Table 1-1. Quick Start Commands (continued) tftp://// Before starting a TFTP server download, you must configure the IP address. Sets the destination (download) datatype to be an image. The URL must - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 22
fails to boot up normally and unable to login the CLI User EXEC prompt , that means you cannot use the CLI command to download the new firmware to the switch. 8.0 supports load firmware by xmodem and USB. USB is new feature in 8.0 and it downloads firmware more quickly than does xmodem. Note: The - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 23
that file from USB flash to switch. Using Ezconfig for Switch Setup Ezconfig is an interactive utility that provides a simplified procedure for setting up the following switch parameters: • Switch management IP address • Switch admin user password • Switch name and location Ezconfig can be entered - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 24
configured. Do you wish to change it (Y/N/Q)? y Enter new password:******** Confirm new password:******** Password Changed! Setting Up the Switch IP Address After the password for both Admin and Enable mode is changed, you will be prompted to setup the IP 1-11 v1.0, October 2009 Getting Started - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 25
NETGEAR Managed Switches Software Administration Manual, Release 8.0 address of the switch. Assigning an IP address to your switch management Current IP Address Configuration IP address: 0.0.0.0 Subnet mask: 0.0.0.0 Would you like to assign an IP address now (Y/N/Q)? y IP Address: Ezconfig will - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 26
NETGEAR Managed Switches Software Administration Manual, addresses. To terminate the Web login session, close the web browser. Configuring for Web Access To enable Web access to the switch: 1. Configure the switch for in-band connectivity. The switch Getting Started Guide provides instructions - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 27
NETGEAR Managed Switches Software Administration Manual, Release 8.0 2. Enable Web mode: a. At the CLI prompt, enter the show network command. b. Set Web Mode to Enabled. Starting the Web Interface Follow these steps to start the switch Web interface: 1. Enter the IP address of the switch in the Web - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 28
Main tabs System Switching Routing QoS Security Monitoring 1-15 Tab Contents Configuration and status information for system features and services such as the timer, DNS server, IP address, and system resource usage. Features that relate to Layer 2 services such as VLANs, link aggregation, spanning - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 29
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Tabs Main tabs Maintenance Help Index Sub tabs Tab Contents Services to perform a firmware upgrade, to save the configuration, and to perform a backup of the configuration. Access to the NETGEAR product support , or VLAN. • Apply - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 30
NETGEAR Managed Switches Software Administration Manual, Release 8.0 4. Enter a new password in the Password field and then retype it in the Confirm Password field. Note: If SNMPv3 Authentication is to be used for this user, the password must be eight or more alphanumeric characters. 5. If you do - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 31
file is found on the switch. The downloaded configuration file is not distributed across a stack. When an administrator saves configuration, the config file is distributed across a stack. This chapter includes the following sections: • "Switch IP Address Assignment" • "Assignment of Other Dynamic - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 32
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • The IP address of a default gateway (option 3), if needed for IP communication. Some network configurations require the specification of a default gateway through which some IP communication can occur. The default gateway is - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 33
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Obtaining a Config File After obtaining IP addresses for both the switch and the TFTP server, the Auto Install process attempts to download a configuration file. A host-specific configuration file is downloaded, if possible. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 34
NETGEAR Managed Switches Software Administration Manual, Release 8.0 If the switch is unable to map its IP address to a hostname, Auto Install sends TFTP requests for the default configuration file router.cfg. The following table summarizes the config files that may be downloaded, and the order in - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 35
NETGEAR Managed Switches Software Administration Manual, Release 8.0 When Auto Install has been successfully completed, an administrator can execute a show running-config command to validate the contents of configuration. Saving Configuration An administrator must explicitly save the downloaded login - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 36
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Logging A message is logged for each of the following events: 1. The Auto Install component receiving a config file name and other options upon resolving an IP address by DHCP or BOOTP client. The boot options values are logged. 2. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 37
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Configure Auto Install Stacking The downloaded configuration file is not distributed across a stack. When an administrator saves configuration, the config file is distributed across a stack. 192.168.0.1 DHCP Server 192.168.0.2 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 38
after download from TFTP server. (Netgear Switch) #boot autoinstall start Autoinstall starts and waiting for boot options turned by DHCP server. (Netgear Switch) #network protocol dhcp Changing protocol mode will reset ip configuration. Are you sure you want to continue? (y/n)y Request an IP address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 39
NETGEAR Managed Switches Software Administration Manual, Release 8.0 1. From the main menu, select Maintenance > Save Config >Auto Install Configuration. A screen similar to the following displays. Figure 2-2 2. Select Enable in the AutoInstall Mode - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 40
VLANs: Create an IP Subnet Based VLAN" on page 3-16 • "Voice VLAN" on page 3-19 Adding Virtual LAN (VLAN) support to a Layer 2 switch offers some of the benefits of both bridging and routing. Like a bridge, a VLAN switch forwards traffic based on the Layer 2 header, which is fast, and like a router - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 41
the default VLAN to a port. Create Two VLANs The example is shown as CLI commands and as a Web interface procedure. CLI: Creating Two VLANS Use the following commands to create two VLANs and to assign the VLAN IDs while leaving the names blank. (Netgear Switch) #vlan database (Netgear Switch) (Vlan - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 42
NETGEAR Managed Switches Software Administration Manual, Release 8.0 1. Create VLAN 2. a. From the main menu, select Switching > VLAN >Basic > VLAN configuration. A screen similar to the following displays. Figure 3-2 b. Enter the following information in the VLAN Configuration. • In the VLAN ID - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 43
frames will be rejected on receipt. CLI: Assigning Ports to VLAN2 (Netgear Switch) #config (Netgear Switch) (Config)#interface range 1/0/1-1/0/2 (Netgear Switch) (conf-if-range-1/0/1-1/0/2)#vlan participation include 2 (Netgear Switch) (conf-if-range-1/0/1-1/0/2)#vlan acceptframe vlanonly (Netgear - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 44
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Click the Unit 1. The Ports display. d. Click the gray box under port 1 and 2 until T displays. The T specifies that the egress packet is tagged for the port. e. Click Apply 2. Specify that only tagged frames will be accepted on - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 45
Administration Manual, Release 8.0 CLI: Assigning Ports to VLAN3 (Netgear Switch) (Config)#interface range 1/0/2-1/0/4 (Netgear Switch) (conf-if-range-1/0/2-1/0/4)#vlan participation include 3 (Netgear Switch) (conf-if-range-1/0/2-1/0/4)#exit (Netgear Switch) (Config)#interface 1/0/4 (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 46
Acceptable Frame Type polyhedron field. d. Click Apply to save the settings. Assign VLAN3 as the Default VLAN for Port 1/0/2 This example shows how to assign VLAN 3 as the default VLAN for port 1/0/2. CLI: Assigning VLAN3 as the Default VLAN for Port 1/0/2 (Netgear Switch) #config (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 47
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Switching > VLAN >Advanced > Port PVID Configuration. A screen similar to the following displays. Figure 3-8 b. Under PVID Configuration, scroll down to interface 1/0/2 and select the checkbox for - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 48
a MAC address mapping to a VLAN that has not been created on the system. CLI: Creating a MAC-Based VLAN Create a VLAN 3 (Netgear Switch)#vlan database (Netgear Switch)(Vlan)#vlan 3 (Netgear Switch)(Vlan)#exit Add the port 1/0/23 to the VLAN 3. (Netgear Switch)#config (Netgear Switch)(Config - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 49
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Web Interface Procedure: Assigning a MAC-Based VLAN To use the Web interface to configure the managed switch, proceed as follows: 1. Create VLAN 3. a. From the main menu, select Switching > VLAN >Basic > VLAN configuration. A - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 50
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Select 3 in the VLAN ID field. c. Click the Unit 1. The Ports display. d. Click the gray box before the Unit 1until U displays. e. Click Apply 3. Assign VPID 3 to the port 1/0/23. a. From the main menu, select Switching > VLAN> - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 51
is assigned to VLAN 4, and the untagged IP/ARP packets is assigned to VLAN 5. CLI: Creating a Protocol-based VLAN Create a vlan protocol group vlan_ipx based on IPX protocol. (Netgear Switch)#config (Netgear Switch)(Config)#vlan protocol group vlan_ipx (Netgear Switch)(Config)#vlan protocol group - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 52
Manual, Release 8.0 Enable protocol vlan group 1 and 2 on the interface. (Netgear Switch)(Vlan)#exit (Netgear Switch)#config (Netgear Switch)(Config)#interface 1/0/11 (Netgear Switch)(Interface 1/0/11)#protocol vlan group 1 (Netgear Switch)(Interface 1/0/11)#protocol vlan group 2 (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 53
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Switching > VLAN >Advanced > Protocol Based VLAN Group Configuration. A screen similar to the following displays. Figure 3-15 b. Enter the following information in the Protocol Based VLAN Group - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 54
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Switching > VLAN >Advanced > Protocol Based VLAN Group Membership. A screen similar to the following displays Figure 3-17 b. Select the 1 in the Group ID field. c. Click the gray box under port 11. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 55
is routed. The IP subnet classification feature only affects the VLAN assignment of a packet. Appropriate 802.1Q VLAN configuration must exist in order for the packet to be switched. 1/0/1 Switch 1/0/24 PC 1 10.100.5.1 Figure 3-19 CLI: Creating an IP Subnet Based VLAN PC 2 10.100.5.30 (Netgear - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 56
Administration Manual, Release 8.0 Create an IP subnet based VLAN 2000. (Netgear Switch) #config (Netgear Switch) (Config)#interface range 1/0/1-1/0/24 (Netgear Switch) (conf-if-range-1/0/1-1/0/24)# vlan participation include 2000 (Netgear Switch) (conf-if-range-1/0/1-1/0/24)#exit (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 57
Apply. 3. Associate the IP subnet with VLAN 2000. a. From the main menu, select Switching > VLAN >Advanced->IP Subnet Based VLAN. A screen similar to the following displays. Figure 3-22 b. Enter the following information in the IP Subnet Based VLAN Configuration. • In the IP Address field, enter 10 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 58
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Voice VLAN The voice VLAN feature enables switch ports to carry voice traffic with defined priority so as to enable separation of voice and data traffic coming onto the port. Voice VLAN is to ensure that sound quality of an IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 59
Manual, Release 8.0 CLI: Configuring Voice VLAN and Prioritizing Voice Traffic Create VLAN 10. (Netgear Switch) #vlan database (Netgear Switch) (Vlan)#vlan 10 (Netgear Switch) (Vlan)#exit Include the ports 1/0/1and 1/0/2 in the VLAN 10. (Netgear Switch) (Config)#interface range 1/0/1-1/0/2 (Netgear - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 60
(Netgear Switch) (conf-if-range-1/0/1-1/0/2)# service-policy in PolicyVoiceVLAN Web Interface: Voice VLAN and Prioritizing Voice Traffic 1. Create VLAN 10. a. From the main menu, select Switching > VLAN > Basic > VLAN Configuration. A screen similar to the following displays. Figure 3-24 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 61
NETGEAR Managed Switches Software Administration Manual, Release 8.0 d. Click Add. At the end of this configuration a screen similar to the following displays. Figure 3-25 2. Include the ports 1/0/1 and 1/0/2 in the VLAN 10. a. From the main menu, select Switching > VLAN > Advanced -> VLAN - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 62
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Select Port 1 and Port 2 as Tagged. A screen similar to the following displays. Figure 3-27 d. Click Apply. 3. Configure Voice VLAN globally. a. From the main menu, select Switching > VLAN > Advanced > Voice VLAN Configuration. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 63
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Click Apply. A screen similar to the following displays. Figure 3-29 4. Configure Voice VLAN Mode in the interface 1/0/2. a. From the main menu, select Switching > VLAN > Advanced -> Voice VLAN Configuration. b. Select the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 64
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > Advanced the one in Figure 3-33 on page 3-25displays. 6. Configure matching criteria for the class as VLAN 10. a. From the main menu, select QoS > Advanced > Class Configuration. A screen similar - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 65
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Click the class ClassVoiceVLAN. A screen similar to the following displays. Figure 3-34 c. In the DiffServ Class Configuration table, select VLAN. d. Enter VLAN ID as 10. A screen similar to the following displays. Figure 3-35 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 66
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > Advanced > Policy Configuration. A screen similar to the following displays. Figure 3-37 b. Enter Policy Name as PolicyVoiceVLAN. c. Select Policy - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 67
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > Advanced > Policy Configuration. A screen similar to the following displays. Figure 3-39 b. Click the Policy PolicyVoiceVLAN. A screen similar to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 68
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Select Assign Queue as 3. A screen similar to the following displays. Figure 3-41 d. Click Apply. 9. Assign it to the interfaces 1/0/1 and 1/0/2. a. From the main menu, select QoS > Advanced > Service Interface Configuration. A - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 69
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Select Policy Name as PolicyVoiceVLAN. A screen similar to the following displays. Figure 3-43 d. Click Apply. A screen similar to the following displays. Figure 3-44 Virtual LANs v1.0, October 2009 3-30 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 70
physical port. You can include a LAG in a VLAN. You can configure more than one LAG for a given switch. LAG offers the following benefits: • Increased reliability each individual link. • Incremental increase in bandwidth-a physical upgrade could produce a 10-times increase in bandwidth; LAG produces - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 71
Manual, Release 8.0 Create Two LAGs The following figure shows the example network. Port 1/0/3 LAG_10 Subnet 3 Port 1/0/2 Server LAG_10 Layer 3 Switch Port 1/0/8 LAG 20 Port 1/0/9 LAG_20 Layer 2 Switch Subnet 2 Subnet 3 Figure 4-1 CLI: Creating Two LAGs (Netgear Switch) #config (Netgear - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 72
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Web Interface: Creating Two LAGs To use the Web interface to configure the managed switch, proceed as follows: 1. Create LAG lag_10. a. From the main menu, select Switching the main menu, select Switching > LAG >LAG Configuration. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 73
NETGEAR Managed Switches Software Administration Manual, Release 8.0 CLI: Adding the Ports to the LAGs (Netgear Switch) #config (Netgear Switch) (Config)#interface 0/2 (Netgear Switch) (Interface 0/2)#addport 1/1 (Netgear Switch) (Interface 0/2)#exit (Netgear Switch) (Config)#interface 0/3 (Netgear - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 74
NETGEAR Managed Switches Software Administration Manual, Release 8.0 e. Click Apply to save the settings. 2. Add ports to the lag_20. a. From the main menu, select Switching > LAG >LAG Membership. A screen similar to the following displays. Figure 4-5 b. Under the LAG Membership Configuration , - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 75
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Web Interface: Enabling Both LAGs To use the Web interface to configure the switch, proceed as follows: a. From the main menu, select Switching > LAG >LAG Configuration. A screen similar to the following displays. Figure 4-6 b. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 76
7000 Series Managed Switch supports protocols such as DHCP that allow the address to be assigned dynamically. Likewise, you may assign some of the entries in the routing tables used by the router statically, but protocols such as RIP and OSPF allow the tables to be created and updated dynamically as - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 77
MAC addresses. The table contains both static entries and entries dynamically updated based on information in received ARP frames. • Routing Table Object, responsible for maintaining the common routing table used by all registered routing protocols. You may then activate RIP or OSPF, used by routers - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 78
NETGEAR Managed Switches Software Administration Manual, Release 8.0 CLI: Enabling Routing for the Switch Use the following command to enable routing for the switch. Execution of the command enables IP forwarding by default. (Netgear Switch) #config (Netgear Switch) (Config)#ip routing (Netgear - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 79
Switches Software Administration Manual, Release 8.0 CLI: Enabling Routing for Ports on the Switch (Netgear Switch) #config (Netgear Switch) (Config)#interface 1/0/2 (Netgear Switch) (Interface 1/0/2)#routing (Netgear Switch) (Interface 1/0/2)#ip address 192.150.2.1 255.255.255.0 (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 80
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • In the IP Address field, enter 192.150.2.1. • In the Subnet Mask field, enter 255.255.255.0. • Select Enable in Routing Mode field. d. Click Apply to save the settings. 2. Assign IP address 192.150.3.1/24 to the interface 1/0/3. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 81
. Adding a Default Route When IP routing takes place on a switch, a route table is needed for the switch to forward the packet based on the destination IP address. The route entry in the route table can either be created dynamically via routing protocols like RIP and OSPF, or can be manually created - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 82
NETGEAR Managed Switches Software Administration Manual, Release 8.0 CLI: Add a Default Route (FSM7338S) (Config) #ip route default ? Enter the IP Address of the next router. (FSM7328S) (Config)#ip route default 10.10.10.2 Note that IP subnet "10.10.10.0" should be configured via either - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 83
the packet to take certain route (port) instead of the default route. The following procedure shows how to add static route to the switch routing table. CLI Command Procedure: The following commands assume the switch has already defined a routing interface with network address of 10.10.10.0, and - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 84
NETGEAR Managed Switches Software Administration Manual, Release 8.0 2. Select Static in the Route Type field. 3. Enter Network Address field. Noted this field is expecting a network IP address, not a host IP address. Do not put down something like "10,100.100.1". The last number should always be - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 85
the 7000 Series Managed Switch with some ports supporting VLANs and some supporting routing. You can also configure it to allow traffic on a VLAN to be treated as if the VLAN were a router port. When a port is enabled for bridging (the default) rather than routing, all normal bridge processing - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 86
Series Managed Switch to provide the VLAN routing support shown in the diagram. Layer 3 Switch Port 1/0/2 VLAN Router Port 1/3/1 192.150.3.1 Port 1/0/3 VLAN Router Port 1/3/2 192.150.4.1 Port 1/0/1 Layer 2 Switch Layer 2 Switch VLAN 10 VLAN 20 Figure 6-1 CLI: Creating Two VLANs The following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 87
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Web Interface: Creating Two VLANs To use the Web interface to configure the managed switch, proceed as follows: 1. Create VLAN 10, VLAN20. a. From the main menu, select Switching > VLAN >Advanced > VLAN configuration. A screen - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 88
NETGEAR Managed Switches Software Administration Manual, Release 8.0 h. In the VLAN Name field, enter VLAN20. i. Select Static in the VLAN Type field. j. Click Add. 2. Add ports to the VLAN10 and VLAN20. a. From the main menu, select Switching > VLAN >Advanced > VLAN Membership. A screen similar to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 89
NETGEAR Managed Switches Software Administration Manual, Release 8.0 g. Select 20 in the VLAN ID field. h. Click the Unit 1. The Ports display. i. Click the gray box under port 3 d. In the PVID (1 to 4093) field, enter 10. e. Click Apply to save the settings. VLAN Routing 6-5 v1.0, October 2009 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 90
interface procedure. CLI: Setting Up VLAN Routing for the VLANs and the Switch The following code sequence shows how to enable routing for the VLANs: (Netgear Switch) #vlan data (Netgear Switch) (Vlan)#vlan routing 10 (Netgear Switch) (Vlan)#vlan routing 20 (Netgear Switch) (Vlan)#exit This returns - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 91
Manual, Release 8.0 Enable routing for the switch: (Netgear Switch) #config (Netgear Switch) (Config)#ip routing (Netgear Switch) (Config)#exit The next sequence shows an example of configuring the IP addresses and subnet masks for the virtual router ports. (Netgear Switch) (Config)#interface vlan - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 92
NETGEAR Managed Switches Software Administration Manual, Release 8.0 4. From the main menu, select Routing > VLAN> VLAN Routing > VLAN Routing Configuration. A screen similar to the following displays. Figure 6-9 5. Under the VLAN Routing Configuration, enter the following information. • Select 10 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 93
specification is extended to include subnet mask and gateway - The routing table is sent to a multicast address, reducing network traffic - An authentication method is used for security The 7000 Series Managed Switch supports both versions of RIP. You may configure a given port: • To receive packets - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 94
and as a Web interface procedure. CLI: Enabling Routing for the Switch The following sequence enables routing for the switch: (Netgear Switch) #config (Netgear Switch) (Config)#ip routing (Netgear Switch) (Config)#exit Web Configuration: Enabling Routing for the Switch To use the Web interface to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 95
. CLI: Enabling Routing for Ports Enable routing and assigns IP addresses for ports 1/0/2 and 1/0/3. (Netgear Switch) #config (Netgear Switch) (Config)#interface 1/0/2 (Netgear Switch) (Interface 1/0/2)#routing (Netgear Switch) (Interface 1/0/2)#ip address 192.150.2.1 255.255.255.0 (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 96
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Advanced >IP Interface Configuration. A screen similar to the following displays. Figure 7-3 b. Under IP Interface Configuration, scroll down to interface 1/0/2 and select the checkbox for - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 97
. • In the IP Address field, enter 192.150.3.1. • In the Subnet Mask, enter 255.255.255.0. • Select Enable in the Routing Mode field. d. Click Apply to save the settings. Enable RIP for the Switch Note: This step can be skipped since the RIP is enabled by default. Routing Information Protocol - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 98
Manual, Release 8.0 CLI: Enabling RIP for the Switch The next sequence enables RIP for the switch. the route preference defaults to 15. (Netgear Switch) #config (Netgear Switch) (Config)#router rip (Netgear Switch) (Config router)#enable (Netgear Switch) (Config router)#exit (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 99
Manual, Release 8.0 but send only RIPv2 formatted frames. (Netgear Switch) #config (Netgear Switch) (Config)#interface 1/0/2 (Netgear Switch) (Interface 1/0/2)#ip rip (Netgear Switch) (Interface 1/0/2)#ip rip receive version both (Netgear Switch) (Interface 1/0/2)#ip rip send version rip2 (Netgear - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 100
NETGEAR Managed Switches Software Administration Manual, Release 8.0 4. From the main menu, select Routing > RIP > Advanced>RIP Configuration save the settings. VLAN Routing RIP Configuration Routing Information Protocol (RIP) is one of the protocols which may be used by routers to exchange network - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 101
adds support for RIPv2 to the configuration created in the base VLAN routing example. A second router, using port routing rather than VLAN routing, has been added to the network. Layer 3 Switch Port 1/0/2 VLAN Router Port 1/3/1 192.150.3.1 Router port 1/0/5 192.150.4.1 Port 1/0/3 VLAN Router Port - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 102
vlan 20 (Netgear Switch) (Interface vlan 20)#ip address 192.150.4.1 255.255.255.0 (Netgear Switch) (Interface vlan 20)#exit Enable RIP for the switch. The route preference will default to 15. (Netgear Switch) (Config)#router rip (Netgear Switch) (Config router)#enable (Netgear Switch) (Config router - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 103
Administration Manual, Release 8.0 Enable RIP for the VLAN router ports. Authentication will default to none, and no default route entry will be created. (Netgear Switch) (Config)#interface vlan 10 (Netgear Switch) (Interface vlan 10)#ip rip (Netgear Switch) (Interface vlan 10)#exit (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 104
Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > VLAN > VLAN Routing Wizard. A screen similar to the following displays. Figure 7-10 b. Enter the following information in the VLAN Routing Wizard: • In the Vlan ID field, enter 20. • In the IP Address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 105
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > RIP > Advanced>RIP Configuration. A screen similar to the following displays. Figure 7-12 b. Under the Interface Configuration, enter the following information. • Select 0/2/1 in the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 106
, the following examples are provided: • "Configure an Inter-Area Router" on page 8-2 • "Configure OSPF on a Border Router" on page 8-8 • "Configure Area 1 as a Stub Area" on page 8-15 • "Configure Area 1 as a nssa Area" on page 8-24 • "VLAN Routing OSPF Configuration" on page 8-35 • "OSPFv3 (Open - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 107
192.150.2.1 Port 1/0/3 192.150.3.1 Border Router Border Router Area 2 Figure 8-1 Area 3 CLI: Configuring an Inter-Area Router Step 1: Enable Routing for the switch. (Netgear Switch) #config (Netgear Switch) (Config)#ip routing (Netgear Switch) (Config)#exit OSPF 8-2 v1.0, October 2009 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 108
Manual, Release 8.0 Step 2: Assign IP addresses for ports. (Netgear Switch) #config (Netgear Switch) (Config)#interface 1/0/2 (Netgear Switch) (Interface 1/0/2)#routing (Netgear Switch) (Interface 1/0/2)#ip address 192.150.2.1 255.255.255.0 (Netgear Switch) (Interface 1/0/2)#exit (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 109
NETGEAR Managed Switches Software Administration Manual, Release 8.0 1. Enable IP routing on the switch: a. From the main menu, select Routing > IP > IP Configuration. A screen similar to the following displays. Figure 8-2 b. Next to the Routing the IP Interface Configuration: • In the IP Address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 110
NETGEAR Managed Switches Software Administration Manual, Release 8.0 d. Click Apply to save the settings. 3. Assign IP address 192.150.3.1 to the port 1/0/3: a. From the main menu, select Routing > IP > Advanced> IP information in the IP Interface Configuration: • In the IP Address field, enter 192 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 111
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > OSPF > Advanced> OSPF Configuration. A screen similar to the following displays. Figure 8-5 b. Under the OSPF Configuration, enter the following information: • In the Router ID, enter 192. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 112
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > OSPF > Advanced> Interface Configuration. A screen similar to the following displays. Figure 8-6 b. Under Interface Configuration, scroll down to interface 1/0/2 and select the checkbox for - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 113
OSPF on a Border Router The example is shown as CLI commands and as a Web interface procedure. For an OSPF example network, see Figure 8-1 on page 8-2. CLI: Configuring OSPF on a Border Router Enable routing for the switch. (Netgear Switch) #config (Netgear Switch) (Config)#ip routing OSPF 8-8 v1 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 114
.130.3.1 255.255.255.0 (Netgear Switch) (Interface 1/0/3)#exit (Netgear Switch) (Config)#interface 1/0/4 (Netgear Switch) (Interface 1/0/4)#routing (Netgear Switch) (Interface 1/0/4)#ip address 192.64.4.1 255.255.255.0 (Netgear Switch) (Interface 1/0/4)#exit Specify the router ID and enable OSPF for - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 115
ip ospf cost 64 (Netgear Switch) (Interface 1/0/4)#exit (Netgear Switch) (Config)#exit Web Interface: Configuring OSPF on a Border Router To use the Web interface to configure OSPF on the switch, proceed as follows: 1. Enable IP routing on the switch: a. From the main menu, select Routing > IP > IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 116
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 8-9 b. Under IP Interface Configuration, scroll down to interface 1/0/2 and select the checkbox for that interface. Now 1/0/2 appears in the Interface field at the top. c. Enter the following information in the IP Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 117
Configuration: • In the IP Address field, enter 192.64.4.1. • In the Network Mask field, enter 255.255.255.0. • Select Enable in the Admin Mode field. d. Click Apply to save the settings. 5. Specify the Router ID and Enable OSPF for the switch a. From the main menu, select Routing > OSPF > Advanced - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 118
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 8-12 b. Under the OSPF Configuration, enter the following information: • In the Router ID, enter 192.130.1.1. • Select the Enable in the OSPF Admin Mode field. • Select the Disable in the RFC 1583 Compatibility field. c. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 119
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Under Interface Configuration, scroll down to settings. 7. Enable OSPF on the port 1/0/3. a. From the main menu, select Routing > OSPF > Advanced> Interface Configuration. A screen similar to the following displays. Figure - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 120
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 8-15 b. Under Interface Configuration Stub Area The example is shown as CLI commands and as a Web interface procedure. Port 2/0/11 Layer 3 Switch Port 2/0/191 Port 1/0/151 Layer 3 Switch Area 0 Figure 8-16 Area 1 8- - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 121
Switches Software Administration Manual, Release 8.0 CLI: Configuring Area 1 as a Stub Area on A1 Enable routing on the switch. (Netgear Switch) #config (Netgear Switch) (Config)#ip routing Set the router id to 1.1.1.1. (Netgear Switch) (Config)#router ospf (Netgear Switch) (Config-router)#router - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 122
Switches Software Administration Manual, Release 8.0 (Netgear Switch) (Config)#ex (Netgear Switch) #show ip ospf neighbor interface all Router ID IP Address Neighbor Interface State 4.4.4.4 192.168.10.2 2/0/11 Full 2.2.2.2 192.168.20.2 2/0/19 Full (Netgear Switch) #show ip route - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 123
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 8-18 b. Under IP Interface Configuration, scroll down to interface 2/0/11 and select the checkbox for that interface. 2/0/11 now appears in the Interface field at the top. c. Enter the following information in the IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 124
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • In the IP Address field, enter 192.168.20.1. • In the Network Mask field, enter 255.255.255.0. • Select Enable in the Admin Mode field. d. Click Apply to save the settings. 4. Specify the Router ID and Enable OSPF for the switch. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 125
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Under Interface Configuration, scroll down settings. 6. Enable OSPF on the port 2/0/19. a. From the main menu, select Routing > OSPF > Advanced> Interface Configuration. A screen similar to the following displays. Figure 8-22 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 126
15. (Netgear Switch) (Config-router)#exit (Netgear Switch) (Config-router)#exit (Netgear Switch) (Config)#interface 1/0/15 (Netgear Switch) (Interface 1/0/15)#routing (Netgear Switch) (Interface 1/0/15)#ip address 192.168.20.2 (Netgear Switch) (Interface 1/0/15)#ip ospf (Netgear Switch) (Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 127
as follows: 1. Enable IP routing on the switch. a. From the main menu, select Routing > IP > IP Configuration. A screen similar to the following displays. Figure 8-24 b. Next to the Routing Mode, select the Enable radio button. c. Click Apply to save the settings. 2. Assign IP address 192.168.10 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 128
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • Select Enable in the Admin Mode field. d. Click Apply to save the settings. 3. Specify the Router ID and Enable OSPF for the switch a. From the main menu, select Routing > OSPF > Basic> OSPF Configuration. A screen similar to the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 129
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Click Apply to save the settings. 5. Configure area 0.0.0.1 as a stub area. a. From the main menu, select Routing Switch Port 2/0/191 Port 1/0/151 Layer 3 Switch Area 0 Area 1 Figure 8-29 The example is shown as CLI - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 130
Manual, Release 8.0 CLI: Configuring Area 1 as a nssa Area Enable routing on the switch. (Netgear Switch) #config (Netgear Switch) (Config)#router ospf (Netgear Switch) (Config)#ip routing Configure area 0.0.0.1 as a nssa area. (Netgear Switch) (Config)#router ospf (Netgear Switch) (Config-router - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 131
NETGEAR Managed Switches Software Administration Manual, Release 8.0 (Netgear Switch) (Interface 2/0/19)#exit (Netgear Switch) (Config)#exit (Netgear Switch) #show ip route Total Number of Routes 2 Network Subnet Next Hop Address Mask Protocol Intf 14.1.1.0 255.255.255.0 OSPF Inter - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 132
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 8-31 b. Under IP Interface Configuration, scroll down to interface 2/0/11 and select the checkbox for that interface. 2/0/11 now appears in the Interface field at the top. c. Enter the following information in the IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 133
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • In the IP Address field, enter 192.168.20.1. • In the Subnet Mask field, enter 255.255.255.0. • Select Enable in the Admin Mode field. d. Click Apply to save the settings. 4. Specify the Router ID and Enable OSPF for the switch. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 134
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Under Interface Configuration, scroll down settings. 6. Enable OSPF on the port 2/0/19. a. From the main menu, select Routing > OSPF > Advanced> Interface Configuration. A screen similar to the following displays. Figure 8-35 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 135
. (Netgear Switch) (Config-router)#exit (Netgear Switch) (Config)#interface 1/0/11 (Netgear Switch) (Interface 1/0/11)#routing (Netgear Switch) (Interface 1/0/11)#ip address 192.168.30.1 255.255.255.0 (Netgear Switch) (Interface 1/0/11)#ip rip (Netgear Switch) (Interface 1/0/11)#exit (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 136
NETGEAR Managed Switches Software Administration Manual, Release 8.0 (Netgear Switch) (Interface 1/0/15)#exit (Netgear Switch) (Config)#exit (Netgear Switch) #show ip route Total Number of Routes 6 Network Subnet Next Hop Address Mask Protocol Intf 0.0.0.0 0.0.0.0 OSPF Inter 1/0/ - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 137
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 8-38 b. Under IP Interface Configuration, scroll down to interface 1/0/11 and select the checkbox for that interface. Now 1/0/11 appears in the Interface field at the top. c. Enter the following information in the IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 138
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Enter the following information in the IP Interface Configuration: • In the IP Address field, enter 192.168.20.2. • In the Network Mask field, enter 255.255.255.0. • Select Enable in the Routing Mode field. d. Click Apply to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 139
NETGEAR Managed Switches Software Administration Manual, Release 8.0 6. Enable OSPF on the port 1/0/15. a. From the main menu, select Routing > OSPF > Advanced> Interface Configuration. A screen similar to the following displays. Figure 8-42 b. Under IP Interface Configuration, scroll down to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 140
NETGEAR Managed Switches Software Administration Manual, Release 8.0 8. Redistribute the RIP routes into the OSPF area. a. From the main menu, select Routing > OSPF > Advanced>Route Redistribution. A screen similar to the following displays. Figure 8-44 b. In the Route Redistribution, select RIP in - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 141
8.0 CLI: VLAN Routing OSPF Configuration This example adds support for OSPF to the configuration created in the base VLAN routing example in Figure 6-1 on page 6-2. The script shows the commands you would use to configure the 7000 Series Managed Switch as an inter-area router. (Netgear Switch) #vlan - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 142
Administration Manual, Release 8.0 Enable OSPF for the VLAN and physical router ports. (Netgear Switch) (Config)#interface vlan 10 (Netgear Switch) (Interface vlan 10)#ip ospf areaid 0.0.0.2 (Netgear Switch) (Interface vlan 10)#ip ospf (Netgear Switch) (Interface vlan 10)#exit (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 143
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Enter the following information in the VLAN Routing Wizard. • In the Vlan ID field, enter 10. • In the IP Address field, enter 192.150.3.1. • In the Network Mask field, enter 255.255.255.0. c. Click Unit 1. The ports display: - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 144
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 8-47 b. Next to the OSPF Admin Mode, select Enable Radio button. c. Enter 192.150.9.9 in the Router ID filed. d. Click Apply to save the setting. 4. Enable OSPF on the VLAN 10. a. From the main menu, select Routing > OSPF > - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 145
NETGEAR Managed Switches Software Administration Manual, Release 8.0 5. Enable OSPF on the VLAN 20. a. From the main menu, select Routing > OSPF > Advanced>Interface Configuration. A screen similar to the following displays. Figure 8-49 b. Under the Interface Configuration, click the VLANS to show - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 146
(Netgear Switch) (Config)#ipv6 router ospf (Netgear Switch) (Config-rtr)#enable (Netgear Switch) (Config-rtr)#router-id 1.1.1.1 (Netgear Switch) (Config-rtr)#exit Enable routing mode on the interface 1/0/1 and assign 2000::1 to IPv6 address. (Netgear Switch) (Config)#interface 1/0/1 (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 147
assign 2.2.2.2 to router ID. (Netgear Switch) (Config)#ipv6 router ospf (Netgear Switch) (Config-rtr)#enable (Netgear Switch) (Config-rtr)#router-id 2.2.2.2 (Netgear Switch) (Config-rtr)#exit Enable routing mode on the interface 1/0/13 and assign 2000::2 to IPv6 address. (Netgear Switch) (Config - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 148
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IPv6 > IPv6 Global Configuration. A screen similar to the following displays. Figure 8-51 b. Next to the IPv6 Unicast Routing Mode, select the Enable radio button. c. Click Apply to save the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 149
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IPv6 > Advanced> IP Routing Mode field. d. Click Apply to save the settings. 4. Assign IP address 2001::1 to the port 1/0/1. a. From the main menu, select Routing > IPv6 > Advanced> IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 150
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Enter the following information in the IPv6 Interface main menu, select Routing > OSPFv3 > Advanced>Interface Configuration. A screen similar to the following displays. Figure 8-55 b. Under IP Interface Configuration, scroll - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 151
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 8-56 To use the Web interface to configure OSPF on the switch A2, refer to the configuration of switch A1. OSPF v1.0, October 2009 8-46 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 152
proxy ARP feature. CLI: show ip interface (Netgear Switch) #show ip interface ? brief Enter an interface in slot/port format. Display summary information about IP configuration settings for all ports. (Netgear Switch) #show ip interface 0/24 Routing Mode Disable Administrative Mode - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 153
NETGEAR Managed Switches Software Administration Manual, Release 8.0 CLI: ip proxy-arp (Netgear Switch) (Interface 0/24)#ip proxy-arp ? Press Enter to execute the command. (Netgear Switch) (Interface 0/24)#ip proxy-arp Web Interface: Configuring Proxy ARP on a Port To use the Web - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 154
with static default routes by enabling a backup router to take over from a "master" router without affecting the end stations using the route. The end stations will use a "virtual" IP address that will be recognized by the backup router if the master router fails. Participating routers use an - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 155
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Configure VRRP on a Master Router This example shows how to configure the 7000 Series Managed Switch to support VRRP. Router 1 will be the default master router for the virtual route, and Router 2 will be the backup router. CLI: - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 156
port. (Netgear Switch) (Interface 1/0/2)#ip vrrp 20 mode (Netgear Switch) (Interface 1/0/2)#exit (Netgear Switch) (Config)#exit Web Interface: Configuring VRRP on a Master Router To use the Web interface to configure VRRP on a master router on the switch, proceed as follows: 1. Enable IP routing on - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 157
Interface field. • In the Primary IP Address, enter 192.150.2.1. • Select Active in the Mode field. d. Click Apply to save the settings. Configure VRRP on a Backup Router The example is shown as CLI commands and as a Web interface procedure. Virtual Router Redundancy Protocol v1.0, October 2009 10 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 158
Manual, Release 8.0 CLI: Configuring VRRP on a Backup Router The following is an example of configuring VRRP on a 7000 Series Managed Switch acting as the backup router: Enable routing for the switch. IP forwarding will then be enabled by default. (Netgear Switch) #config (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 159
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Web Interface: Configuring VRRP on a Backup Router To use the Web interface to configure VRRP on a backup router on the switch, proceed as follows: 1. Enable IP routing on the switch. a. From the main menu, select Routing > IP > IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 160
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • In the Network Mask field, enter 255.255.0.0. • Select Enablein the Admin Mode field. d. Click Apply to save the settings. 3. Enable VRRP on the 1/0/4. a. From the main menu, select Routing > VRRP > Basic> VRRP Configuration. A - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 161
system supports ACLs set up for inbound traffic only. MAC ACLs MAC ACLs are Layer 2 ACLs. You can configure the rules to inspect the following fields of a packet (limited by platform): • Source MAC address with mask • Destination MAC address with mask • VLAN ID (or range of IDs) • Class of Service - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 162
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • Ethertype - Secondary CoS (802.1p) - Secondary VLAN (or range of to one or more of the following fields within a packet: • Source IP address • Destination IP address • Source Layer 4 port • Destination Layer 4 port • ToS byte • - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 163
(after the mask has been applied), that are carrying TCP traffic, and that are sent to the specified destination IP address. CLI Commands (Netgear Switch) #config (Netgear Switch) (Config)#access-list 101 permit tcp 192.168.77.0 0.0.0.255 192.178.77.0 0.0.0.255 Access Control Lists (ACLs) v1 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 164
Only traffic matching the criteria will be accepted. (Netgear Switch) (Config)#interface 1/0/2 (Netgear Switch) (Interface 1/0/2)#ip access-group 101 in (Netgear Switch) (Interface 1/0/2)#exit (Netgear Switch) (Config)#exit Web Interface: Setting up an IP ACL with Two Rules To use the Web interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 165
NETGEAR Managed Switches Software Administration Manual, Release 8.0 following displays. Figure 11-3 b. Next to ACL ID, select 101. c. Click Add to create a new rule. 3. Create a new ACL rule and add it to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 166
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • Select TCP in the Protocol Type field. • In the Source IP Address, enter 192.168.77.0. • In the Source IP Mask, enter 0.0.0.255. • In the Destination IP Address, enter 192.178.77.0. • In the Destination IP Mask, enter 0.0.0.255. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 167
NETGEAR Managed Switches Software Administration Manual, Release 8.0 to the following displays. Figure 11-6 b. Enter the following information in the IP Binding Configuration. • Select 101 in the ACL ID field. • In the Sequence Number field, enter 1. c. Click the Unit 1. The Ports display. d. Click - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 168
CLI commands: Step 1: Configure the Switch (see Figure 11-7) Create VLAN 30 with port 0/35 and assign IP address 192.168.30.1/24. (Netgear Switch) #vlan database (Netgear Switch) (Vlan)#vlan 30 (Netgear Switch) (Vlan)#vlan routing 30 (Netgear Switch) (Vlan)#exit (Netgear Switch) #config (Netgear - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 169
IP address 192.168.100.1/24. (Netgear Switch) #vlan database (Netgear Switch) (Vlan)#vlan 100 (Netgear Switch) (Vlan)#vlan routing 100 (Netgear Switch) (Vlan)#exit (Netgear Switch) #configure (Netgear Switch) (Config)#interface 0/13 (Netgear Switch) (Interface 0/13)#vlan pvid 100 (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 170
CLI commands: Create VLAN 40 with port 1/0/24 and assign IP address 192.168.40.1/24. (Netgear Switch) #vlan database (Netgear Switch) (Vlan)#vlan 40 (Netgear Switch) (Vlan)#vlan routing 40 (Netgear Switch) #configure (Netgear Switch) (Config)#interface 1/0/24 (Netgear Switch) (Interface 1/0/24)#vlan - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 171
Manual, Release 8.0 Create VLAN 50 with port 1/0/25 and assign IP address 192.168.50.1/24. (Netgear Switch)(Config)#exit (Netgear Switch) #vlan database (Netgear Switch) (Vlan)#vlan 50 (Netgear Switch) (Vlan)#vlan routing 50 (Netgear Switch) (Vlan)#exit (Netgear Switch) #configure (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 172
Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > VLAN > VLAN Routing Wizard. A screen similar to the following displays. Figure 11-8 b. Enter the following information in the VLAN Routing Wizard: • In the Vlan ID field, enter 30. • In the IP Address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 173
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 11-9 b. Enter the following information in the VLAN Routing Wizard: • In the Vlan ID field, enter 100. • In the IP Address field, enter 192.168.100.1. • In the Network Mask field, enter 255.255.255.0. c. Click Unit 1. The - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 174
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 11-10 b. Enter the following information in the VLAN Routing Wizard: • In the Vlan ID field, enter 200. • In the IP Address field, enter 192.168.200.1. • In the Network Mask field, enter 255.255.255.0. c. Click Unit 1. The - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 175
Manual, Release 8.0 b. Under IP Configuration, make the following selections: • Next to Routing Mode, select the Enable radio button. • Next to IP Forwarding Mode, select the Enable radio button. c. Click Apply to enable IP Routing. 5. Add a static route with IP address 192.268.40.0/24 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 176
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 11-13 b. Under Configure Routes, make the following selection and enter the following information: • Select Static in the Route Type field. • In the Network Address field, enter 192.168.50.0. • In the Subnet Mask field, - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 177
NETGEAR Managed Switches Software Administration Manual, Release 8.0 8. Create an ACL with ID 102: a. From the main menu, select Security > ACL > Advanced > IP ACL. A screen similar to the following displays. Figure 11-15 b. In the IP ACL ID field of the IP ACL Table, enter 102. c. Click Add. 9. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 178
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Click Add. The Extended ACL Rule the settings. 10. Add and configure an IP extended rule that is associated with ACL 102: a. From the main menu, select Security > ACL > Advanced > IP Extended Rules. A screen similar to the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 179
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 11-18 b. Under IP Extended Rules, select 102 in the the Permit radio button. • Select False in the Match Every field. • Select IP in the Protocol Type field. e. Click Apply to save the settings. Access Control Lists (ACLs) - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 180
NETGEAR Managed Switches Software Administration Manual, Release 8.0 11. Apply ACL 101 to port 44. a. From the main menu, select Security > ACL > Advanced > IP Binding Configuration. A screen similar to the following displays. Figure 11-20 b. Under Binding Configuration, make the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 181
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 11-21 b. Under Binding Configuration, make GSM7352S, proceed as follows: 1. Create VLAN 40 with IP address 192.168.40.1/24. a. From the main menu, select Routing > VLAN > VLAN Routing Wizard. A screen similar to the Access - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 182
NETGEAR Managed Switches Software Administration Manual, Release 8.0 following displays. Figure 11-22 b. Enter the following information in the VLAN Routing Wizard: • In the Vlan ID field, enter 40. • In the IP Address field, enter 192.168.40.1. • In the Network Mask field, enter 255.255.255.0. c. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 183
NETGEAR Managed Switches Software Administration Manual, Release 8.0 2. Create VLAN 50 with IP address 192.168.50.1/24: a. From the main menu, select Routing > VLAN > VLAN Routing Wizard. A screen similar to the following displays. Figure 11-23 b. Enter the following information in the VLAN Routing - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 184
Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > VLAN > VLAN Routing Wizard. A screen similar to the following displays. Figure 11-24 b. Enter the following information in the VLAN Routing Wizard: • In the Vlan ID field, enter 200. • In the IP Address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 185
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 11-25 b. Under Configure Routes, make the following selection and enter the following information: • Select Static in the Route Type field. • In the Network Address field, enter 192.168.100.0. • In the Subnet Mask field, - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 186
Mask field, enter 255.255.255.0. • In the Next Hop IP Address field, enter 192.168.200.1. c. Click Add. Configure Isolated VLANs on a Layer 3 Switch by Using ACLs Server Port 11/0/38 10.100.5.34 10.100.5.252 Layer 3 Switch Port 1/0/24 192.148.24.1 Port 1/0/48 192.148.48.1 PC1 PC2 192.148 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 187
1/0/24 (Netgear Switch) (Interface 1/0/24)#vlan participation include 24 (Netgear Switch) (Interface 1/0/24)#vlan pvid 24 (Netgear Switch) (Interface 1/0/24)#exit (Netgear Switch) (Config)#interface vlan 24 (Netgear Switch) (Interface-vlan 24)#routing (Netgear Switch) (Interface-vlan 24)#ip address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 188
)#exit Netgear Switch) (Config)#interface vlan 38 (Netgear Switch) (Interface-vlan 38)#routing (Netgear Switch) (Interface-vlan 38)#ip address 10.100.5.34 255.255.255.0 (Netgear Switch) (Interface-vlan 38)#exit Enable IP routing on the switch. (Netgear Switch) (Config)#ip routing Add a default route - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 189
Manual, Release 8.0 Web Interface: Configuring a One-Way Access Using a TCP Flag in an ACL To use the Web interface to isolate VLANs on a Layer 3 switch by using ACLs, proceed as follows: 1. Create VLAN 24 with IP address 192.168.24.1: a. From the main menu, select Routing > VLAN > VLAN Routing - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 190
Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > VLAN > VLAN Routing Wizard. A screen similar to the following displays. Figure 11-29 b. Enter the following information in the VLAN Routing Wizard: • In the Vlan ID field, enter 48. • In the IP Address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 191
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 11-30 b. Enter the following information in the VLAN Routing Wizard: • In the Vlan ID field, enter 38. • In the IP Address field, enter 10.100.5.34. • In the Network Mask field, enter 255.255.255.0. c. Click Unit 1. The - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 192
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Under IP Configuration, make the following selections: • Next to Routing Mode, select the Enable radio button. • Next to IP Forwarding Mode, select the Enable radio button. c. Click Apply to enable IP Routing. 5. Create an ACL - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 193
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. In the IP ACL ID field of the IP ACL Table, enter 102. c. Click Add. 7. Create an ACL with ID 103: a. From the main menu, select Security > ACL > Advanced > IP ACL. A screen similar to the following displays. Figure 11-34 b. In - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 194
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Click Add. The Extended ACL • In the Destination IP Address field, enter 192.168.24.0. • In the Destination IP Mask field, enter 0.0.0.255. e. Click Apply to save the settings. 9. Add and configure an IP extended rule that is - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 195
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 11-37 b. Under IP Extended Rules, select 102 in Select False in the Match Every field. • In the Destination IP Address field, enter 192.168.48.0. • In the Destination IP Mask field, enter 0.0.0.255. e. Click Apply to save the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 196
NETGEAR Managed Switches Software Administration Manual, Release 8.0 10. Add and configure an IP extended rule that is associated with ACL 103: a. From the main menu, select Security > ACL > Advanced > IP Extended Rules. A screen similar to the following displays. Figure 11-39 b. Under IP Extended - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 197
NETGEAR Managed Switches Software Administration Manual, Release 8.0 11. Apply ACL 102 to port 24: a. From the main menu, select Security > ACL > Advanced > IP Click Unit 1. The ports display. d. Click on the gray box under port 24. A flag appears in the box. e. Click Apply to save the settings. 12 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 198
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 11-42 b. Under Binding save the settings. 13. Apply ACL 103 to port 24 and port 48: a. From the main menu, select Security > ACL > Advanced > IP Binding Configuration. A screen similar to the following displays. 11 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 199
NETGEAR Managed Switches Software Administration Manual • Click on the gray box under port 24. A flag appears in the box. • CLI commands and as a Web interface procedure. CLI: Setting up a MAC ACL with Two Rules Create a new MAC ACL acl_bpdu. (Netgear Switch) # (Netgear Switch) #config (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 200
Administration Manual, Release 8.0 Deny all the traffic which has destination MAC 01:80:c2:xx:xx:xx. (Netgear Switch) (Config-mac-access-list)#deny any 01:80:c2:00:00:00 00:00:00:ff:ff:ff Permit all the other traffic. (Netgear Switch) (Config-mac-access-list)#permit any (Netgear Switch) (Config - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 201
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > ACL >MAC ACL> MAC Rules. A screen similar to the following displays. Figure 11-45 a. Select acl_bpdu in the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 202
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. Select acl_bpdu in the ACL Name field. b. Enter the following information in the Rule Table. • In the ID field, enter 2. • Select the Permit in - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 203
NETGEAR Managed Switches Software Administration Manual, Release 8.0 ACL Mirroring This feature extends the existing port will be copied to the specified mirrored interface. Other network 1/0/1 L2 Switch GSM73xxS 1/0/19 Probing station Packets from 10.0.0.1 Workstation 10.0.0.1 Workstation 10 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 204
monitorHost 2 inbound Interface(s 1/0/1 VLAN(s (Netgear Switch) #show ip access-lists monitorHost ACL Name: monitorHost Inbound Interface(s): 1/0/1 Rule Number: 1 Action permit Match All FALSE Protocol 255(ip) Source IP Address 10.0.0.1 Source IP Mask 0.0.0.0 Mirror Interface 1/0/19 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 205
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Web Interface: Configuring ACL Mirroring To use the Web interface to configure IP ACL on a port on the switch, proceed as follows: 1. Create an IP access control list with the name monitorHost on the switch: a. From the main menu, - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 206
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > ACL > Advanced > IP Extended Permit. e. Select Mirror Interface as 1/0/19. f. Enter Src IP address as 10.0.0.1. g. Enter Src IP Mask as 0.0.0.0. h. Click Apply. At the end of this - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 207
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > ACL > Advanced > IP Extended Rules. A screen similar to the following displays Figure 11-53 b. Click Add and a screen similar to the following displays. Figure 11-54 c. Enter the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 208
NETGEAR Managed Switches Software Administration Manual, Release 8.0 4. Bind the ACL with the interface 1/0/1. a. From the main menu, select Security > ACL > Advanced > IP Binding Configuration. A screen similar to the following displays. Figure 11-56 b. Enter Sequence Number as 1. c. Click Unit 1 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 209
NETGEAR Managed Switches Software Administration Manual, Release 8.0 ACL Redirect This feature redirects a desired to the port 1/0/19. CLI: Redirecting a Traffic Stream Create a IP Access Control List with the name redirectHTTP. (Netgear Switch) (Config)#ip access-list redirectHTTP Define a rule - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 210
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Bind the ACL with the interface 1/0/1. (Netgear Switch) (Interface 1/0/1)#ip access-group redirectHTTP in 1 View the configuration. (Netgear Switch) # show ip Interface(s) VLAN(s) 1/0/1 (Netgear Switch) #show ip access- - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 211
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > ACL > Advanced > IP ACL. A screen similar to the following displays. Figure 11-59 b. In the IP ACL filed enter redirectHTTP. c. Click Add to create the IP ACL redirectHTTP. At the end of - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 212
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > ACL > Advanced > IP Extended Rules. A screen similar to the following displays. Figure 11-61 b. Click Add to take the Extended ACL Rule Configuration screen similar to the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 213
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > ACL > Advanced > IP Extended Rules. A screen similar to the following displays. Figure 11-63 b. Click Add to take the Extended ACL Rule Configuration screen similar to the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 214
NETGEAR Managed Switches Software Administration Manual, Release 8.0 f. Click Apply. At the end of this configuration a screen similar to the following displays. Figure 11-65 4. Bind the ACL with the interface 1/0/1. a. From the main menu, select Security > ACL > Advanced > IP Binding Configuration. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 215
NETGEAR Managed Switches Software Administration Manual, Release 8.0 e. Click Apply. At the end of this configuration a screen similar to the following displays. Figure 11-67 Configure IPv6 ACLs This feature extends the existing IPv4 ACL by providing support for IPv6 packet classification. IPv6 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 216
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Interface 1/0/1 GSM73xxS 2001:0DB8:c0ab:ac11::/64 2001:0DB8:c0ab:ac14::/64 2001:0DB8:c0ab:ac12::/64 2001:0DB8:c0ab:ac13::/64 Figure 11-68 CLI: Configuring an IPv6 ACL Create the Access Control List with the name ipv6-acl. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 217
Direction Interface(s) VLAN(s) ipv6-acl 3 inbound 1/0/1 (Netgear Switch) #show ipv6 access-lists ipv6-acl ACL Name: ipv6-acl Inbound Interface(s): 1/0/1 Rule Number: 1 Action permit Protocol 255(ipv6) Source IP Address 2001:DB8:C0AB:AC11::/64 Destination IP Address 2001:DB8:C0AB - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 218
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Web Interface: Configuring an IPv6 ACL 1. Create the Access Control List with the name ipv6-acl a. From the main menu, select Security > ACL > Advanced > - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 219
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > ACL > Advanced > IPv6 Rules. A screen similar to the following displays. Figure 11-71 b. Select the ACL Name as - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 220
NETGEAR Managed Switches Software Administration Manual, Release 8.0 j. Click Apply. 3. Add Rule 2. a. Enter Rule ID as 2. b. Select Action as Permit. c. Select Protocol Type as TCP. d. Enter Source Prefix as 2001:DB8:C0AB: - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 221
NETGEAR Managed Switches Software Administration Manual, Release 8.0 f. Select Source L4 Port as http. A screen similar to the following displays. Figure 11-74 g. Click Apply. 5. Apply the rules to inbound traffic on - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 222
NETGEAR Managed Switches Software Administration Manual, Release 8.0 f. Click Apply. At the end of this configuration a screen similar to the following displays. Figure 11-76 6. View the binding table. From the main - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 223
This section describes the Class of Service (CoS) Queue Mapping and Traffic Shaping features. In this chapter, the following examples are provided: • "Show classofservice Trust" on page 12-3 • "Set classofservice trust Mode" on page 12-3 • "Show classofservice ip-precedence Mapping" on page 12 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 224
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • Can only have one trust field at a time - per port. - 802.1p User Priority (default trust mode - Managed through Switching configuration) - IP Precedence - IP DiffServ Code Point (DSCP) The system can assign service level based - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 225
: Showing classofservice trust To use the CLI to show CoS trust mode, use these commands. (Netgear Switch) #show classofservice trust? Press Enter to execute the command. (Netgear Switch) #show classofservice trust Class of Service Trust Mode: Dot1P Web Interface: Showing classofservice - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 226
Manual, Release 8.0 CLI: Setting classofservice Trust Mode (Netgear Switch) (Config)#classofservice? dot1p-mapping ip-dscp-mapping trust Configure dot1p priority mapping. Maps an IP DSCP value to an internal traffic class. Sets the Class of Service Trust Mode of an Interface. (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 227
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Show classofservice ip-precedence Mapping The example is shown as CLI commands and as a Web interface procedure. CLI: Showing classofservice ip-precedence Mapping (Netgear Switch) #show classofservice ip-precedence-mapping IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 228
NETGEAR Managed Switches Software Administration Manual, Release 8.0 5. The IP precedence to queue mapping of the interface is displayed. Configure Cos-queue Min-bandwidth and Strict Priority Scheduler Mode The example is shown as CLI commands and as a Web interface procedure. CLI: Configuring Cos- - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 229
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > Advanced >Interface Queue Configuration. A screen similar to the the queue 1 of the interface 1/0/2 and set the scheduler type to strict. Class of Service (CoS) Queuing v1.0, October 2009 12-7 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 230
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > Mode of an Interface CLI: Setting CoS Trust Mode of an Interface (Netgear Switch) (Interface 1/0/3)#classofservice trust? dot1p ip-dscp Sets the Class of Service Trust Mode of an Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 231
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Note: The Traffic Class value range is instead of because queue 7 is reserved in a stacking build for stack control, and is therefore not configurable by the user Class of Service (CoS) Queuing v1.0, October 2009 12-9 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 232
NETGEAR Managed Switches Software Administration Manual, Release 8.0 The value is a percentage that ranges from 0 to 100 in increments of 5. The default originate the outbound traffic. CLI: Configuring traffic-shape (Netgear Switch) (Config)#traffic-shape? Class of Service (CoS) Queuing - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 233
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Under CoS Interface Configuration, scroll down to interface 1/0/3 and select the 1/0/3 checkbox. Now 1/0/3 appears in the Interface field at the top. c. In the Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 234
and is recorded in the Differentiated Services Code Point (DSCP) added to a packet's IP header. • Interior node. A switch in the core of the interface. The switch software does not support DiffServ in the outbound direction. Rules are defined in terms of classes, policies and services: • Class. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 235
1/0/5 Outbound Layer 3 Switch Port 1/0/1 Port 1/0/2 Port 1/0/4 Port 1/0/3 VLAN 10: Finance VLAN 20: Marketing VLAN 30: Test VLAN 40: Development Figure 13-1 CLI: DiffServ The following example configures DiffServ on a 7000 Series Managed Switch: Differentiated Services v1.0, October 2009 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 236
Manual, Release 8.0 Ensure DiffServ operation is enabled for the switch. (Netgear Switch) #config (Netgear Switch) (Config)#diffserv Create a DiffServ class of type "all" for each of the departments, and name them. Define the match criteria - Source IP address -- for the new classes. (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 237
Administration Manual, Release 8.0 Attach the defined policy to interfaces 1/0/1 through 1/0/4 in the inbound direction. (Netgear Switch) (Config)#interface 1/0/1 (Netgear Switch) (Interface 1/0/1)#service-policy in internet_access (Netgear Switch) (Interface 1/0/1)#exit (Netgear Switch) (Config - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 238
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > DiffServ >Basic >DiffServ Configuration. A screen similar to the following Class Type field. c. Click Add to create a new class finance_dept. 13-5 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 239
NETGEAR Managed Switches Software Administration Manual, Release 8.0 d. Click the finance_dept to configure this class. Figure 13-4 e. Under the Diffserv Class Configuration page, enter the following information: • In the Source IP Address field, enter 172.16.10.0. • In the Source Mask field, enter - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 240
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Enter the following information in the Class -6 e. On the Diffserv Class Configuration page, enter the following information: • In the Source IP Address field, enter 172.16.20.0. • In the Source Mask field, enter 255.255.255.0. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 241
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > DiffServ > Advanced >Class Configuration. A screen similar a new class test_dept. d. Click the test_dept to configure this class. Figure 13-8 Differentiated Services v1.0, October 2009 13-8 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 242
NETGEAR Managed Switches Software Administration Manual, Release 8.0 e. Under the Diffserv Class Configuration page, enter the following information: • In the Source IP Address field, enter 172.16.30.0. the development_dept to configure this class. 13-9 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 243
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 13-10 e. Under the Diffserv Class Configuration page, enter the following information: • In the Source IP Address field, enter to the following displays. Figure 13-11 Differentiated Services v1.0, October 2009 13-10 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 244
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Enter the following information in the Class Configuration • In the Policy Selector field, enter >Advanced >Policy Configuration. A screen similar to the following displays. 13-11 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 245
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 13-13 b. Under Policy Configuration, scroll down to internet_access and class development_dept to the policy internet_access. 10. Assign queue 1 to the finance_dept. Differentiated Services v1.0, October 2009 13-12 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 246
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > DiffServ > Advanced >Policy Configuration. A screen similar to the Queue field. d. Click Apply. 11. Assign queue 2 to the marketing_dept. 13-13 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 247
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > DiffServ >Advanced >Policy Configuration. A screen similar to 2 in the Assign Queue field. d. Click Apply. 12. Assign queue 3 to the test_dept. Differentiated Services v1.0, October 2009 13-14 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 248
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > DiffServ > Advanced >Policy Configuration. A screen similar to the Queue field. d. Click Apply. 13. Assign queue 4 to the development_dept. 13-15 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 249
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > DiffServ >Advanced >Policy Configuration. A screen 14. Attach the defined policy to the interface 1/0/1 through 1/0/4 in the inbound direction Differentiated Services v1.0, October 2009 13-16 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 250
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > Advanced >Service Configuration. A screen similar to the following displays. Figure 13-23 b. Scroll down to interface 1/0/1 and select the checkbox for 1/0/1. c. Scroll down to interface 1/0/2 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 251
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 13-24 b. Under Interface Queue Configuration, scroll down to interface 1/0/5 and select the checkbox for for 1/ 0/5. Now 1/0/5 appears in the Interface field at the top. Differentiated Services v1.0, October 2009 13-18 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 252
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Select the 2 in the Queue ID field d. In the Minimum Bandwidth field, enter 25. e. CoS >Advanced >Interface Queue Configuration. A screen similar to the following displays. 13-19 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 253
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 13-27 b. Under Interface Queue Configuration uses of DiffServ is to support Voice over IP (VoIP). VoIP traffic is inherently timesensitive: for a network to provide acceptable service, a guaranteed transmission rate is - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 254
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Port 1/0/2 Port 1/0/3 Layer 3 Switch operating as Router 1 Internet Layer 3 Switch operating as Router 2 Figure 13-28 CLI: DiffServ for VoIP The following example configures DiffServ VoIP support: Enter Global Config mode. Set - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 255
-map)#mark ip-dscp ef (Netgear Switch) (Config policy-class-map)#assign-queue 5 (Netgear Switch) (Config policy-class-map)#exit (Netgear Switch) (Config policy-map)#exit Attach the defined policy to an inbound service interface. (Netgear Switch) (Config)#interface 1/0/2 (Netgear Switch) (Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 256
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 13-29 b. Under Interface Queue Configuration, select all the interfaces. c. Select 5 in > Advanced >DiffServ Configuration. A screen similar to the following displays. 13-23 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 257
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 13-31 b. In the Class Name, enter class_voip. c. Select All in the Class Type Protocol Type field. g. Click the Apply to create a new class. 4. Create a class class_ef: Differentiated Services v1.0, October 2009 13-24 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 258
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > DiffServ > Advanced >DiffServ Configuration. A screen similar to the following displays: Figure 13-34 f. Select ef in the IP DSCP field. 13-25 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 259
NETGEAR Managed Switches Software Administration Manual, Release 8.0 g. Click Apply to create a new class. 5. Create a policy pol_voip and add class_voip into this policy the following displays. Figure 13-36 f. Select 5 in the Assign Queue field. Differentiated Services v1.0, October 2009 13-26 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 260
NETGEAR Managed Switches Software Administration Manual, Release 8.0 g. For the Policy Attribute, click the Mark IP DSCP radio button and select ef in the Mark IP DSCP field. h. Click Apply to create a new policy. similar to the following displays. 13-27 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 261
Managed Switches Software Administration Manual, Release 8.0 Figure 13-38 f. Select the 5 in the Assign Queue field. g. Click Apply to create a new policy. 7. Attach the defined policy to the interface 1/0/2 in the inbound direction a. From the main menu, select QoS > DiffServ > Advanced > Service - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 262
Figure 13-40 PC Data server PC This script in this section shows how to setup Auto VoIP system wide. CLI: Configuring Auto VoIP Enable Auto VoIP to all the interfaces in the device. (Netgear Switch) (Config)# auto-voip all 13-29 v1.0, October 2009 Voice traffic Data traffic Differentiated - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 263
NETGEAR Managed Switches Software Administration Manual, Release 8.0 View the Auto VoIP information: (Netgear Switch (q)uit Interface --------1/0/21 1/0/22 1/0/23 1/0/24 1/0/25 1/0/26 1/0/27 1/0/28 Auto above example, it is placed in Queue 6. Users can override the egress queue setting using the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 264
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > DiffServ > Auto VoIP. A screen similar to the following displays. Figure as Enabled. A screen similar to the following displays. Figure 13-42 13-31 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 265
NETGEAR Managed Switches Software Administration Manual, Release 8.0 d. Click Apply. At the end of this configuration a screen similar to the following displays. Figure 13-43 Differentiated Services v1.0, October 2009 13-32 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 266
NETGEAR Managed Switches Software Administration Manual, Release 8.0 DiffServ for IPv6 Configuration Example This feature extends the existing QoS ACL and DiffServ functionality by providing support traffic. CLI: Configuring DiffServ for IPv6 Create the IPv6 Class classicmpv6. (Netgear Switch) ( - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 267
and 1/0/3: (Netgear Switch) (Config)# interface 1/0/1 (Netgear Switch) (Interface 1/0/1)# service-policy in policyicmpv6 (Netgear Switch) (Interface 1/0/1)# exit (Netgear Switch) (Config)# interface 1/0/2 (Netgear Switch) (Interface 1/0/2)# service-policy in policyicmpv6 (Netgear Switch) (Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 268
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > DiffServ > Advanced > IPv6 Class Configuration. A screen similar to the displays. Figure 13-47 2. Define matching criteria as protocol ICMPv6. 13-35 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 269
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > DiffServ > Advanced > IPv6 Class Configuration. A screen similar to the following displays. Figure 13-48 b. Click the class classicmpv6. A - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 270
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. For the Protocol Type, select Other and enter 58. A screen similar to the following displays. the policy policyicmpv6 and associate the previously created class classicmpv6. 13-37 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 271
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > DiffServ > Advanced > Policy Configuration. A screen similar to to the one in Figure 13-54 displays. 4. Set the attribute as assign queue 6. Differentiated Services v1.0, October 2009 13-38 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 272
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select QoS > DiffServ > Advanced > Policy Configuration. A screen similar to the following displays. Figure 13-54 b. Click the Policy policyicmpv6 A screen - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 273
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Select Assign Queue as 6.. Figure 13-56 d. Click Apply. 5. Attach the policy policyicmpv6 in the interface 1/0/1,1/0/2 and 1/0/3. a. From the main menu, select QoS > DiffServ > Advanced > Service Interface Configuration. A - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 274
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Select Policy Name as policyicmpv6. c. Click the check box for the interfaces 1/0/1, 1/0/2 and 1/0/3. A screen similar a screen similar to the following displays. Figure 13-59 13-41 v1.0, October 2009 Differentiated Services - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 275
VLAN Enable IGMP Snooping The following are examples of the commands used in the IGMP Snooping feature. CLI: Enabling IGMP Snooping The following example shows how to enable IGMP snooping. (Netgear Switch) #config (Netgear Switch) (Config)#ip igmpsnooping (Netgear Switch) (Config)#ip igmpsnooping - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 276
interface procedure. CLI: Showing igmpsnooping (Netgear Switch) #show igmpsnooping? mrouter Press Enter to execute the command. Enter interface in slot/port format. Display IGMP Snooping Multicast Router information. Display IGMP Snooping valid VLAN ID information. 14 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 277
NETGEAR Managed Switches Software Administration Manual, Release 8.0 (Netgear Switch) #show igmpsnooping Admin Mode Multicast Control Frame Count Interfaces Enabled for IGMP Snooping..... Vlans enabled for IGMP snooping.......... Enable 0 1/0/10 20 Web Interface: Showing igmpsnooping To use - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 278
NETGEAR Managed Switches Software Administration Manual, Release 8.0 CLI: Showing mac-address-table igmpsnooping (Netgear Switch) #show mac-address-table igmpsnooping ? Press Enter to execute the command. (Netgear Switch) #show mac-address-table igmpsnooping 00:01:01:00:5E:00:01:16 00: - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 279
NETGEAR Managed Switches Software Administration Manual, Release 8.0 CLI: Configuring the Switch with an External Multicast Router This example configures the interface as the one the multicast router is attached to. All IGMP packets snooped by the switch will be forwarded to the multicast router - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 280
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Configure the Switch with a Multicast Router Using VLAN The example is shown as CLI commands and as a Web interface procedure. CLI: Configure the Switch with a Multicast Router Using VLAN This example configures the interface to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 281
NETGEAR Managed Switches Software Administration Manual, Release 8.0 2. Under Multicast Router VLAN Configuration, scroll down to interface 1/0/3 and select the checkbox for that interface. Now 1/0/3 appears in the Interface field at the top. 3. Enter the following information - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 282
CLI Manual for more details about other IGMP querier command options. (Netgear switch) #vlan database (Netgear switch) (vlan)#ip igmp 1 (Netgear switch) (vlan)#ip igmpsnooping querier 1 (Netgear switch) (vlan)#exit (Netgear switch) #config (Netgear switch) (config)#ip igmpsnooping (Netgear switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 283
Status The example is shown as CLI commands and as a Web interface procedure. CLI: Showing IGMP Querier Status To see the IGMP querier status, use the following command. (Netgear switch) #show ip igmpsnooping querier 1 Vlan ID 1 Admin Mode Active Query IP Address 10.10.10.1 Querier Interval 60 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 284
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 14-8 2. Click Refresh. 14-10 v1.0, October 2009 IGMP Snooping and Querier - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 285
Notes. After the limit is reached, additional MAC addresses are not learned. Only frames with an allowable source MAC address are forwarded. - Static Locking - User manually specifies a list of static MAC addresses for a port. Dynamically locked addresses can be converted to statically locked - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 286
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • When link goes down, all dynamically locked addresses are 'freed' • If a specific MAC address is to be set for a port, set the dynamic entries to 0, then only allow packets with a MAC address matching the MAC address in the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 287
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 15-1 b. Under Port Security Configuration, next to the Port Security Mode, select Enable radio button. c. Click Apply to save the settings. 2. Set dynamic - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 288
Manual, Release 8.0 Convert the Dynamic Address Learned from 1/0/1 to the Static Address The example is shown as CLI commands and as a Web interface procedure. CLI: Converting the Dynamic Address Learned from 1/0/1 to the Static Address (Netgear Switch)(Interface 1/0/1)#port-security mac-address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 289
NETGEAR Managed Switches Software Administration Manual, Release 8.0 4. Click Apply to save the settings. Create a Static Address The example is shown as CLI commands and as a Web interface procedure. CLI: Creating a Static Address (Netgear Switch) (Interface 1/0/1)#port-security mac-address 00:13: - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 290
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Protected Ports This section describes how to set up protected ports on the switch. Some situations might require that traffic is prevented from being forwarded between any ports at Layer 2 so that one user cannot see the traffic - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 291
(Netgear Switch) (Interface-vlan 202)#exit Step 3: Create a DHCP pool to allocated IP addresses to PCs. (Netgear Switch) (config)#service dhcp (Netgear Switch) (config)#ip dhcp pool pool-a (Netgear Switch) (Config-dhcp-pool)#dns-server 12.7.210.170 (Netgear Switch) (Config-dhcp-pool)#default-router - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 292
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Step 4: Enable IProuting and configure a default route. (Netgear Switch)(config)#ip routing (Netgear Switch)(config)#ip route 0.0.0.0 0.0.0.0 10.100.5.252 Step 5: Enable a protected port on 1/0/23 and 1/0/24. (Netgear Switch) ( - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 293
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 15 Default Router Addresses. The DNS server address fields display. In the first router address field, enter 192.168.1.254. • Click on DNS Server Addresses. The router address fields display. In the first DNS server address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 294
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Click Add. 2. Configure a VLAN and include ports 1/0/23 and 1/0/24 in the VLAN: a. From the main menu, select Routing > VLAN > VLAN Routing Wizard. A screen similar to the following displays. Figure 15-7 b. Enter the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 295
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 15-8 b. Enter the following information in the VLAN Routing Wizard: • In the Vlan ID field, enter 202. • In the IP Address field, enter 10.100.5.34. • In the Network Mask field, enter 255.255.255.0. c. Click Unit 1. The - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 296
default route for VLAN 202: a. From the main menu, select Routing > Routing Table > Basic > Route Configuration. A screen similar to the following displays. Figure 15-10 b. Under Configure Routes, select DefaultRoute in the Route Type field. c. Under Configure Routes, in the Next Hop IP Address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 297
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 15-11 b. Under Protected Ports Configuration, Click Unit 1. The ports display. • Click the gray box under ports 23. A flag appears in the box. • Click the gray box under ports 24. A flag appears in the box. c. Click Apply to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 298
IP address is 10.100.5.33/24. The example is shown as CLI commands and as a Web interface procedure. CLI: Authenticating dot1x Users by a RADIUS Server (Netgear Switch) #config (Netgear Switch) (Config)#ip routing (Netgear Switch) (Config)#interface 1/0/1 (Netgear Switch) (Interface 1/0/1)#routing - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 299
1. Enable routing for the switch. a. From the main menu, select Routing > Basic >IP Configuration. A screen similar to the following displays. Figure 15-13 b. Next to the Routing Mode, select the Enable radio button. c. Click Apply to save the settings. 2. Assign IP address 192.168.1.1/24 to the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 300
.255.255.0 in the Subnet Mask. • Select Enable in the Routing Mode field. d. Click Apply to save the settings. 3. Assign IP address 10.100.5.33/24 to the interface 1/0/19 a. From the main menu, select Routing > Advanced >IP Interface Configuration. A screen similar to the following displays. Figure - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 301
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • Select Enable in the Routing Mode field. d. Click Apply to save the settings. 4. Create an authentication name list. a. From the main menu, select Security > Management Security > Login> Authentication List. A screen similar to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 302
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Select Force Authorized in the Control Mode field. d. Click Apply to save settings. 6. Enable dot1x on the switch. a. From the main menu, select Security > Port Authentication > Server Configuration. A screen similar to the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 303
NETGEAR Managed Switches Software Administration Manual, Release 8.0 e. Select Yes in the Primary Server field. f. Select Configuration. A screen similar to the following displays. Figure 15-20 b. In the Server Address, enter 10.100.5.17. c. Select Enable in the Accounting Mode field. d. Click - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 304
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Select Enable in the Accounting Mode field. d. Click Apply. Create a Guest VLAN The Guest VLAN feature allows a switch to provide a distinguished service to dot1x unaware clients (not rogue users who fail authentication). This - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 305
Switch) (Config)#interface 1/0/24 (Netgear Switch) (Interface 1/0/24)#vlan participation include 2000 (Netgear Switch) (Interface 1/0/24)#exit Create a VLAN 2000 and have 1/0/1 and 1/0/24 being the member of VLAN 2000. (Netgear Switch) (Config)#aaa authentication dot1x default radius (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 306
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Enable guest vlan on port 1/0/1 and 1/0/24. (Netgear Switch) #show dot1x detail 1/0/1 Protocol Version 1 PAE Capabilities Authenticator Control Mode auto Authenticator PAE State Authenticated Backend Authentication State Idle - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 307
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 15-23 b. In the VLAN ID field, enter 2000. c. Select Static in the VLAN Type field. d. Click Add. 2. Add ports to the VLAN 2000. a. From the main menu, select Switching > VLAN >Advanced > VLAN Membership. A screen similar - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 308
NETGEAR Managed Switches Software Administration Manual, Release 8.0 3. Setting force authorized mode on the port 1/0/6 and switch through GUI. a. From the main menu, select Security > Port Authentication > Basic>802.1x Configuration. A screen similar to the following displays. Figure 15-26 15-24 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 309
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Next to the Administrative Mode, select the Enable radio button. c. Click Apply to save settings. 5. Configure dot1x authentication list. a. From the main menu, select - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 310
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. In the Radius Server IP Address field, enter 192.168.0.1. c. Select Yes in the Secret Configured field. d. In the Secret field, enter 12345. e. Click Add. 7. Configure the Guest VLAN. a. From the main menu, select Security > - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 311
CLI: Configuration on the Switch (Netgear Switch) #network protocol none Changing protocol mode will reset ip configuration. Are you sure you want to continue? (y/n)y (Netgear Switch) #network parms 192.168.0.5 255.255.255.0 (Netgear Switch) #vlan database (Netgear Switch) (Vlan)#vlan 2000 (Netgear - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 312
dot1x default radius Use the radius as the authenticator. (Netgear Switch) (Config)#authorization network radius Enable the switch to accept VLAN assignment by the radius server. (Netgear Switch) (Config)#radius server host auth 192.168.0.1 Set the Radius server IP address. (Netgear Switch) (Config - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 313
Control Direction both Maximum Users 16 Unauthenticated VLAN ID 0 Session Timeout 0 Session Termination Action Default 8FC*OUFSGBDF7-"/"TTJHONFOUWJB3"%*64 To use the Web interface to do VLAN assignment via RADIUS, proceed as follows: 1. Assign IP address for management interface. a. From - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 314
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 15-31 b. Next to the Current Network Configuration Protocol, select the None Radio button. c. In the IP Address, enter 192.168.0.5. d. In the Subnet Mask, enter 255.255.255.0. e. Click Apply. 2. Create VLAN 2000. a. From - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 315
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Select Static in the VLAN Type field. d. Click Add. 3. Setting force authorized mode field. d. Click Apply to save settings. 4. Enable dot1x on the switch. Make sure 1/0/12 and 1/0/6 is configured as force authorized before you - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 316
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 15-34 b. Next to the Administrative Mode, select the Enable radio button. c. Next to the VLAN Assignment Mode, select the Enable radio button. d. Click Apply to save settings. 5. Configure dot1x authentication list. a. From - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 317
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > Management Security > Radius>Server Configuration. A screen similar to the following displays. Figure 15-36 b. In the Radius Server IP Address 's IP address to its own MAC address. Dynamic - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 318
Server IP address: 192.168.10.1 DHCP Client IP address: 192.168.10.86 (obtained) HW address: 00:16:76:A7:88:CC Figure 15-37 This script in this section shows how to configure Dynamic ARP Inspection. CLI: Dynamic ARP Inspection Enable DHCP snooping globally. (Netgear Switch) (Config)# ip dhcp - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 319
dhcp snooping binding Total number of bindings: 1 MAC Address IP Address VLAN Interface Type Lease (Secs) 00:16:76:A7:88:CC 192.168.10.86 1 1/0/2 DYNAMIC 86400 Enable ARP Inspection in the VLAN 1. (Netgear Switch) (Config)# ip arp inspection vlan 1 Now all the ARP packets received on the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 320
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > of this configuration a screen similar toFigure 15-38 displays. 2. Enable DHCP snooping in a VLAN. a. From the main menu, select Security > Control > DHCP Snooping Global Configuration. A - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 321
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. In the VLAN Configuration table, set DHCP Snooping Mode as Enable. A screen similar to the following displays. Figure 15-40 3. Configure the port through which DHCP server is - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 322
NETGEAR Managed Switches Software Administration Manual, Release 8.0 d. Click Apply. At the end of this configuration a screen similar to the following . A screen similar to the following displays. Figure 15-43 5. Enable ARP Inspection in the VLAN 1. 15-38 v1.0, October 2009 Security Management - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 323
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > Control > Dynamic ARP Inspection > DAI VLAN Configuration. A screen similar to the following displays. Figure 15-44 b. Set the VLAN ID as 1. c. Set the Dynamic ARP Inspection field as Enable - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 324
NETGEAR Managed Switches Software Administration Manual, Release 8.0 d. Click Apply. At the end of this configuration a screen similar to the following displays. Figure 15-46 Now all the ARP packets received on the ports that are member of VLAN are copied to CPU for ARP inspection. If there are - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 325
CLI: Configuring Static Mapping Create an ARP ACL. (Netgear Switch) (Config)# arp access-list ArpFilter Configure rule to allow the Static Client. (Netgear Switch) (Config-arp-access-list)# permit ip host 192.168.10.2 mac host 00:11:85:ee:54:e9 Configure ARP ACL used for the VLAN 1. (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 326
NETGEAR Managed Switches Software Administration Manual, Select ACL Name as ArpFilter. c. Enter Source IP Address as 192.168.10.2. d. Enter the Source MAC Address as 00:11:85:EE:54:E9. the VLAN 1. a. From the main menu, select Security > Control > Dynamic ARP Inspection > DAI VLAN Configuration. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 327
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Click Apply. At the end of this configuration a to filter harmful DHCP message and to build a bindings database of (MAC address, IP address, VLAN ID, port) tuples that are considered authorized. The network administrator enables - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 328
NETGEAR Managed Switches Software Administration Manual, Release 8.0 CLI: Configuring DHCP Snooping Enable DHCP snooping globally. (Netgear Switch) (Config)# ip dhcp snooping Enable DHCP snooping in a VLAN. (Netgear Switch) (Config)# ip dhcp snooping vlan 1 Configure the port through which DHCP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 329
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Click Apply. A screen similar to the one in Figure 15-53 displays. 2. Enable DHCP snooping in a VLAN. a. From the main menu, select Security > Control > DHCP Snooping Global Configuration. A screen similar to the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 330
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > Control > DHCP Snooping Interface Configuration. A screen similar to the following displays. Figure 15-55 b. Select the checkbox for - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 331
Static Entry. (Netgear Switch) (Config)# ip dhcp snooping binding 00:11:11:11:11:11 vlan 1 192.168.10 .1 interface 1/0/2 View the binding database has the static entry. (GSM7328S) #show ip dhcp snooping binding Total number of bindings: 2 MAC Address IP Address VLAN Interface Type Lease - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 332
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Web Interface: user must do "no shutdown" on this interface to further work with that port. CLI: Configuring the Maximum Rate of DHCP Messages Control the maximum rate of DHCP messages. (Netgear Switch) (Interface 1/0/2)# ip - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 333
NETGEAR Managed Switches Software Administration Manual, Release 8.0 View the rate configured. (GSM7328S) #show ip dhcp snooping interfaces 1/0/2 Interface ---------- Trust State Rate Limit (pps) Burst Interval (seconds) 1/0/2 No 5 1 Web Interface: Configuring the Maxiumum Rate of - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 334
NETGEAR Managed Switches Software Administration Manual, Release 8.0 IP Source Guard IP Source Guard uses the DHCP snooping bindings database. When IP Source Guard is enabled, the switch drops incoming packets that do not match a binding in the bindings database. IP Source Guard can be configured to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 335
NETGEAR Managed Switches Software Administration Manual, Release 8.0 CLI: Configuring Dynamic ARP Inspection Enable DHCP snooping globally. (Netgear Switch) (Config)# ip dhcp snooping Enable DHCP snooping in a VLAN. (Netgear Switch) (Config)# ip dhcp snooping vlan 1 Configure the port through - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 336
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > configuration a screen similar to Figure 15-64 is displayed. 2. Enable DHCP snooping in a VLAN. a. From the main menu, select Security > Control > DHCP Snooping Global Configuration. A - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 337
NETGEAR Managed Switches Software Administration Manual, Release 8.0 d. Click Apply. At the end of this configuration a screen similar to the following displays. Figure 15-65 3. Configure the port through which DHCP server - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 338
NETGEAR Managed Switches Software Administration Manual, Release 8.0 4. View the DHCP Snooping Binding table. From the main menu, select Security > Control > DHCP Snooping Binding Configuration. A screen similar to the following displays. Figure 15-68 5. Enable IP Source Guard in the interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 339
NETGEAR Managed Switches Software Administration Manual, Release 8.0 f. Click Add. At the end of this configuration a screen similar to the following displays. Figure 15-70 Security Management v1.0, October 2009 15-55 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 340
• Adaptation of NTP • Provides synchronized network timestamp • Can be used in broadcast or unicast mode • SNTP client implemented over UDP which listens on port 123 Show SNTP (CLI Only) The following are examples of the commands used in the SNTP feature. show sntp (Netgear Switch Routing) #show - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 341
sntp client (Netgear Switch Routing) #show sntp client Client Supported Modes: SNTP Version: Port: Client Mode: Unicast Poll Interval: Poll Timeout (seconds): Poll Retry: unicast broadcast 4 123 unicast 6 5 1 show sntp server (Netgear Switch Routing) #show sntp server Server IP Address: Server - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 342
to send the query to the server. The default value is approximately one minute. After this period, issue the show command to confirm the time has been received. The time will be used in all logging messages. (Netgear Switch) #show sntp server Server IP Address: 208.14.208.19 Server Type: ipv4 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 343
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Web Interface: Configuring SNTP To use following information in the SNTP Server Configuration. • Select IPV4 in the Server Type field. • In the Address field, enter 208.14.208.19 • In the Port field, enter 123 • In the Priority - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 344
c. Click Apply. Set the Time Zone (CLI Only) The SNTP/NTP server is set to Coordinated Universal Time (UTC) by default. The following example shows how to set the time zone to Pacific Standard Time (PST) which is 8 hours behind GMT/UTC. (Netgear switch)(config)#clock timezone PST -8 Set Named SNTP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 345
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Because Netgear may change IP addresses assigned to its time servers, it is best to access a SNTP server by DNS name instead of using a hard-coded IP address. The public time servers available are time-a, time-b, and time-c. To use - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 346
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • In the Version field, enter 4 c. Click Add. 2. Configure the DNS server. a. From the main menu, select System > Management>DNS>DNS Configuration. A screen similar to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 347
Configuration Scripting" on page 17-3 • "Pre-Login Banner" on page 17-5 • "Port to discover the routes that packets take when traveling on a Tracks up to 20 hops • Default UPD port used 33343 unless modified . CLI:Traceroute (Netgear Switch) #traceroute? Enter IP address. (Netgear Switch) - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 348
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Tracing route over a maximum of 20 hops 1 10.254.24.1 2 10.254.253.1 3 63.237.23.33 Troubleshooting > Traceroute. A screen similar to the following displays. Figure 17-1 Use this screen to tell the switch to discover the routes - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 349
NETGEAR Managed Switches Software Administration Manual, Release 8.0 APPLY button, the switch will send three traceroute packets each hop, and the results will be displayed in the result table. b. Enter the following information in the Traceroute. In the IP Address field, enter 216.109.118.74. c. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 350
NETGEAR Managed Switches Software Administration Manual, Release 8.0 script (Netgear Switch) #script ? apply delete list show validate Applies configuration script to the switch. Deletes a configuration script file from the switch. Lists all configuration script files present on the switch. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 351
to create message screens when logging into the CLI Interface • By default, no Banner file exists • Can be uploaded or downloaded • File size cannot be larger than 2K The Pre-Login Banner feature is only for the CLI interface. Creating a Pre-Login Banner (CLI Only) Tools v1.0, October 2009 17-5 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 352
TFTP Set TFTP Server IP 192.168.77.52 TFTP Path TFTP Filename banner.txt Data Type Cli Banner Are you sure you want to start? (y/n) y CLI Banner file transfer operation completed successfully! (Netgear Switch Routing)#exit (Netgear Switch Routing) >logout Login Banner - Unauthorized access is - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 353
Switches Software Administration Manual, Release 8.0 The example is shown as CLI commands and as a Web interface procedure. CLI: Specifying the Source (Mirrored) Ports and Destination (Probe) (Netgear Switch)#config (Netgear Switch)(Config)#monitor session 1 mode Enable mirror (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 354
for reduced down-time for the switches, when the firmware is being upgraded or downgraded. The images are problem, by using appropriate stacking commands. CLI: Downloading a Backup Image and Having It Active (Netgear Switch) #copy tftp://192.168.0.1/gsm73xxseps.stk image2 Mode TFTP Set Server IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 355
in Flash File System Distributing the code to the members of the stack! File transfer operation completed successfully. (Netgear Switch) # (Netgear Switch) #show bootvar Image Descriptions image1 : default image image2 : Images currently available on Flash unit image1 image2 current - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 356
NETGEAR Managed Switches Software Administration Manual, Release 8.0 1. Download a backup image via tftp. a. From the main menu, select Maintenance > Download >File Download IPv4 in the Server Address Type field. f. In the Server Address field, enter 10.100.5.17(tftp server IP address). g. In the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 357
IP address CLI: show network (Netgear Switch Routing) >telnet 192.168.77.151 Trying 192.168.77.151... (Netgear Switch Routing) User:admin Password: (Netgear Switch Routing) >en Password: (Netgear Switch Routing) #show network IP Address 192.168.77.151 Subnet Mask 255.255.255.0 Default Gateway - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 358
Administration Manual, Release 8.0 CLI: show telnet (Netgear Switch Routing)#show telnet Outbound Telnet Login Timeout (minutes)........ 5 Maximum Number of Outbound Telnet Sessions..... 5 Allow New Outbound Telnet Sessions Yes CLI: transport output telnet (Netgear Switch Routing) (Config - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 359
radio button. 4. Click Apply CLI: session-limit and session-timeout (Netgear Switch Routing) (Line)#session-limit ? Configure the maximum number of outbound telnet sessions allowed. (Netgear Switch Routing) (Line)#session-limit 5 (Netgear Switch Routing) (Line)#session-timeout ? - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 360
NETGEAR Managed Switches Software Administration Manual, Release 8.0 1. From the main menu, select Security > Access > Telnet. A screen similar to the following displays. Figure 17-6 2. Enter the following information in the Outbound Telnet. • - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 361
store system messages and/or errors • Can store to local files on the switch or a remote server running a syslog daemon • Method of collecting message logs 0x800023]: bootos.c(386) 4 %% Event (0xaaaaaaaa) Priority Timestamp Stack Component Thread ID name ID Figure 18-1 File Line Message - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 362
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Show Logging The example is shown as CLI commands and as a Web interface procedure. CLI: Show Logging (Netgear Switch Routing) #show logging Logging Client Local Port : CLI Command Logging : Console Logging : Console - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 363
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Enter the following information in the Syslog Configuration. Next to the Admin Status, select the Enable radio button. c. Click Apply. 2. Configure the Command Log a. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 364
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 18-4 b. Enter the following information in the Console Log Configuration. Next to the Admin Status, click the Disable radio button. c. Click Apply. 4. Configure - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 365
Manual, Release 8.0 b. Enter the following information in the Buffer Logs. Next to the Admin Status, click the Enable radio button. c. Click Apply. Show Logging Buffered The example is shown as CLI commands and as a Web interface procedure. CLI: Showing Logging Buffered (Netgear Switch Routing - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 366
Administration Manual, Release 8.0 Figure 18-6 Show Logging Traplogs The example is shown as CLI commands and as a Web interface procedure. CLI: Showing Logging Traplogs (Netgear Switch Routing) #show logging traplogs ? Press Enter to execute the command. (Netgear Switch Routing) #show - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 367
Hosts The example is shown as CLI commands and as a Web interface procedure. CLI: Showing Logging Hosts (Netgear Switch Routing) #show logging hosts ? Press Enter to execute the command. (Netgear Switch Routing) #show logging hosts Index IP Address Severity Port Status 1 192.168 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 368
procedure. CLI: Logging Port Configuration (Netgear Switch Routing) #config (Netgear Switch Routing) (Config)#logging ? buffered cli-command console host syslog Buffered (In-Memory) Logging Configuration. CLI Command Logging Configuration. Console Logging Configuration. Enter IP Address for - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 369
host 192.168.21.253 4 1 ? Press Enter to execute the command. (Netgear Switch Routing) (Config)#logging host 192.168.21.253 4 1 (Netgear Switch Routing) #show logging hosts Index IP Address Severity Port Status 1 192.168.21.253 alert 4 Active Web Interface: Logging Port - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 370
" on page 19-13 • "Removing a Master Unit from an Operating Stack" on page 19-14 • "Merging Two Operational Stacks" on page 19-14 • "Preconfiguration" on page 19-14 • "Upgrading Firmware" on page 19-15 • "Migration of Configuration With a Firmware Upgrade" on page 19-15 v1.0, October 2009 19-1 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 371
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Understanding Switch Stacks A switch stack is a set of up to eight Ethernet switches connected through their stacking ports. One of the switches controls the operation of the stack and is called the stack master. The stack master - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 372
change the IP address or addresses of the newly created switch stacks. • If you did not intend to partition the switch stack: • Power off the newly created switch stacks • Reconnect them to the original switch stack through their stacking ports • Power on the switches Switch Stack Cabling (FSM73xxS - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 373
NETGEAR Managed Switches Software Administration Manual, Release 8.0 use the regular Category 5 Ethernet 8 wire cable. Figure 19-1 Interconnect ports 51 and 52 as shown port 51 port 52 Figure 19-2 Stack Master Election and Re-Election The stack master is elected or re-elected based on one of - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 374
number by using the show switch user EXEC command. A new, out-of-the-box switch (one that has not joined a switch stack or has not been manually assigned a stack member number) ships with a default stack member number of 1. When it joins a switch stack, its default stack member number changes to the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 375
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Switch Stack Offline Configuration You can use the offline configuration feature to preconfigure (supply a configuration to) a new switch before it joins the switch stack. You can configure in advance the stack member number, the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 376
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Effects of Removing a Preconfigured Switch from a Switch Stack If you remove a preconfigured switch from the switch stack, the configuration associated with the removed stack member remains in the running configuration as - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 377
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • You can connect to the stack master through the console port of the stack master only. • You can connect to the stack master by using a Telnet connection to the IP address of the stack. Switch Stack Configuration Scenarios Table - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 378
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Stacking Recommendations The purpose of this section is to collect notes on recommended procedures and expected behavior of stacked managed switches. Procedures addressed initially are listed below. • Initial installation and power - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 379
always join as a "member" (never as master; the existing master of the stack should not change). 7. If the code version of the newly added member is not the same as the existing stack, update the code as described in section "Upgrading Firmware". Managing Switch Stacks v1.0, October 2009 19-10 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 380
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Replacing a Stack Member with a New Unit There are two possible situations here. First, if you replace a stack member of a certain model number with another unit of the same model, follow the process below: • Follow the process in - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 381
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Web Interface: Renumbering Stack Members To use the Web interface to renumber the stack number, proceed as follows: 1. Renumbering the stacking member's ID from 3 to 2. a. From the main menu, select System > Management > Basic > - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 382
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Moving a Master to a Different Unit in the Stack This example is provided as CLI commands and a Web interface procedure. CLI: Moving a Master to a Different Unit in the Stack 1. Using the movemanagement command, move the master to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 383
NETGEAR Managed Switches Software Administration Manual, Release 8.0 d. Click the Apply. Note: If you move a master to a different unit, you may lose the connection to the switch because the IP address may be changed if the switch gets IP address Supported unit types are shown by the show supported - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 384
. Once code is loaded to all members of the stack, the units must be reset in order for the new code to start running. Migration of Configuration With a Firmware Upgrade In some cases, a configuration may not be carried forward in a code update. For updates where this issue is to be expected, the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 385
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • Ports on the added unit should remain in the "detached" state. • A message should appear on the CLI indicating a code mismatch with the newly added unit. • To have the newly added unit to merge normally with the stack, code - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 386
procedure. CLI: Adding a New Community (Netgear switch) #config (Netgear switch) (Config)#snmp-server community rw public@4 Web Interface: Adding a New Community To use the Web interface to add a new community, proceed as follows: 1. From the main menu, select System > SNMP>SNMP V1/V2>Community - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 387
NETGEAR Managed Switches Software Administration Manual, Release 8.0 3. In the Client Address field, enter 0.0.0.0. 4. In the Client IP Mask field, enter 100.5.17. a. From the main menu, select System > SNMP>SNMP V1/V2>Trap Configuration. A screen similar to the following displays. Figure 20-2 b. In - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 388
NETGEAR Managed Switches Software Administration Manual, Release 8.0 d. In the Address field, enter 10.100.5.17. e. Select Enable in the Status field. f. Click the Add button. 2. Set the Link Up/Down flag. a. From the main menu, select System > SNMP>SNMP V1/V2>Trap Flags. A screen similar to the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 389
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Web Interface: Configuring SNMP V3 1. Change the user password. If you set the authentication mode to md5, you must make the length of password longer than 8 characters. a. From the main menu, select Security > Management Security - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 390
and routed networks. sFlow technology is built into network equipment and gives complete visibility into network activity, enabling effective management and control of network resources. The sFlow monitoring system consists of a sFlow Agent (embedded in a switch or router or in a standalone probe - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 391
NETGEAR Managed Switches Software Administration Manual, Release 8.0 PC Interface 1/0/2 Interface 1/0/1 GSM73xxS Interface 1/0/3 Uplink interface PC 1/0/24 Sflow collector IP addres: 192.168.10.2 Figure 20-6 Switch/Router CLI: Configuring Statistical Packet-Based Sampling of Packet Flows - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 392
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Here the max datagram size is default 1400. It can be modified to a value between 200 to 9116 using the command sflow receiver 1 maxdatagram . (GSM7328S) #show sflow receivers Receiver Owner Time out Max Datagram Port IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 393
NETGEAR Managed Switches Software Administration Manual, Release 8.0 e. Enter Receiver Address as 192.168.10.2. A screen similar to the following displays. Figure 20-7 f. Click Apply. At the end of this configuration a screen similar to the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 394
NETGEAR Managed Switches Software Administration Manual, Release 8.0 e. Click Apply. At the end of this configuration a screen similar to the following displays. Figure 20-10 Configure Time-Based Sampling of Counters with sFlow CLI: Configuring Time-Based Sampling of Counters with sFlow Configure - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 395
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Enter the Poller Interval as 300. A screen similar to the following displays. Figure 20-11 d. Click Apply. SNMP v1.0, October 2009 20-10 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 396
) and to resolve an IP address using the DNS server. The example is shown as CLI commands and as a Web interface procedure. CLI: Specifying Two DNS Servers To use the CLI to specify two DNS servers, enter the following CLI commands: (Netgear Switch)#config (Netgear Switch) (Config)#ip name-server 12 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 397
and an IP Address To use the CLI to manually add a host name and an IP address, enter the following CLI commands: (Netgear Switch)#config (Netgear Switch) (Config)#ip host www.netgear.com 206.82.202.46 (Netgear Switch) (Config)#ip domain-lookup (Netgear Switch) (Config)#ping www.netgear.com Send - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 398
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Web Interface: Manually Adding a Host Name and an IP Address To use the Web interface to manually add a host name and an IP address, proceed as follows: 1. From the main menu, select System > Management > DNS > Host Configuration. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 399
a DHCP Server in Dynamic Mode To use the CLI to create a DHCP server with a dynamic pool, enter the following CLI commands: (Netgear Switch)#config (Netgear Switch) (Config)#service dhcp (Netgear Switch) (Config)#ip dhcp pool pool_dynamic (Netgear Switch) (Config)#network 192.168.100.0 255.255.255 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 400
NETGEAR Managed Switches Software Administration Manual, Release 8.0 1. From the main menu, select System > Services > DHCP Server > DHCP Server Configuration. A screen similar to the following displays. Figure 22-1 2. Next to Admin Mode, select the Enable radio button. 3. Click Apply to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 401
NETGEAR Managed Switches Software Administration Manual, Mask field, enter 255.255.255.0. As an alternate, you can enter 24 in the Network Prefix Length field. • In the Days field, enter an IP address pool that is making fixed IP to MAC address assignments. The example is shown as CLI commands and - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 402
a DHCP server with a with a manual pool, enter the following CLI commands: (Netgear Switch)#config (Netgear Switch) (Config)#service dhcp (Netgear Switch) (Config)#ip dhcp pool pool_manual (Netgear Switch) (Config)#client-name dhcpclient (Netgear Switch) (Config)#hardware-address 00:01:02:03:04:05 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 403
NETGEAR Managed Switches Software Administration Manual, Release 8.0 4. From the main menu, select System > Services > DHCP Server > DHCP Pool Configuration. A screen similar to the following displays. Figure 22-4 5. Under DHCP Pool Configuration, enter the following information: • Select Create in - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 404
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Chapter 23 Double VLANs This section describes how to configure the Double VLAN (DVLAN) feature on the switch. A DVLAN is a way to pass traffic of customers who have multiple VLANs from one customer domain to another customer - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 405
. CLI: Enabling a Double VLAN on a VLAN Create a VLAN 200. (Netgear Switch)#vlan database (Netgear Switch) (Vlan)#vlan 200 (Netgear Switch) (Vlan)#exit Add interface 1/0/24 to VLAN 200, add pvid 200 to the port. (Netgear Switch) #config (Netgear Switch) (Config)#interface 1/0/24 (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 406
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Switching > VLAN > Basic > VLAN Configuration. A screen similar to the following displays. Figure 23-2 b. Under VLAN Configuration, enter the following information and make the following selection: • - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 407
NETGEAR Managed Switches Software Administration Manual, Release 8.0 similar to the following displays. Figure 23-3 b. Under VLAN Membership, select 200 in the VLAN ID field. c. Click Unit 1. The ports display: • Click the gray box under port 24 twice until U displays. The U specifies that the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 408
NETGEAR Managed Switches Software Administration Manual, Release 8.0 3. Change the Port VLAN ID (PVID) of port 24 to 200: a. From the main menu, select Switching > VLAN > Advanced > Port PVID Configuration. A screen similar to the following displays. Figure 23-4 b. Under PVID Configuration, scroll - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 409
NETGEAR Managed Switches Software Administration Manual, Release 8.0 screen similar to the following displays. Figure 23-5 b. Under DVLAN Configuration, scroll down to top. c. Select Enable in the Admin Mode field. d. Click Apply to save the settings. Double VLANs v1.0, October 2009 23-6 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 410
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Chapter 24 Private VLAN Groups The private VLAN Group allows network administrator to create groups of users within a VLAN traffic to any other members in the same group. By default, the mode is "community" mode that each member - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 411
NETGEAR Managed Switches Software Administration Manual, Release 8.0 CLI: Creating a Private VLAN Group (Netgear Switch) # (Netgear Switch) #vlan data (Netgear Switch) (Vlan)#vlan 200 (Netgear Switch) (Vlan)#exit (Netgear Switch) #config (Netgear Switch) (Config)#interface 1/0/6 (Netgear Switch) ( - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 412
Switches Software Administration Manual, Release 8.0 Web Interface: Creating a Private VLAN Group To use the Web interface, proceed as follows: 1. Create a VLAN 200. a. From the main menu, select Switching > VLAN > Basic > VLAN configuration. A screen similar to the following displays. Figure 24 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 413
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. In the VLAN Membership, select 200 in the VLAN ID field. c. Click the Unit 1. The Ports display. d. Click the gray box under port 6 , 7, 16 and 17 until U displays. The U specifies that the egress packet - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 414
NETGEAR Managed Switches Software Administration Manual, Release 8.0 VLAN > Private Group Configuration. A screen similar to the following displays. Figure 24-5 b. In the Group Name field, enter group1. c. In the Group ID field, enter 1. d. Select community in the Group Mode field. e. Click Add. 5. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 415
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > Traffic Control >Private Group VLAN > Private Group Configuration. A screen similar to the following displays. Figure 24-7 b. In the Group Name field, enter group2. c. In the Group ID field - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 416
NETGEAR Managed Switches Software Administration Manual, Release 8.0 support a large number of VLANs. Configure Classic STP (802.1d) The example is shown as CLI commands and as a Web interface procedure. CLI: Configuring Classic STP (802.1d) (Netgear Switch) (Config)# spanning-tree (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 417
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Switching > STP > STP Configuration. A Apply. 2. Configure CST Port Configuration. a. From the main menu, select Switching > STP > CST Port Configuration. A screen similar to the following displays. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 418
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Under CST Port Configuration CLI commands and as a Web interface procedure. CLI: Configuring Rapid STP (802.1w) (Netgear switch) (Config)# spanning-tree (Netgear switch) (Config)# spanning-tree forceversion 802.1w (Netgear switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 419
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • Next to the Force Protocol Version, select the IEEE 802.1w radio button. c. Click Apply. 2. Configure CST Port Configuration. a. From the main menu, select Switching CLI commands and as a Web interface procedure. Spanning Tree - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 420
Software Administration Manual, Release 8.0 CLI: Configuring Multiple STP (802.1s) (Netgear switch) (Config)# spanning-tree (Netgear switch) (Config)# spanning-tree forceversion 802.1s (Netgear switch) (Config)# spanning-tree mst instance 1 Create a mst instance 1 (Netgear switch) (Config)# spanning - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 421
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • Next to the Spanning Tree In the MST ID field, enter 1. • In the Priority field, enter 4096. • In the VLAN Id field, enter 2. • Click Add. • In the VLAN Id field, enter 3. • Click Apply. c. Configure MST ID 2. • In the MST ID - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 422
NETGEAR Managed Switches Software Administration Manual, Release 8.0 3. Configure MST Port. a. From the main menu, select Switching > STP > MST Port Status. A screen similar to the following displays. Figure 25-7 4. Under MST Port Configuration, scroll down to interface 1/0/3 and select the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 423
relay routers. The example creates a 6in4 tunnel between GSM7328S_1 and GSM7328S_2. The tunnel carries IPv6 packets over IPv4 packets. 1/0/1 GSM7328S_1 IPv4 Network 1/0/13 GSM7328S_2 Figure 26-1 CLI: Creating a Tunnel On GSM7328S_1 (Netgear Switch) #config (Netgear Switch) (Config)#ip routing - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 424
GSM7328S_2 (Netgear Switch) #config (Netgear Switch) (Config)#ip routing (Netgear Switch) (Config)#ipv6 forwarding (Netgear Switch) (Config)#ipv6 unicast-routing (Netgear Switch) (Config)#interface 1/0/13 (Netgear Switch) (Interface 1/0/13)#routing (Netgear Switch) (Interface 1/0/13)#ip address 192 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 425
NETGEAR Managed Switches Software Administration Manual, Release 8.0 (Netgear Switch) (Config)#interface tunnel 0 (Netgear Switch) (Interface tunnel 0)#ipv6 enable (Netgear Switch) (Interface tunnel 0)#ipv6 address 2000::2/64 (Netgear Switch) (Interface tunnel 0)#tunnel mode ipv6ip (Netgear Switch) - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 426
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IPv6 >Basic>Global Configuration. A screen similar to the following displays. Figure 26-3 b. Next to the IPv6 Unicast Routing, select the Enable Radio button. c. Next to the IPv6 Forwarding, - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 427
NETGEAR Managed Switches Software Administration Manual, Release 8.0 4. Create a 6-in-4 tunnel interface. a. From the main menu, select Routing > IPv6 >Advanced>Tunnel Configuration. A screen similar to the following displays. Figure 26-5 b. Select 0 in Tunnel Id field. c. Select 6-in-4-configured - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 428
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. In the IPv6 Prefix field, enter 2000::1. d. In the Length field, enter 64. e. Select Disable in EUI64 field. f. Click Add. On GSM7328S_2 To use the Web interface to create a tunnel, proceed as follows: 1. Enable IP routing on - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 429
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IPv6 >Basic>Global Configuration. A screen similar to the following displays. Figure 26-8 b. Next to the IPv6 Unicast Routing, select the Enable Radio button. c. Next to the IPv6 Forwarding, - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 430
Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IPv6 >Advanced>Tunnel Configuration. A screen similar to the following displays. Figure 26-10 b. Select 0 in the Tunnel Id field. c. Select 6-in-4-configured in the Mode field. d. In the Source Address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 431
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. In the IPv6 Prefix field, enter 2000::2. d. In the Length field, enter 64. e. Select Disable in the EUI64 field. f. Click Add. Tunnel v1.0, October 2009 26-9 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 432
IPv6 Routing VLAN" on page 27-6 Creating an IPv6 Routing Interface CLI: Create an IPv6 Routing Interface Enable ipv6 forwarding and unicast routing on the switch. (Netgear Switch) (Config)#ipv6 forwarding (Netgear Switch) (Config)#ipv6 unicast-routing Assign IPv6 address to interface 1/0/1. (Netgear - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 433
(Netgear Switch) #show ipv6 interface 1/0/1 IPv6 is enabled IPv6 Prefix is FE80::21E:2AFF:FED9:249B/128 2000::2/64 [TENT] Routing Mode Enabled Administrative Mode Enabled IPv6 Routing Operational Mode Enabled Bandwidth 1000000 kbps Interface Maximum Transmit Unit 1500 Router Duplicate Address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 434
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Next to the IPv6 Forwarding, select the Enable Radio button. d. Click Apply. 2. Enable IPv6 routing on the interface 1/0/1 a. From the main menu, select Routing > IPv6 >Advanced>Interface Configuration. A screen similar to the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 435
routed. To access the switch over an IPv6 network you must first configure it with IPv6 information (IPv6 prefix, prefix length, and default gateway). CLI: Configure the IPv6 Network Interface (Netgear Switch) #network ipv6 enable (Netgear Switch) #network ipv6 address 2001:1::1/64 (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 436
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 27-4 b. Next to the Admin Mode, select the Enable Radio button. c. In the IPv6 Prefix/Prefix Length field, enter 2001:1::1/64. d. Select False - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 437
Manual, Release 8.0 Create an IPv6 Routing VLAN CLI: Creating an IPv6 Routing VLAN Create a routing VLAN with VLAN ID 500. Netgear Switch) (Vlan)#vlan 500 (Netgear Switch) (Vlan)#vlan routing 500 (Netgear Switch) (Vlan)#exit Add the interface 1/0/1 to VLAN 500. (Netgear Switch) #config (Netgear - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 438
(Netgear Switch) #show ipv6 interface 0/4/1 IPv6 is enabled IPv6 Prefix is FE80::21E:2AFF:FED9:249B/128 2000::1/64 Routing Mode Enabled Administrative Mode Enabled IPv6 Routing Operational Mode Enabled Bandwidth 10000 kbps Interface Maximum Transmit Unit 1500 Router Duplicate Address Detection - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 439
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. In the VLAN ID field, enter 500. c. Select Static in the VLAN Type field. d. Click Add. 2. Add ports to the VLAN 500. a. From the main menu, select Switching > VLAN >Advanced > VLAN Membership. A screen similar to the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 440
Switches Software Administration Manual, Release 8.0 b. Under PVID Configuration, scroll down to interface 1/0/1 and select the checkbox for 1/0/1. c. In the PVID Configuration enter 500 in the PVID(1 to 4093) field. d. Click Apply to save the settings. 4. Enable IPv6 forwarding and unicast routing - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 441
Switches Software Administration Manual, Release 8.0 b. Click the tag VLANS, then logical VLAN interface 0/4/2 will be displayed. c. Select the checkbox for 0/4/2, and in the IPv6 Interface Configuration, select Enable in the IPv6 Mode field. d. Click Apply. 6. Assign an IPv6 address to the routing - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 442
on IPv4 and IPv6 networks. Separate configuration CLI commands are provided for IPv4 and IPv6 utilization, and use less host and router processing, making them ideal for usage a simple, protocol-independent multicast routing protocol. It uses existing Unicast routing table and join/ prune/graft - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 443
Subnet 192.168.4.0/24 Subnet 192.168.2.0/24 Subnet 192.168.1.0/24 Subnet 192.168.5.0/24 NETGEAR Managed Switches Software Administration Manual, Release 8.0 versions of PIM-DM. Version 2 does not use IGMP messages; instead, it uses a message that is encapsulated in IP packets with protocol number - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 444
Manual, Release 8.0 CLI: Configuring PIM-DM On Switch A Enable IP routing on the switch. (Netgear Switch) #configure (Netgear Switch) (Config)#ip routing Enable pimdm on the switch. (Netgear Switch) (Config)#ip pimdm Enable ip multicast forwarding on the switch. (Netgear Switch) (Config)#ip - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 445
Switch B (Netgear Switch) #configure (Netgear Switch) (Config)#ip routing (Netgear Switch) (Config)#ip pimdm (Netgear Switch) (Config)#ip multicast (Netgear Switch) (Config)#interface 1/0/10 (Netgear Switch) (Interface 1/0/10)#routing (Netgear Switch) (Interface 1/0/10)#ip address (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 446
(Netgear Switch) (Config)#interface 1/0/24 (Netgear Switch) (Interface 1/0/24)#routing (Netgear Switch) (Interface 1/0/24)#ip pimdm (Netgear Switch) (Interface 1/0/24)#ip igmp (Netgear Switch) (Interface 1/0/24)#ip rip (Netgear Switch) (Interface 1/0/24)#ip address (Netgear Switch) (Interface 1/0/24 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 447
NETGEAR Managed Switches Software Administration Manual, Release 8.0 (C) #show ip mcast mroute summary Multicast Route Table Summary Incoming Source IP Group IP Protocol Interface --------- 192.168.1.1 225.1.1.1 PIMDM 1/0/21 (D) #show ip mcast mroute summary Multicast Route Table - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 448
NETGEAR Managed Switches Software Administration Manual, Release 8.0 similar to the following displays. Figure 28-3 b. Under IP Interface Configuration, scroll down to interface 1/0/1 and select the checkbox for 1/0/1. 1/0/1 now appears in the Interface field at the top. c. Enter the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 449
Switches Software Administration Manual, Release 8.0 b. Under IP Interface Configuration, scroll down to interface 1/0/9 and select the checkbox for 1/0/9. 1/0/9 now appears in the Interface field at the top. c. Enter the following information in the IP Interface Configuration. • In the IP address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 450
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing >RIP >Advanced > Interface 6. Enable rip on the interface 1/0/9. a. From the main menu, select Routing > RIP >Advanced > Interface Configuration. A screen similar to the following displays - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 451
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > RIP >Advanced > Interface Apply. 8. Enable multicast globally. a. From the main menu, select Routing > Multicast >Global Configuration. A screen similar to the following displays. Figure - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 452
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >PIM-DM-> DM on the interface 1/0/1,1/0/9 and 1/0/13. a. From the main menu, select Routing > Multicast >PIM-DM->Interface Configuration. A screen similar to the following displays. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 453
1. Enable IP routing on the switch. a. From the main menu, select Routing >IP >Basic >IP configuration. A screen similar to the following displays. Figure 28-12 b. Next to the Routing Mode, select the Enable radio button. c. Click Apply. 2. Configure 1/0/10 as a routing port and assign IP address to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 454
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 28-13 b. Under IP Interface Configuration, scroll down to interface 1/0/10 and select the checkbox for 1/0/ 10. Now 1/0/10 appears in the Interface field at the top. c. Enter the following information in the IP Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 455
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • In the Subnet Mask, enter 255.255.255.0. • Select Enable in the Routing Mode field. d. Click Apply to save the settings. 4. Enable rip on the interface 1/0/10. a. From the main menu, select Routing >RIP >Advanced > Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 456
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >Global Configuration. A screen similar to the following displays. Figure 28-17 b. Next to the Admin Mode, select the Enable radio button. c. Click Apply. 7. Enable - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 457
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >PIM-SM->Interface Switch C: To use the Web interface to config PIM-DM, proceed as follows: 1. Enable IP routing on the switch. a. From the main menu, select Routing >IP >Basic >IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 458
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 28-20 b. Next to the Routing Mode, select the Enable radio button. c. Click Apply. 2. Configure 1/0/21 as a routing port and assign IP address to it. a. From the main menu, select Routing > IP >Advanced > IP Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 459
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP >Advanced > IP Interface Configuration. A screen similar to the following displays. Figure 28-22 b. Under IP Interface Configuration, scroll down to interface 1/0/22 and select the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 460
NETGEAR Managed Switches Software Administration Manual, Release 8.0 5. Enable rip on the interface 1/0/22. a. From the main menu, select Routing > RIP >Advanced > Interface Configuration. A screen similar to the following displays. Figure 28-24 b. Select 1/0/22 in the Interface field. c. Next to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 461
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >PIM-DM->Global on the interface 1/0/21 and 1/0/22. a. From the main menu, select Routing > Multicast >PIM-DM->Interface Configuration. A screen similar to the following displays. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 462
NETGEAR Managed Switches Software Administration Manual, Release 8.0 On Switch D: To use the Web interface to config PIM-DM, proceed as follows: 1. Enable IP routing on the switch. a. From the main menu, select Routing >IP >Basic >IP configuration. A screen similar to the following displays. Figure - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 463
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Enter the following information in the IP Interface Configuration. • In the IP address, enter 192.168.2.1. • In the Subnet Mask, enter 255.255.255.0. • Select Enable in the Routing Mode field. d. Click Apply to save the settings - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 464
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 28-31 b. Under IP Interface Configuration, scroll down to interface 1/0/24 and select the checkbox for 1/0/ 24. 1/0/24 now appears in the Interface field at the top. c. Enter the following information in the IP Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 465
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > RIP >Advanced > Interface d. Click Apply. 7. Enable rip on the interface 1/0/24. a. From the main menu, select Routing > RIP >Advanced > Interface Configuration. A screen similar to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 466
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >Global Configuration. A screen similar to the following displays. Figure 28-35 b. Next to the Admin Mode, select the Enable radio button. c. Click Apply. 9. Enable - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 467
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >PIM-DM->Interface Configuration. A screen similar to the following displays. Figure 28-37 b. Under PIM-DM Interface Configuration, scroll down to interface 1/0/21 and - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 468
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >IGMP->Interface Configuration. A screen similar to the following displays. Figure 28-39 b. Under IGMP Routing Interface Configuration, scroll down to interface 1/0/24and select - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 469
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Source IP 192.168.1.1 Subnet 192.168.1.0/24 Switch A Port 1/0/13 Port 1/0/1 Port1/0/9 Port 1/0/10 Subnet 192.168.3.0/24 Port 1/0/11 Switch B Subnet 192.168.5.0/24 Subnet 192.168.2.0/24 Switch D Port 1/0/21 Port 1/0/24 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 470
Manual, Release 8.0 CLI: Configuring PIM-SM On Switch A Enable ip routing on the switch. (Netgear Switch)#configure (Netgear Switch) (Config)#ip routing Enable pim-sm on the switch. (Netgear Switch) (Config)#ip pimsm Enable ip multicast forwarding on the switch. (Netgear Switch) (Config)#ip - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 471
router (BSR). (Netgear Switch) (Config)#ip pimsm bsr-candidate interface 1/0/10 30 7 (Netgear Switch) (Config)#interface 1/0/10 (Netgear Switch) (Interface 1/0/10)#routing (Netgear Switch) (Interface 1/0/10)#ip address (Netgear Switch) (Interface 1/0/10)#ip rip (Netgear Switch) (Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 472
(Netgear Switch) (Config)#interface 1/0/24 (Netgear Switch) (Interface 1/0/24)#routing (Netgear Switch) (Interface 1/0/24)#ip address (Netgear Switch) (Interface 1/0/24)#ip rip (Netgear Switch) (Interface 1/0/24)#ip igmp (Netgear Switch) (Interface 1/0/24)#ip pimsm (Netgear Switch) (Interface 1/0/24 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 473
NETGEAR Managed Switches Software Administration Manual, Release 8.0 (A) #show ip mcast mroute summary Multicast Route Table Summary Incoming Source IP Group IP Protocol Interface ----------- 192.168.1.1 225.1.1.1 PIMSM 1/0/13 Outgoing Interface List 1/0/1 (B) #show ip mcast - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 474
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 28-41 b. Next to the Routing Mode, select the Enable radio button. c. Click Apply. 2. Configure 1/0/1 as a routing port and assign IP address to it. a. From the main menu, select Routing > IP >Advanced > IP Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 475
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP >Advanced > IP Interface Configuration. A screen similar to the following displays. Figure 28-43 b. Under IP Interface Configuration, scroll down to interface 1/0/9 and select teh - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 476
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 28-44 b. Under IP Interface Configuration, scroll down to interface 1/0/13 and select the checkbox for 1/0/ 13. 1/0/13 now appears in the Interface field at the top. c. Enter the following information in the IP Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 477
NETGEAR Managed Switches Software Administration Manual, Release 8.0 6. Enable rip on the interface 1/0/9. a. From the main menu, select Routing > RIP >Advanced > Interface Configuration. A screen similar to the following displays. Figure 28-46 b. Select 1/0/9 in the Interface field. c. Next to the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 478
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >Global Configuration. A screen similar to the following displays. Figure 28-48 b. Next to the Admin Mode, select the Enable radio button. c. Click Apply. 9. Enable - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 479
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >PIM-SM->Interface Switch B: To use the Web interface to config PIM-SM, proceed as follows: 1. Enable IP routing on the switch. a. From the main menu, select Routing >IP >Basic >IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 480
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 28-51 b. Next to the Routing Mode, select the Enable radio button. c. Click Apply. 2. Configure 1/0/10 as a routing port and assign IP address to it. a. From the main menu, select Routing > IP >Advanced > IP Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 481
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP >Advanced > IP Interface Configuration. A screen similar to the following displays. Figure 28-53 b. Under IP Interface Configuration, scroll down to interface 1/0/11 and select the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 482
NETGEAR Managed Switches Software Administration Manual, Release 8.0 5. Enable rip on the interface 1/0/11. a. From the main menu, select Routing > RIP >Advanced > Interface Configuration. A screen similar to the following displays. Figure 28-55 b. Select 1/0/11 in the Interface field. c. Next to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 483
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >PIM-SM->Global on the interface 1/0/10 and 1/0/11. a. From the main menu, select Routing > Multicast >PIM-SM->Interface Configuration. A screen similar to the following displays. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 484
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. In the PIM-SM Interface Configuration, select Enable in the Admin Mode field. d. Click Apply to save the settings. 9. Candidate RP Configuration. a. From the main menu, select Routing > Multicast >PIM-SM->Candidate RP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 485
Administration Manual, Release 8.0 Figure 28-60 b. Select the 1/0/10 in the Interface field. c. In the Hash Mask Length field, enter 30. d. In the Priority field, enter 7. e. Click Apply. On Switch C: To use the Web interface to config PIM-SM, proceed as follows: 1. Enable IP routing on the switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 486
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 28-61 b. Next to the Routing Mode, select the Enable radio button. c. Click Apply. 2. Configure 1/0/21 as a routing port and assign IP address to it. a. From the main menu, select Routing > IP >Advanced > IP Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 487
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP >Advanced > IP Interface Configuration. A screen similar to the following displays. Figure 28-63 b. Under IP Interface Configuration, scroll down to interface 1/0/22 and select the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 488
NETGEAR Managed Switches Software Administration Manual, Release 8.0 5. Enable rip on the interface 1/0/22. a. From the main menu, select Routing > RIP >Advanced > Interface Configuration. A screen similar to the following displays. Figure 28-65 b. Select 1/0/22 in the Interface field. c. Next to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 489
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >PIM-SM->Global on the interface 1/0/21 and 1/0/22. a. From the main menu, select Routing > Multicast >PIM-SM->Interface Configuration. A screen similar to the following displays. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 490
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >PIM-SM->Candidate RP Configuration. A screen similar to the following displays. Figure 28-69 b. Select 1/0/22 in the Interface field. c. In the Group IP, enter 225.1.1.1. d. In - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 491
Administration Manual, Release 8.0 Figure 28-70 b. Select the 1/0/21 in the Interface field. c. In the Hash Mask Length field, enter 30. d. In the Priority field, enter 5. e. Click Apply. On Switch D: To use the Web interface to config PIM-SM, proceed as follows: 1. Enable IP routing on the switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 492
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 28-71 b. Next to the Routing Mode, select the Enable radio button. c. Click Apply. 2. Configure 1/0/21 as a routing port and assign IP address to it. a. From the main menu, select Routing > IP >Advanced > IP Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 493
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP >Advanced > IP Interface Configuration. A screen similar to the following displays. Figure 28-73 b. Under IP Interface Configuration, scroll down to interface 1/0/22and select the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 494
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Enter the following information in the IP Interface Configuration. • In the IP address, enter 192.168.4.1. • In the Subnet Mask, enter 255.255.255.0. • Select Enable in the Routing Mode field. d. Click Apply to save the settings - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 495
NETGEAR Managed Switches Software Administration Manual, Release 8.0 d. Click Apply. 7. Enable rip on the interface 1/0/24. a. From the main menu, select Routing > RIP >Advanced > Interface Configuration. A screen similar to the following displays. Figure 28-77 b. Select 1/0/24 in the Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 496
NETGEAR Managed Switches Software Administration Manual, Release 8.0 9. Enable PIM-SM globally. a. From the main menu, select Routing > Multicast >PIM-SM PIM-SM on the interface 1/0/21,1/0/22 and 1/0/24. a. From the main menu, select Routing > Multicast >PIM-SM->Interface Configuration. A screen - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 497
NETGEAR Managed Switches Software Administration Manual, Release 8.0 11. Candidate RP Configuration. a. From the main menu, select Routing > Multicast IP, enter 225.1.1.1. d. In the Group Mask, enter 255.255.255.0. e. Click Add. 12. BSR Cansdidate Configuration. a. From the main menu, select Routing - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 498
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 28-82 b. Select 1/0/22 in the Interface field. c. In the Hash Mask Length field, enter 30. d. In the Priority field, enter 3. e. Click Apply. 13. Enable IGMP globally. a. From the main menu, select Routing > Multicast >IGMP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 499
NETGEAR Managed Switches Software Administration Manual, Release 8.0 14. Enable IGMP on the interface 1/0/24. a. From the main menu, select Routing > Multicast >IGMP->Interface Configuration. A screen similar to the following displays. Figure 28-84 b. Under IGMP Routing Interface Configuration, - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 500
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Chapter 29 DHCP L2 Relay DHCP Relay Agents messages. DHCP servers use this option for IP address and other parameter assignment policies. These DHCP Relay Agents are typically an IP routing aware device and are referred as Layer 3 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 501
NETGEAR Managed Switches Software Administration Manual, Release 8.0 CLI: DHCP L2 Relay (Netgear Switch)#vlan database (Netgear Switch)(Vlan)#vlan 200 (Netgear Switch)(Vlan)#exit Enable DHCP L2relay on the switch. (Netgear Switch) (Config)#dhcp l2relay (Netgear Switch) (Config)#dhcp l2relay vlan - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 502
Switches Software Administration Manual, Release 8.0 Trust packets with option 82 received on port 1/0/6. (Netgear Switch) (Interface 1/0/6)# dhcp l2relay trust (Netgear Switch) (Interface 1/0/6)# vlan pvid 200 (Netgear Switch) (Interface 1/0/6)# vlan participation include 200 (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 503
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 29-3 b. Select 200 in the VLAN ID field. c. Click the Unit 1. The on port 1/0/4, 1/0/5 and 1/0/6. a. From the main menu, select Switching > VLAN> Advanced > Port PVID Configuration. A screen similar to the following displays - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 504
NETGEAR Managed Switches Software Administration Manual, Release 8.0 d. Click Apply to save the settings. 4. Enable DHCP L2 Relay on VLAN 200. a. From the main menu, select System > Services> DHCP L2 Relay > DHCP L2 Relay Configuration. A screen similar to the following displays. Figure 29-5 b. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 505
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 29-6 b. Under DHCP L2 Relay Configuration, DHCP L2 Relay Trust on interface 1/0/6. a. From the main menu, select System > Services> DHCP L2 Relay > DHCP L2 Relay Interface Configuration. A screen similar to the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 506
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Chapter 30 MLD In this chapter, the following examples are provided: • "Configure MLD" on page 32-2 • "MLD Snooping" on page 32-5 Multicast Listener Discovery (MLD) protocol enables IPv6 routers to discover the presence of - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 507
21 Port 1/0/24 2001:3::/64 Host Figure 30-1 CLI: Configuring MLD On Switch A (Netgear Switch)#configure (Netgear Switch) (Config)#ipv6 router ospf (Netgear Switch) (Config-rtr)#router-id 1.1.1.1 (Netgear Switch) (Config)#exit (Netgear Switch) (Config)#ipv6 unicast-routing (Netgear Switch) (Config - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 508
switch. (Netgear Switch) (Config)#ipv6 unicast-routing Enable ipv6 MLD on the switch. (Netgear Switch) (Config)#ipv6 mld router Enable ipv6 PIM-DM on the switch. (Netgear Switch) (Config)#ipv6 pimdm Enable ip multicast forwarding on the switch. (Netgear Switch) (Config)#ip routing (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 509
1/0/24 (Netgear Switch) (Interface 1/0/24)#routing (Netgear Switch) (Interface 1/0/24)#ipv6 address 2001:3::1/64 (Netgear Switch) (Interface 1/0/24)#ipv6 enable (Netgear Switch) (Interface 1/0/24)#ipv6 mld router (Netgear Switch) (Interface 1/0/24)#ipv6 pimdm (Netgear Switch) (Interface 1/0/24 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 510
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing >IP >Basic >IP configuration. A screen similar to the following displays. Figure 30-2 b. Next to the Routing Mode, select the Enable radio button. c. Click Apply. 2. Enable IPv6 Unicast - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 511
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP v6>Advanced > Interface Configuration. A Enable in the IPv6 Mode field. • Select Enable in the Routing Mode field. • Select Enable in the Admin Modefield. d. Click Apply to save the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 512
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP v6>Advanced > Prefix Configuration. A screen similar to the following displays. Figure 30-5 b. Under IPv6 Interface Selection, select 1/0/1 in the Interface field. c. Enter the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 513
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP v6>Advanced > router ID of OSPFv3. a. From the main menu, select Routing > OSPFv3 >Basic > OSPFv3 Configuration. A screen similar to the following displays. Figure 30-7 b. In the Router - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 514
NETGEAR Managed Switches Software Administration Manual, Release 8.0 7. Enable OSPFv3 on the interface 1/0/1 and 1/0/13. a. From the main menu, select Routing > OSPFv3 >Advanced > Interface Configuration. A screen similar to the following displays. Figure 30-8 b. Under OSPFv3 Interface Configuration - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 515
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Next to the Admin Mode, select the Enable radio button. c. Click Apply. 9. Enable PIM-DM globally. a. From the main menu, select Routing > Multicast >PIM-DM->Global Configuration. A screen similar to the following displays. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 516
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >PIM-DM->Interface to save the settings. On Switch B: To use the Web interface to config MLD, proceed as follows: 1. Enable IP routing on the switch. 30-11 v1.0, October 2009 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 517
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing >IP >Basic >IP configuration. A screen similar to the following displays. Figure 30-12 b. Next to the Routing Mode, select the Enable radio button. c. Click Apply. 2. Enable IPv6 Unicast - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 518
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP v6>Advanced > Interface for 1/0/24. c. Enter the following information in the IPv6 Interface Configuration. • Select Enable in the IPv6 Mode field. • Select Enable in the Routing Mode - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 519
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP v6>Advanced > Prefix Configuration. A screen similar to the following displays. Figure 30-15 b. Under IPv6 Interface Selection, select 1/0/21 in the Interface field. c. Enter the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 520
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP v6>Advanced > Prefix Configuration. A screen similar to the following displays. Figure 30-16 b. Under IPv6 Interface Selection, select 1/0/24 in the Interface field. c. Enter the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 521
NETGEAR Managed Switches Software Administration Manual, Release 8.0 7. Enable OSPFv3 on the interface 1/0/21 and 1/0/24. a. From the main menu, select Routing > OSPFv3 >Advanced > Interface Configuration. A screen similar to the following displays. Figure 30-18 b. Under OSPFv3 Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 522
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >PIM-DM->Global 10. Enable PIM-DM on the interface 1/0/21and 1/0/24. a. From the main menu, select Routing > Multicast >PIM-DM->Interface Configuration. A screen similar - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 523
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. In the PIM-DM Interface Configuration, select Enable in the Admin Mode field. d. Click Apply to save the settings. 11. Enable MLD on the switch. a. From the main menu, select Routing >Multicast >MLD >Global configuration. A - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 524
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. In the MLD Routing Interface Configuration, select Enable in the Admin Mode field. d. Click Apply. MLD Snooping In IPv4, Layer 2 switches can use IGMP Snooping to limit the flooding of multicast traffic by dynamically - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 525
Manual, Release 8.0 CLI: MLD Snooping (Netgear Switch) #vlan da (Netgear Switch) (Vlan)#vlan 300 (Netgear Switch) (Vlan)#exit (Netgear Switch) #config (Netgear Switch) (Config)#interface 1/0/1 (Netgear Switch) (Interface 1/0/1)#vlan participation include 300 (Netgear Switch) (Interface 1/0/1)#vlan - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 526
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Switching > VLAN >Basic > VLAN configuration. A screen similar to the following displays. Figure 30-24 b. In the VLAN Configuration, VLAN ID field, enter 300 c. Click Add. 2. Assign all of the ports - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 527
NETGEAR Managed Switches Software Administration Manual, Release 8.0 e. Click Apply 3. Assign PVID to port 1/0/1 and 1/0/24. a. From the main menu, select Switching > VLAN> Advanced > Port PVID Configuraton. A screen similar to the following displays. Figure 30-26 b. Under PVID Configuration, - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 528
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Click Apply. 5. Enable MLD Snooping on the VLAN 300. a. From the main menu, select Routing > Multicast >MLD Snooping > MLD VLAN Configuration. A screen similar to the following displays. Figure 30-28 b. Enter the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 529
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Chapter 31 DVMRP The Distance Vector Multicast Routing Protocol (DVMRP) is used for multicasting over IP networks without routing protocols to support multicast. The DVMRP is based on the RIP protocol but more complicated than RIP. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 530
.4.0/24 Figure 31-1 CLI: Configuring DVMRP On Switch A: Create routing interface 1/0/1,1/0/13 and 1/0/21. (Netgear Switch) #config (Netgear Switch) (Config)#ip routing (Netgear Switch) (Config)#interface 1/0/1 (Netgear Switch) (Interface 1/0/1)#routing (Netgear Switch) (Interface 1/0/1)#ip address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 531
exit (Netgear Switch) #show ip dvmrp neighbor Interface 1/0/13 Neighbor IP Address 192.168.2.2 State Active Up Time (hh:mm:ss 00:02:40 Expiry Time (hh:mm:ss 00:00:25 Generation ID 1116347719 Major Version 3 Minor Version 255 Capabilities Prune GenID Missing 11441 Received Routes 0 Received - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 532
Software Administration Manual, Release 8.0 On Switch B Create the routing port 1/0/13 and 1/0/20. (Netgear Switch) #config (Netgear Switch) (Config)#ip routing (Netgear Switch) (Config)#interface 1/0/13 (Netgear Switch) (Interface 1/0/13)#routing (Netgear Switch) (Interface 1/0/13)#ip address 192 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 533
Manual, Release 8.0 (Netgear Switch) #show ip dvmrp neighbor Interface 1/0/13 Neighbor IP Address 192.168.2.1 State Active Up Time (hh:mm:ss 00:02:26 Expiry Time (hh:mm:ss 00:00:20 Generation ID 88091 Major Version 3 Minor Version 255 Capabilities Prune GenID Missing 11441 Received Routes - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 534
Manual, Release 8.0 On Switch C: Create the routing interface 1/0/11,1/0/3 and 1/0/24. (Netgear Switch) #config (Netgear Switch) (Config)#ip routing (Netgear Switch) (Config)#ip interface 1/0/11 (Netgear Switch) (Interface 1/0/11)#ip routing (Netgear Switch) (Interface 1/0/11)#ip address - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 535
Software Administration Manual, Release 8.0 Enable IGMP mode on the interface 1/0/24. (Netgear Switch) (Config)#interface 1/0/24 (Netgear Switch) (Interface 1/0/24)#ip igmp (Netgear Switch) (Interface 1/0/24)#exit (Netgear Switch) #show ip dvmrp neighbor Interface 1/0/11 Neighbor IP Address 192 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 536
NETGEAR Managed Switches Software Administration Manual, Release 8.0 1. Enable IP routing on the switch. a. From the main menu, select Routing >IP >Basic >IP configuration. A screen similar to the following displays. Figure 31-2 b. Next to the Routing IP Interface Configuration. • In the IP address, - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 537
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • Select Enable in the Routing Mode field. d. Click Apply to save the settings. 3. Configure 1/0/13 as a routing port and assign IP address to it. a. From the main menu, select Routing > IP >Advanced > IP Interface Configuration. A - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 538
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP >Advanced > IP Interface Configuration. A screen similar to the following displays. Figure 31-5 b. Under IP Interface Configuration, scroll down to interface 1/0/13 and select the checkbox - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 539
NETGEAR Managed Switches Software Administration Manual, Release 8.0 b. Next to the Admin Mode, select the Enable radio button. c. Click Apply. 6. Enable DVMRP on the switch. a. From the main menu, select Routing > Multicast >DVMRP>Global Configuration. A screen similar to the following displays. - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 540
1. Enable IP routing on the switch. a. From the main menu, select Routing >IP >Basic >IP configuration. A screen similar to the following displays. Figure 31-9 b. Next to the Routing Mode, select the Enable radio button. c. Click Apply. 2. Configure 1/0/13 as a routing port and assign IP address to - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 541
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > IP >Advanced > IP Interface Configuration. A screen similar to the following displays. Figure 31-10 b. Under IP Interface Configuration, scroll down to interface 1/0/13 and select the 1/0/13 - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 542
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Enter the following information in the IP Interface Configuration. • In the IP address, enter 192.168.4.1. • In the Subnet Mask, enter 255.255.255.0. • Select Enable in the Routing Mode field. d. Click Apply to save the settings - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 543
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >DVMRP>Global Configuration. Enable DVMRP on the interface. a. From the main menu, select Routing > Multicast >DVMRP>Interface Configuration. A screen similar to the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 544
NETGEAR Managed Switches Software Administration Manual, Release 8.0 On Switch C: To use the Web interface to config DVMRP, proceed as follows: 1. Enable IP routing on the switch. a. From the main menu, select Routing >IP >Basic >IP configuration. A screen similar to the following displays. Figure - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 545
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • In the Subnet Mask, enter 255.255.255.0. • Select Enable in the Routing Mode field. d. Click Apply to save the settings. 3. Configure 1/0/3 as a routing port and assign IP address to it. a. From the main menu, select Routing > IP - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 546
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Figure 31-18 b. Under IP Interface Configuration, scroll down to interface 1/0/24 and select the 1/0/24 checkbox. Now 1/0/24 appears in the Interface field at the top. c. Enter the following information in the IP Interface - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 547
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Routing > Multicast >DVMRP>Global Configuration. Enable DVMRP on the interface. a. From the main menu, select Routing > Multicast >DVMRP>Interface Configuration. A screen similar to the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 548
NETGEAR Managed Switches Software Administration Manual, Release 8.0 c. Select Enable in the Interface Mode field. d. Click Apply to save the settings. 8. Enable IGMP on the switch. a. From the main menu, select Routing > Multicast >IGMP>Global Configuration. A screen similar to the following - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 549
NETGEAR Managed Switches Software Administration Manual, Release 8.0 to be forwarded by the switch so that the unauthenticated clients can get an IP address and be able to resolve all the physical ports on the switch. It is not supported for VLAN interfaces, loopback interfaces or logical - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 550
configurations. Enable Captive Portal CLI: Enabling Captive Portal Enable captive portal on the switch. (Netgear Switch) (config)#captive-portal (Netgear Switch) (Config-CP)#enable Enable captive portal instance 1. (Netgear Switch) (Config-CP)#configuration 1 (Netgear Switch) (Config-CP 1)#enable - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 551
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Enable captive portal instance 1 on port 1/0/1. (Netgear Switch) (Config-CP 1)#interface 1/0/1 Web Interface: Enabling Captive Portal To use the Web interface to configure the Captive Portal, proceed as follows: 1. Enable Captive - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 552
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > Control >Captive Portal> CP Configuration. A screen similar to the following displays. Figure 32-2 b. Under Captive Portal Configuration, scroll - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 553
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Client Access, Authentication, and Control User verification can be configured to allow access for guest users; users that do not have assigned user names and passwords. User CLI: Blocking a Captive Portal Instance (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 554
. CLI: Creating Users and Groups Create a group whose group ID is 2. (Netgear Switch) #config (Netgear Switch) (config)#captive-portal (Netgear Switch )(Config-CP)# user group 2 Create a user whose name is user1. (Netgear Switch) (Config-CP)#user 2 name user1 Configure the user's password. (Netgear - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 555
NETGEAR Managed Switches Software Administration Manual, Release 8.0 a. From the main menu, select Security > Control >Captive Portal > CP Group Configuration. A screen similar to the following displays. Figure 32-5 b. Enter the following information - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 556
NETGEAR Managed Switches Software Administration Manual, Release 8.0 • In the User ID Field, enter 2. • In the User Name field, enter user1. • In the Password field, enter 12345678. • In the Confirm Password Integer (seconds) Optional Default None None 0 0 32-8 v1.0, October 2009 Captive Portal - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 557
NETGEAR Managed Switches Software Administration Manual, Release 8.0 Table 32-1. RADIUS Attributes for Configuring Captive Portal Users ( Default 0 Optional 0 CLI: Configuiring RADIUS as the Verification Mode (Netgear Switch ) (Config-CP 1)#radius-auth-server Default-RADIUS-Server (Netgear Switch - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 558
NETGEAR Managed Switches Software Administration Manual, Release 8.0 SSL Certificates A Captive Portal instance can be configured to use the HTTPS protocol during its user . This certificate can be generated by the administrator using a CLI command. If a captive portal instance is configured for the - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 559
ACL redirect 11-49 ACLs 11-1 IP ACL configuration 11-2 IPv6 11-55 isolated VLANs on a Layer 3 switch 11-26 MAC ACLs 11-1, 11-39 support 13-20 DNS 21-1 add a host name and IP address 21-2 specify two DNS servers 21-1 DVLAN 23-1 DVMRP 31-1 E Easy Setup Wizard 1-5 Ezconfig 1-10 G gaming 14-7 guest VLAN - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 560
NETGEAR Managed Switches Software Administration Manual, Release 8.0 I IGMP querier 14-7, 14-8 status 14-9 IGMP snooping 14-1, 14-8 14-2 external multicast router 14-4 multicast router using VLAN 14-6 show mac-address-table 14-3 show mac-address-table igmpsnooping 14-4 IGMPv3 14-1 in-band - Netgear GSM7328Sv1 | 7000 Series Managed Switch Administration Guide for Softwar - Page 561
19-9 upgrading firmware 19-15 syslog 18-1 T time, set the time zone (CLI only) 16-5 traceroute 17-1 traffic shaping 12-9 tunnel 26-1 V video streaming 14-7 VLAN 3-1 assigning ports 3-4, 3-5 creating two VLANs 3-2 double VLANs 23-1 guest VLAN 15-20 IP subnet based 3-16 IPv6 routing VLAN 27
202-10515-01
October 2009
NETGEAR
, Inc.
350 East Plumeria Drive
San Jose, CA 95134
NETGEAR Managed
Switches Software
Administration Manual,
Release 8.0