TP-Link TL-SL2452 TL-SL2452 V1 CLI Reference Guide 1910010971
TP-Link TL-SL2452 Manual
View all TP-Link TL-SL2452 manuals
Add to My Manuals
Save this manual to your list of manuals |
TP-Link TL-SL2452 manual content summary:
- TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 1
TL-SL2210/TL-SL2218/TL-SL2428/TL-SL2452 Smart Switch REV1.1.0 1910010971 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 2
COPYRIGHT & TRADEMARKS Specifications are subject to change without notice. is a registered trademark of TP-LINK TECHNOLOGIES CO., LTD. Other brands and product names are trademarks or registered trademarks of their respective holders. No part of the specifications may be reproduced - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 3
CONTENTS Preface ...1 Chapter 1 Using the CLI 3 1.1 Accessing the CLI...3 1.2 CLI Command Modes...4 1.3 Security Levels ...7 1.4 Conventions ...7 1.4.1 Format Conventions 7 1.4.2 Special Characters 8 1.4.3 Parameter Format 8 Chapter 2 User Interface 9 enable...9 enable password ...9 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 4
account-list ...32 show user configuration...32 Chapter 7 System Log Commands 34 logging buffer...34 logging file flash...34 logging file flash (for TL-SL2452 35 logging file flash frequency ...36 logging file flash level ...36 clear logging ...37 logging host index ...38 show logging local-config - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 5
mac address-table mac-num 53 show mac address-table mac 53 show mac address-table vlan 54 Chapter 11 System Commands 55 system-time manual ...55 system-time ntp ...55 system-time dst predefined 57 system-time dst date ...58 system-time dst recurring ...59 hostname...60 location ...60 contact - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 6
reboot ...64 copy running-config startup-config 64 copy startup-config tftp ...65 copy tftp startup-config ...65 firmware upgrade ...66 ping ...66 tracert ...67 loopback interface ...68 show system-info...68 show running-config ...69 show system-time...69 show system-time dst ... - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 7
Chapter 13 QoS Commands 85 qos ...85 qos cos ...85 qos dscp ...86 qos queue cos-map ...87 qos queue dscp-map ...87 qos queue mode...88 show qos interface ...89 show qos cos-map ...90 show qos dscp-map ...90 show qos queue mode ...91 show qos status...91 Chapter 14 Port Mirror Commands 92 monitor - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 8
access-list policy action ...106 access-list bind(interface)...107 access-list bind(vlan) ...107 show access-list ...108 show access-list policy ...108 show access-list bind ...109 Chapter 18 DHCP Filtering Commands 110 ip dhcp filtering ...110 ip dhcp filtering trust ...110 show ip dhcp filtering - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 9
snmp-server user ...141 snmp-server community ...143 snmp-server host...143 snmp-server engineID ...145 snmp-server traps snmp...145 snmp-server traps link-status 146 snmp-server traps...147 snmp-server traps mac...148 snmp-server traps vlan ...148 rmon history...149 rmon event ...150 rmon alarm - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 10
show snmp-server ...152 show snmp-server view ...153 show snmp-server group ...153 show snmp-server user ...154 show snmp-server community 154 show snmp-server host ...154 show snmp-server engineID 155 show rmon history ...155 show rmon event ...155 show rmon alarm...156 IX - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 11
stands for TL-SL2210/TL-SL2218/TL-SL2428/TL-SL2452 Smart Switch. The four devices of TL-SL2210, TL-SL2218, TL-SL2428 and TL-SL2452 are sharing this User Guide. For simplicity, we will take TL-SL2428 for example throughout the configuration chapters. TL-SL2210, TL-SL2218, TL-SL2428 and TL-SL2452 just - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 12
Provide information about the commands used for configuring the System information and System IP, reboot and reset the switch, upgrade the switch system and other operations. Chapter 12: Ethernet Configuration Commands Provide information about the commands used for configuring the Bandwidth - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 13
1.1 Accessing the CLI You can log on to the switch and access the CLI by logging on to the switch remotely by a Telnet through an Ethernet port. To log on to the switch by a Telnet connection, please take the following steps: 1. Make sure the switch and the PC are in the same LAN. 2. Click - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 14
can use the CLI now, which is shown as Figure1-4. Figure 1-4 Log in the Switch 1.2 CLI Command Modes The CLI is divided into different command modes: User EXEC Mode, be divided into Interface fastEthernet, Interface gigabitEthernet, Interface link-aggregation and some other modes, which is shown as - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 15
Interface link-aggregation Interface range fastEthernet Interface range gigabitEthernet Interface range link- from Privileged EXEC mode. Global Configuration Mode TL-SL2428> TL-SL2428# TL-SL2428 (config)# Use the exit command to disconnect the switch. Use the enable command to access Privileged - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 16
to enter this mode from Global Configuration mode. TL-SL2428 (config-vlan)# Use the end command the connection between the PC and the switch is established by a telnet connection. 2. link-aggregation: Configure parameters for a link-aggregation, such as broadcast storm. d). Interface range link - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 17
; Admin level allows you to monitor, configure and manage the switch in Privileged EXEC Mode, Global Configuration Mode, Interface Configuration Mode . 1.4 Conventions 1.4.1 Format Conventions The following conventions are used in this Guide: Items in square brackets [ ] are optional Items in - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 18
1.4.2 Special Characters You should pay attentions to the description below if the variable is a character string: These six characters can not be input. If a blank is contained in a character string, single or double quotation marks should be used, for example 'hello world', "hello world", and - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 19
set the password to access Privileged EXEC Mode from User EXEC Mode: TL-SL2428>enable Enter password: TL-SL2428# enable password Description The enable password command is used to set . By default, it is "simple". This function is not supported by TL-SL2210. Command Mode Global Configuration Mode 9 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 20
Privileged EXEC Mode. Syntax disable Command Mode Privileged EXEC Mode Example Return to User EXEC Mode from Privileged EXEC Mode: TL-SL2428# disable TL-SL2428> configure Description The configure command is used to access Global Configuration Mode from Privileged EXEC Mode. Syntax configure Command - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 21
Configuration Mode Example Return to Global Configuration Mode from Interface Configuration Mode, and then return to Privileged EXEC Mode: TL-SL2428(config-if)# exit TL-SL2428(config)#exit TL-SL2428# end Description The end command is used to return to Privileged EXEC Mode. Syntax end Command Mode - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 22
(Virtual Local Area Network) technology is developed for the switch to divide the LAN into multiple logical LANs flexibly. Configuration Mode Example Create VLAN 2-10 and VLAN 100: TL-SL2428(config)# vlan 2-10,100 Delete VLAN 2: TL-SL2428(config)# no vlan 2 interface vlan Description The interface - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 23
Parameter vlan-id -- Specify IEEE 802.1Q VLAN ID, ranging from 1 to 4094. Command Mode Global Configuration Mode Example Create VLAN Interface 2: TL-SL2428(config)# interface vlan 2 name Description The name command is used to assign a description to a VLAN. To clear the description, please use no - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 24
-SL2428(config)# interface fastEthernet 1/0/4 TL-SL2428(config-if)# switchport general allowed vlan 2 tagged switchport pvid Description The switchport pvid command is used to configure the PVID for the switch ports. Syntax switchport pvid vlan-id Parameter vlan-id -- VLAN ID, ranging from 1 to 4094 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 25
.1Q VLAN. Syntax show vlan brief Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the brief information of IEEE 802.1Q VLAN: TL-SL2428(config)# show vlan brief show vlan Description The show vlan command is used to display the information of IEEE 802.1Q VLAN . Syntax show - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 26
Example Display the information of vlan 5: TL-SL2428(config)# show vlan 5 show interface switchport Description The show interface switchport command is Mode and Any Configuration Mode Example Display the VLAN configuration information of all ports: TL-SL2428(config)# show interface switchport 16 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 27
-id -- Specify IEEE 802.1Q VLAN ID, ranging from 2 to 4094. Command Mode Global Configuration Mode Example Enable the Voice VLAN function for VLAN 10: TL-SL2428(config)#voice vlan 10 voice vlan aging time Description The voice vlan aging time command is used to set the aging time for a voice - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 28
1 to 43200 and the default value is 1440. Command Mode Global Configuration Mode Example Set the aging time for the Voice VLAN as 1 minute: TL-SL2428(config)#voice vlan aging time 1 voice vlan priority Description The voice vlan priority command is used to configure the priority for the Voice VLAN - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 29
:11:11:11:11:11 and the mask address FF:FF:FF:00:00:00: TL-SL2428(config)#voice vlan mac-address 00:11:11:11:11:11 mask FF:FF:FF:00:00:00 description TP- Phone switchport voice vlan mode Description The switchport voice vlan mode command is used to - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 30
/ interface range gigabitEthernet) Example Configure the Fast Ethernet port 3 to operate in the auto voice VLAN mode: TL-SL2428(config)#interface fastEthernet 1/0/3 TL-SL2428(config-if)#switchport voice vlan mode auto switchport voice vlan security Description The switchport voice vlan security - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 31
show voice vlan oui Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration information of Voice VLAN OUI: TL-SL2428(config)#show voice vlan oui show voice vlan switchport Description The show voice vlan switchport command is used to display the configuration - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 32
Example Display the configuration information of Fast Ethernet port 1 in the Voice VLAN: TL-SL2428(config)#show voice vlan switchport fastEthernet 1/0/1 Display the configuration information of all the ports in the Voice VLAN: TL-SL2428(config)#show voice vlan switchport 22 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 33
link aggregation and disaggregation by exchanging LACP packets with its partner. The switch can dynamically group similarly configured ports into a single logical link Group 1 and enable the static LAG: TL-SL2428(config)# interface range fastEthernet 1/0/2-4 TL-SL2428(config-if-range)# channel-group - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 34
and destination IP addresses of the packets. Command Mode Global Configuration Mode Example Configure the Aggregate Arithmetic for LAG as "src-dst-mac": TL-SL2428(config)# port-channel load-balance src-dst-mac lacp system-priority Description The lacp system-priority command is used to configure the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 35
fastEthernet / interface gigabitEthernet / interface range gigabitEthernet) Example Configure the LACP port priority as 1024 for ports 1-3: TL-SL2428(config)# interface range fastEthernet 1/0/1-3 TL-SL2428(config-if-range)# lacp port-priority 1024 Configure the LACP port priority as 2048 for port - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 36
. Syntax show etherchannel load-balance Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Aggregate Arithmetic of LAG: TL-SL2428(config)# show etherchannel load-balance show lacp Description The show lacp command is used to display the LACP information for a specified - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 37
-- The neighbor LACP information. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the internal LACP information of EtherChannel Group 1: TL-SL2428(config)# show lacp 1 internal show lacp sys-id Description The show lacp sys-id command is used to display the LACP system - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 38
with a certain access level so as to protect the settings of the switch from being randomly changed. user name Description The user name command is used file. By default, it is "simple". This function is not supported by TL-SL2210. Command Mode Global Configuration Mode Example Add and enable a new - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 39
TL-SL2428(config)# user name tplink password password type admin status enable user Global Configuration Mode Example Enable the access-control of the user whose IP address is 192.168.0.148: TL-SL2428(config)# user access-control ip-based 192.168.0.148 255.255.255.255 user access-control mac-based - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 40
. Command Mode Global Configuration Mode Example Configure that only the user whose MAC address is 00:00:13:0A:00:01 is allowed to login: TL-SL2428(config)# user access-control mac-based 00:00:13:0A:00:01 user access-control port-based Description The user access-control port-based - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 41
should be less than 16. Command Mode Global Configuration Mode Example Configure the number of the users as Admin and Guest logging on as 5 and 3: TL-SL2428(config)# user max-num 5 3 user idle-timeout Description The user idle-timeout command is used to configure the timeout time of the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 42
5 to 30 in minutes. By default, the value is 10. Command Mode Global Configuration Mode Example Configure the timeout time of the switch as 15 minutes: TL-SL2428(config)# user idle-timeout 15 show user account-list Description The show user account-list command is used to display the information of - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 43
Example Display the security configuration information of the users: TL-SL2428(config)# show user configuration 33 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 44
no logging buffer command. Local Log is the log information saved in the switch. It has two output channels, that is, it can be saved to Command Mode Global Configuration Mode Example Set the severity level as 6: TL-SL2428(config)# logging buffer 6 logging file flash Description The logging file - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 45
for saving system log. The information in the log file will not be lost after the switch is restarted and can be got by the show logging flash command. This command does not apply to TL-SL2452. Syntax logging file flash level no logging file flash Parameter level -- Severity level of the log - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 46
of the flash and is not recommended. Command Mode Global Configuration Mode Example Specify the log file synchronization frequency as 10 hours: TL-SL2452(config)#logging file flash frequency 10 logging file flash level Description The logging file flash level command is used to specify the system - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 47
the log flash. Command Mode Global Configuration Mode Example Save the log messages with their severities equal or higher than 7 to the flash : TL-SL2452(config)#logging file flash level 7 clear logging Description The clear logging command is used to clear the information in the log buffer and log - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 48
no logging host index idx Parameter idx -- The index of the log host. The switch supports 4 log hosts at most. host-ip -- The IP for the log host. level host 2 and set its IP address as 192.168.0.148, the level 5: TL-SL2428(config)# logging host index 2 192.168.0.148 5 show logging local-config Description - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 49
of all the log hosts by default. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of the log host 2: TL-SL2428(config)# show logging loghost 2 show logging buffer Description The show logging buffer command is used to display the log information in the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 50
default. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the log information from level 0 to level 5 in the log buffer: TL-SL2428(config)# show logging buffer level 5 show logging flash Description The show logging flash command is used to display the log information in - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 51
, please use no ip ssh server command. Syntax ip ssh server no ip ssh server Command Mode Global Configuration Mode Example Enable the SSH function: TL-SL2428(config)# ip ssh server ip ssh version Description The ip ssh version command is used to enable the SSH protocol version. To disable the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 52
release the connection if there is no operation from the client. By default, this value is 120. For TL-SL2210, it ranges from 1 to 999 in seconds; and for TL-SL2218/ TL-SL2428/ TL-SL2452, it ranges from 1 to 120 in seconds. Command Mode Global Configuration Mode Example Specify the idle-timeout time - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 53
the maximum number of the connections to the SSH server as 3: TL-SL2428(config)# ip ssh max-client 3 ip ssh download Description The type key file named ssh-key from TFTP server with the IP address 192.168.0.148: TL-SL2428(config)# ip ssh download v1 ssh-key ip-address 192.168.0.148 show ip ssh - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 54
Example Display the global configuration of SSH: TL-SL2428(config)# show ip ssh 44 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 55
http secure-server command is used to enable the SSL function globally on the switch. To disable the SSL function, please use no ip http secure-server command. Command Mode Global Configuration Mode Example Enable the SSL function: TL-SL2428(config)# ip http secure-server ip http secure-server - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 56
-cert from TFTP server with the IP address of 192.168.0.146: TL-SL2428(config)# ip http secure-server download certificate ssl-cert ip-address secure-server download key command is used to download a SSL key to the switch from TFTP server. Syntax ip http secure-server download key ssl-key ip-address - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 57
configuration of SSL. Syntax show ip http secure-server Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the global configuration of SSL: TL-SL2428(config)# show ip http secure-server 47 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 58
be added or removed manually, independent of the aging time. In the stable networks, the static MAC address entries can facilitate the switch to reduce broadcast 4f:6c:23, VLAN1 and port 1 together: TL-SL2428(config)# mac address-table static mac 00:02:58:4f:6c:23 vid 1 interface fastEthernet - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 59
Global Configuration Mode Example Configure the aging time as 500 seconds: TL-SL2428(config)# mac address-table aging-time 500 mac address-table filtering to be forwarded. The filtering address can be added or removed manually, independent of the aging time. Syntax mac address-table filtering mac - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 60
VLAN ID is 1 and MAC address is 00:1e:4b:04:01:5d: TL-SL2428(config)# mac address-table filtering mac 00:1e:4b:04:01:5d vid influence of the aging time and can only be deleted manually. The learned entries will be cleared after the switch is rebooted. When permanent mode is selected, the learned - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 61
that can be learned on this port as 30: TL-SL2428(config)# interface fastEthernet 1/0/1 TL-SL2428(config-if)# mac address-table max-mac-count max Any Configuration Mode Example Display the information of all address entries: TL-SL2428(config)# show mac address-table address all show mac address- - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 62
-SL2428(config)# show mac address-table max-mac-count interface gigabitEthernet Display the security configuration of port 1: TL-SL2428(config)# show mac address-table max-mac-count interface fastEthernet 1/0/1 show mac address-table interface Description The show mac address-table interface command - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 63
Syntax show mac address-table mac-num Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the total amount of MAC address table: TL-SL2428(config)# show mac address-table mac-num show mac address-table mac Description The show mac address-table mac command is used to display - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 64
vlan vid Parameter vid --The specified VLAN id. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the MAC address configuration of vlan 1: TL-SL2428(config)# show mac address-table vlan 1 54 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 65
time is 12/20/2010 17:30:35 TL-SL2428(config)# system-time manual 12/20/2010-17:30:35 system-time ntp Description The system-time ntp command is used to configure the time zone and the IP address for the NTP Server. The switch will get UTC automatically if it has - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 66
UTC-09:00 -- TimeZone for Alaska. UTC-08:00 -- TimeZone for Pacific Time(US Canada). UTC-07:00 -- TimeZone for Mountain Time(US Canada). UTC-06:00 -- TimeZone for Central Time(US Canada). UTC-05:00 -- TimeZone for Eastern Time(US Canada). UTC-04:30 -- TimeZone for Caracas. UTC-04:00 -- - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 67
-12:00, the primary NTP server is 133.100.9.2 and the secondary NTP server is 139.78.100.163, the fetching-rate is 11 hours: TL-SL2428(config)# system-time ntp UTC-12:00 133.100.9.2 139.79.100.163 11 system-time dst predefined Description The system-time dst predefined - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 68
Global Configuration Mode Example Configure the daylight saving time from zero clock, Apr 1st to zero clock Oct 1st and the offset is 30 minutes: TL-SL2428(config)# system-time dst date Apr 1 00:00 Oct 1 00:00 30 58 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 69
system-time dst recurring Description The system-time dst recurring command is used to configure the recurring daylight saving time. It can be configured spanning years. To disable DST function, please use no system-time dst command. Syntax system-time dst recurring {sweek} {sday} {smonth} {stime} { - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 70
name ranges from 1 to 32 characters. By default, it is the device name, for example "TL-SL2428". Command Mode Global Configuration Mode Example Configure the system name as TPLINK: TL-SL2428(config)# hostname TPLINK location Description The location command is used to configure the system location - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 71
Configure the system location as SHENZHEN: TL-SL2428(config)# location SHENSHEN contact- tp-link.com: TL-SL2428(config)# contact-info www.tp-link.com ip management-vlan Description The ip management-vlan command is used to configure the IP management VLAN, through which you can log on to the switch - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 72
Configure the system IP as 192.168.0.69 and the Subnet Mask as 255.255.255.0 when the management VLAN of the switch is VLAN1: TL-SL2428(config)# interface vlan 1 TL-SL2428(config-if)# ip address 192.168.0.69 255.255.255.0 ip address-alloc dhcp Description The ip address-alloc dhcp command - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 73
Command Mode Interface Configuration Mode (interface vlan) Example Enable the DHCP Client function when the management VLAN of the switch is VLAN1: TL-SL2428(config)# interface vlan 1 TL-SL2428(config-if)# ip address-alloc dhcp ip address-alloc bootp Description The ip address-alloc bootp command is - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 74
. To avoid damage, please don't turn off the device while rebooting. Syntax reboot Command Mode Privileged EXEC Mode Example Reboot the switch: TL-SL2428# reboot copy running-config startup-config Description The copy running-config startup-config command is used to save the current settings. Syntax - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 75
server with the IP 192.168.0.148 and name this file config: TL-SL2428# copy startup-config tftp ip-address 192.168.0.148 filename config tftp startup-config command is used to download the configuration file to the switch from TFTP server. Syntax copy tftp startup-config ip-address ip-addr filename - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 76
via the TFTP server with the IP address 192.168.0.148: TL-SL2428# firmware upgrade ip-address 192.168.0.148 filename firmware.bin ping Description The ping command is used to test the connectivity between the switch and one node of the network. Syntax ping {ip_addr} [-n count] [-l count] [-i count - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 77
bytes and count (-i) as 1000 milliseconds. If there is not any response after 8 times' Ping test, the connection between the switch and the network device is failed to establish: TL-SL2428# ping 192.168.0.131 -n 8 -l 512 tracert Description The tracert command is used to test the connectivity of the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 78
internal-type loopback test for Gigabit Ethernet port 27: TL-SL2428# loopback interface gigabitEthernet 1/0/27 internal Do an external-type loopback test System Description, Device Name, Device Location, System Contact, Hardware Version, Firmware Version, System Time, Run Time and so on. Syntax show - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 79
show system-time command is used to display the time information of the switch. Syntax show system-time Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the time information of the switch TL-SL2428# show system-time show system-time dst Description The show system-time - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 80
Mode Example Display the NTP mode configuration information of the switch: TL-SL2428# show system-time ntp show cable-diagnostics interface check the connection status of the cable connected to the switch, locate and diagnose the trouble spot of the network. Syntax show cable-diagnostics interface - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 81
Example Show the cable-diagnostics of port 3: TL-SL2428# show cable-diagnostics interface fastEthernet 1/0/3 71 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 82
. Command Mode Global Configuration Mode Example To enter the Interface fastEthernet Configuration Mode and configure Fast Ethernet port 2: TL-SL2428(config)#interface fastEthernet 1/0/2 interface range fastEthernet Description The interface range fastEthernet command is used to enter the interface - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 83
Command Mode Global Configuration Mode Example To enter the Interface gigabitEthernet Configuration Mode and configure Gigabit Ethernet port 27: TL-SL2428(config)#interface gigabitEthernet 1/0/27 interface range gigabitEthernet Description The interface range gigabitEthernet command is used to enter - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 84
gigabitEthernet Configuration Mode, and configure Gigabit Ethernet ports 27 and 28 at the same time by adding them to one port-list: TL-SL2428(config)# interface range gigabitEthernet 1/0/27-28 description Description The description command is used to add a description to the Ethernet port. To - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 85
Mode (interface fastEthernet / interface range fastEthernet / interface gigabitEthernet / interface range gigabitEthernet) Example Disable port 3: TL-SL2428(config)# interface fastEthernet 1/0/3 TL-SL2428(config-if)# shutdown flow-control Description The flow-control command is used to enable the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 86
Combo port, the media type should be configured before you set its speed and mode. This command does not apply to TL-SL2210/TL-SL2452 since TL-SL2210/TL-SL2452 has no Combo port. Syntax media-type { rj45 | sfp } Parameter rj45 | sfp -- Media type. Command Mode Interface Configuration Mode (interface - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 87
1/0/3 TL-SL2428(config-if)# speed 100 storm-control broadcast Description The storm-control broadcast command is used to enable the broadcast control function. To disable the broadcast control function, please use no storm-control broadcast command. Broadcast control function allows the switch to - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 88
broadcast control function for port 5: TL-SL2428(config)# interface fastEthernet 1/0/5 TL-SL2428(config-if)# storm-control broadcast please use no storm-control multicast command. Multicast control function allows the switch to filter multicast in the network. If the transmission rate of the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 89
function, please use no storm-control unicast command. Unicast control function allows the switch to filter UL frame in the network. If the transmission rate of the UL unicast control function for port 5: TL-SL2428(config)# interface fastEthernet 1/0/5 TL-SL2428(config-if)# storm-control unicast - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 90
information of all the Ethernet ports. Syntax clear counters Command Mode Global Configuration Mode Example Clear the statistic information of all ports TL-SL2428(config)# clear counters show interface status Description The show interface status command is used to display the connective-status of - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 91
EXEC Mode and Any Configuration Mode Example Display the connective-status of all ports: TL-SL2428(config)# show interface status Display the connective-status of port 1: TL-SL2428(config)# show interface fastEthernet 1/0/1 status show interface counters Description The show interface counters - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 92
EXEC Mode and Any Configuration Mode Example Display the description of all Ethernet ports: TL-SL2428(config)# show interface description Display the description of port 2: TL-SL2428(config)# show interface fastEthernet 1/0/2 description show interface flowcontrol Description The show interface - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 93
Ethernet ports. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the storm-control information of port 4, 5, 6, and 7: TL-SL2428(config)# show storm-control interface range fastEthernet 1/0/4-7 show bandwidth Description The show bandwidth command is used to display the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 94
. port-list -- The list of the Ethernet ports. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the bandwidth-limit information of port 4: TL-SL2428(config)# show bandwidth interface fastEthernet 1/0/4 84 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 95
optimize the network performance. It provides you with network service experience of a better quality. qos Description The qos the ingress port. Example Configure the priority of port 5 as 3: TL-SL2428(config)# interface fastEthernet 1/0/5 TL-SL2428(config-if)# qos 3 qos cos Description The qos cos - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 96
be classified into the egress queue based on this mapping relation. Example Enable the mapping relation between IEEE 802.1P Priority and egress queue: TL-SL2428(config)# qos cos qos dscp Description The qos dscp command is used to enable the mapping relation between DSCP Priority and TC egress queue - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 97
TC1, 1-TC0, 2-TC0, 3-TC1, 4-TC2, 5-TC2, 6-TC3, 7-TC3 2. Among the priority levels TC0-TC3, the bigger value, the higher p r i o r i t y. Example Map tag 5 to TC 2.: TL-SL2428(config)# qos queue cos-map 5 2 qos queue dscp-map Description The qos queue dscp-map command is used to configure the mapping - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 98
-47)-TC 2, (48-63)-TC 3. Example Map DSCP values 10-12 to TC 2: TL-SL2428(config)# qos queue dscp-map 10-12 2 qos queue mode Description The qos queue congested, the problem that many packets compete for resources must be solved, usually in the way of queue scheduling. The switch will control the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 99
sp+wrr -- Strict-Priority + Weight Round Robin Mode. In this mode, the switch provides two scheduling groups, SP group and WRR group. Queues in SP group and Mode Example Specify the Schedule Mode as Weight Round Robin Mode: TL-SL2428(config)# qos queue mode wrr show qos interface Description The - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 100
and Any Configuration Mode Example Display the configuration of IEEE 802.1P priority and the mapping relation between IEEE 802.1P priority and tc-id: TL-SL2428# show qos cos-map show qos dscp-map Description The show qos dscp-map command is used to display the configuration of DSCP Priority - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 101
egress queues. Syntax show qos queue mode Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the schedule rule of the egress queues: TL-SL2428# show qos queue mode show qos status Description The show qos status command is used to display the status of IEEE 802.1P priority - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 102
used to analyze the monitored packets for monitoring and troubleshooting the network. monitor session destination interface Description The monitor 1 and configure port 1 as the monitoring port: TL-SL2428(config)# monitor session 1 destination interface fastEthernet 1/0/1 Delete the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 103
the monitoring port and monitored ports are in the same VLAN or not is not demanded strictly. 4. The monitoring port and monitored ports cannot be link-aggregation member. Example Create monitor session 1, then configure port 4, 5, 7 as monitored port and enable ingress monitoring: 93 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 104
(config)# monitor session 1 source interface fastEthernet 1/0/4-5,1/0/7 rx Delete port 4 in monitor session 1 and its configuration: TL-SL2428(config)# no monitor session 1 source interface fastEthernet 1/0/4 rx show monitor session Description The show monitor session command is used to display - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 105
forward-list 1/0/1-2,1/0/4 Set all Ethernet ports to forward port list of port 2, namely restore to the default setting: TL-SL2428(config)# interface fastEthernet 1/0/2 TL-SL2428(config-if)# no port isolation show port isolation interface Description The show port isolation interface command is used - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 106
show its forward port list, in the format of 1/0/2. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the forward-list of port 2: TL-SL2428# show port isolation interface fastEthernet 1/0/2 Display the forward-list of all Ethernet ports - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 107
Mode Example Enable the loopback detection function globally: TL-SL2428(config)# loopback-detection loopback-detection interval Description The used to define the interval of sending loopback detection packets from switch ports to network, aiming at detecting network loops periodically. - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 108
100 and the default value is 3. Command Mode Global Configuration Mode Example Configure the recovery-time as 5 times of detection interval: TL-SL2428(config)# loopback-detection recovery-time 5 loopback-detection(interface) Description The loopback-detection command is used to enable the loopback - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 109
-based }] [ recovery-mode { auto | manual }] Parameter process-mode -- The mode how the switch processes the detected loops. Alert: When a manual for port 2: TL-SL2428(config)# interface fastEthernet 1/0/2 TL-SL2428(config-if)# loopback-detection config process-mode port-based recovery-mode manual - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 110
-detection global Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the global configuration of loopback detection function: TL-SL2428# show loopback-detection global show loopback-detection interface Description The show loopback-detection interface command is used to - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 111
Mode Example Display the configuration of loopback detection function and the status of all ports: TL-SL2428# show loopback-detection interface Display the configuration of loopback detection function and the status of port 5: TL-SL2428# show loopback-detection interface fastEthernet 1/0/5 101 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 112
is 100-199 and the Extend-IP ACL is 200-299. Command Mode Global Configuration Mode Example Create a standard-IP ACL whose ID is 123: TL-SL2428(config)# access-list create 123 mac access-list Description The mac access-list command is used to create MAC ACL. To set the detailed - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 113
TL-SL2428(config)# mac access-list 23 access-list standard Description The access- is 255.255.255.0, and the packets match this rule will be forwarded by the switch: TL-SL2428(config)# access-list create 120 TL-SL2428(config)# access-list standard 120 rule 10 permit sip 192.168.0.100 smask 255.255 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 114
address is 192.168.0.100, the source IP address mask is 255.255.255.0, and the packets match this rule will be forwarded by the switch: TL-SL2428(config)# access-list create 220 TL-SL2428(config)# access-list extended 220 rule 10 permit sip 192.168.0.100 smask 255.255.255.0 104 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 115
source MAC address mask is 11:11:11:11:11:00, and the packets match this rule will be forwarded by the switch: TL-SL2428(config)# mac access-list 20 TL-SL2428(config-mac-acl)# rule 10 permit smac 00:01:3F:48:16:23 smask 11:11:11:11:11:00 access - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 116
name name Parameter name -- The Policy Name, ranging from 1 to 16 characters. Command Mode Global Configuration Mode Example Add a Policy named policy1: TL-SL2428(config)# access-list policy name policy1 access-list policy action Description The access-list policy action command is used to add ACLs - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 117
(interface fastEthernet / interface range fastEthernet / interface gigabitEthernet / interface range gigabitEthernet) Example Bind policy1 to port 2: TL-SL2428(config)# interface fastEthernet 1/0/2 TL-SL2428(config-if)# access-list bind policy1 access-list bind(vlan) Description The access-list bind - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 118
the configuration. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of the MAC ACL whose ID is 20: TL-SL2428(config)# show access-list 20 show access-list policy Description The show access-list policy command is used to display the information of - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 119
configuration of Policy bind. Syntax show access-list bind Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of Policy bind: TL-SL2428(config)# show access-list bind 109 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 120
connected to the trusted port(s) can receive DHCP packets from DHCP servers. In this way, the switch can devoid of DHCP cheating attack which will cause network confusion and security problem. ip dhcp filtering Description The ip dhcp filtering command is used to enable DHCP Filtering function. To - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 121
. Syntax show ip dhcp filtering Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the running status of DHCP Filtering: TL-SL2428#show ip dhcp filtering show ip dhcp filtering interface Description The show ip dhcp filtering interface command is used to display the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 122
1s, can disbranch a ring network. STP is to block redundant links and backup links as well as optimize paths. spanning-tree(global) Description The Command Mode Global Configuration Mode Example Enable the STP function: TL-SL2428(config)# spanning-tree spanning-tree(interface) Description The - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 123
1/0/2 TL-SL2428(config . CIST (Common and Internal Spanning Tree) is the spanning tree in a switched network, connecting all devices in the network. Syntax spanning-tree common-config forward delay. point-to-point -- The P2P link status, with auto, open and close options. By default, the option is - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 124
(config)# interface fastEthernet 1/0/1 TL-SL2428(config-if)# spanning-tree common-config port-priority 64 ext-cost 100 int-cost 100 portfast enable point-to-point open spanning-tree mode Description The spanning-tree mode command is used to configure the STP mode of the switch. To return to the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 125
no spanning-tree mst configuration Command Mode Global Configuration Mode Example Enter into the MST configuration mode: TL-SL2428(config)# spanning-tree mst configuration TL-SL2428(Config-mst)# instance Description The instance command is used to configure the VLAN-Instance mapping. To - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 126
ranges from 1 to 32 characters. Command Mode MST Configuration Mode Example Configure the region name of MST as "region1": TL-SL2428(config)# spanning-tree mst configuration TL-SL2428(config-mst)# name region1 revision Description The revision command is used to configure the revision level of MST - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 127
it is 32768. MSTI priority is an important criterion on determining if the switch will be chosen as the root bridge in the specific instance. Command Mode Enable the MST Instance 1 and configure its priority as 4096: TL-SL2428(config)# spanning-tree mst instance 1 priority 4096 spanning-tree - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 128
interface range gigabitEthernet) Example Configure the priority of port 1 in MST Instance 1 as 64, and path cost as 2000: TL-SL2428(config)# interface fastEthernet 1/0/1 TL-SL2428(config-if)# spanning-tree mst instance 1 port-priority 64 cost 2000 spanning-tree priority Description The spanning-tree - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 129
, it is 20. TC Threshold is the maximum number of the TC-BPDUs received by the switch in a TC Protect Cycle. period -- TC Protect Cycle, ranging from 1 to 10 in Threshold as 30 packets and TC Protect Cycle as 10 seconds: TL-SL2428(config)# spanning-tree tc-defend threshold 30 period 10 spanning-tree - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 130
which is the interval to send BPDU packets, and used to test the links. Hello Time ranges from 1 to 10 in seconds and it is Max Age. max-age -- The maximum time the switch can wait without receiving a BPDU before attempting to reconfigure and 22 seconds respectively: TL-SL2428(config)# spanning-tree - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 131
ranging from 1 to 40 in hop. By default, it is 20. Command Mode Global Configuration Mode Example Configure the max-hops of STP as 30: TL-SL2428(config)# spanning-tree max-hops 30 spanning-tree bpdufilter Description The spanning-tree bpdufilter command is used to enable the BPDU filter function for - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 132
fastEthernet 2 TL-SL2428(config-if)# spanning-tree bpduguard spanning-tree guard loop Description The spanning-tree guard loop command is used to enable the Loop Protect function for a port. Loop Protect is to prevent the loops in the network brought by recalculating STP because of link failures and - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 133
interface range fastEthernet / interface gigabitEthernet / interface range gigabitEthernet) Example Enable the Loop Protect function for port 2: TL-SL2428(config)# interface fastEthernet 1/0/2 TL-SL2428(config-if)# spanning-tree guard loop spanning-tree guard root Description The spanning-tree guard - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 134
TC-BPDUs. If a malicious user continuously sends TC-BPDUs to a switch, the switch will be busy with removing MAC address entries, which may decrease the the TC Protect of Spanning Tree for port 2: TL-SL2428(config)# interface fastEthernet 1/0/2 TL-SL2428(config-if)# spanning-tree guard tc spanning- - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 135
tree. Syntax show spanning-tree active Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the active information of spanning-tree: TL-SL2428(config)# show spanning-tree active show spanning-tree bridge Description The show spanning-tree bridge command is used to display the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 136
SL2428(config)# show spanning-tree interface fastEthernet 1/0/2 Display the spanning-tree mode information of port 2: TL-SL2428(config)# show spanning-tree interface fastEthernet 1/0/2 mode show spanning-tree interface-security Description The show spanning-tree interface-security command is used to - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 137
Display the interface security bpdufilter information: TL-SL2428(config)# show spanning-tree interface-security information of VLAN and MST Instance: TL-SL2428(config)#show spanning-tree mst configuration Display the related information of MST Instance 1: TL-SL2428(config)#show spanning-tree mst - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 138
Snooping) is a multicast control mechanism running on Layer 2 switch. It can effectively prevent multicast groups being broadcasted in the snooping Command Mode Global Configuration Mode Example Enable IGMP Snooping function: TL-SL2428(config)# ip igmp snooping ip igmp snooping(interface) Description - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 139
interface range fastEthernet / interface gigabitEthernet / interface range gigabitEthernet) Example Enable the Fast Leave function for port 3: TL-SL2428(config)# interface fastEthernet 1/0/3 TL-SL2428(config-if)# ip igmp snooping immediate-leave ip igmp snooping drop-unknown Description The ip igmp - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 140
of the VLAN desired to modify configuration, ranging from 2 to 4094, in the format of 1-3, 5. router-time -- Router Port Time. Within this time, if the switch does not receive IGMP query message from the router port, it will consider this port is not a router port any more. Router Port Time ranges - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 141
to VLAN 2, and configure the forward port as port 1-3: TL-SL2428(config)# ip igmp snooping vlan-config 2 static 225.0.0.1 interface from 2 to 4094. router-time -- Router Port Time. Within this time, if the switch does not receive IGMP query message from the router port, it will consider this port - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 142
Leave Time, which is the interval between the switch receiving a leave message from a host and the switch removing the host from the multicast groups. Leave 100 TL-SL2428(config)# ip igmp snooping multi-vlan-config 3 mtime 100 TL-SL2428(config)# ip igmp snooping multi-vlan-config 3 ltime 3 TL-SL2428( - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 143
the multicast IP-range whose ID is 3 as 225.1.1.1~226.3.2.1: TL-SL2428(config)# ip igmp snooping filter 3 225.1.1.1 226.3.2.1 ip igmp default configuration, please use no igmp snooping filter command. When the switch receives IGMP report message, it examines the multicast filtering IP ID configured - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 144
/ interface range gigabitEthernet) Example Specify the maximum number of multicast groups for ports 2-5 to join in as 10: TL-SL2428(config)# interface range fastEthernet 1/0/2-5 TL-SL2428(config-if-range)# ip igmp snooping filter maxgroup 10 ip igmp snooping filter mode Description The ip igmp - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 145
IGMP snooping. Syntax show ip igmp snooping Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the global configuration of IGMP: TL-SL2428# show ip igmp snooping show ip igmp snooping interface Description The show ip igmp snooping interface command is used to display the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 146
Configuration Mode Example Display the IGMP basic configuration of port 2: TL-SL2428# show ip igmp snooping interface fastEthernet 1/0/2 basic-config Display the IGMP packet statistics of ports 1-4: TL-SL2428# show ip igmp snooping interface fastEthernet 1/0/1-4 packet-stat show - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 147
. Syntax show ip igmp snooping multi-vlan Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Multicast VLAN configuration: TL-SL2428# show ip igmp snooping multi-vlan show ip igmp snooping groups Description The show ip igmp snooping groups command is used to - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 148
(config)#show ip igmp snooping groups vlan 5 dynamic count Display the count of static multicast entries of VLAN 5 TL-SL2428(config)#show ip igmp snooping groups vlan 5 static count show ip igmp snooping filter Description The show ip igmp snooping filter command is used - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 149
Command Mode Global Configuration Mode Example Enable the SNMP function: TL-SL2428(config)# snmp-server snmp-server view Description The snmp-server ) of the SNMP packets is used to describe the managed objects of the switch, and the MIB (Management Information Base) is the set of the OIDs. - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 150
Mode Example Add a View named view1, configuring the OID as 1.3.6.1.6.3.20, and this OID can be managed by the SNMP management station: TL-SL2428(config)# snmp-server view view1 1.3.6.1.6.3.20 include snmp-server group Description The snmp-server group command is used to manage and configure the - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 151
by View viewDefault can be received by Management station: TL-SL2428(config)# snmp-server group group1 smode v3 slev authNoPriv use no snmp-server user command. The User in an SNMP Group can manage the switch via the management station software. The User and its Group have the same security level - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 152
authPriv, the Authentication Mode of the user as MD5, the Authentication Password as 11111, the Privacy Mode as DES, and the Privacy Password as 22222: TL-SL2428(config)# snmp-server user admin local group2 smode v3 slev authPriv cmode MD5 cpwd 11111 emode DES epwd 22222 142 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 153
to access. Command Mode Global Configuration Mode Example Add community public, and the community has read-write management right to View viewDefault: TL-SL2428(config)# snmp-server community public read-write viewDefault snmp-server host Description The snmp-server host command is used to add - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 154
reach the specified Retry times. timeout -- The maximum time for the switch to wait for the response from the management station before resending a as inform, the maximum time for the switch to wait as 1000 seconds, and the retries time as 100: TL-SL2428(config)# snmp-server host 192.168.0.146 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 155
ID is a unique alphanumeric string used to identify the SNMP engine on the switch. Its length ranges from 10 to 64 hexadecimal characters, which must be even engineID as 1234567890, and the remote engineID as abcdef123456: TL-SL2428(config)# snmp-server engineID local 1234567890 remote abcdef123456 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 156
Configuration Mode Example Enable SNMP standard linkup trap for the switch: TL-SL2428(config)# snmp-server traps snmp linkup snmp-server traps link-status Description The snmp-server traps link-status command is used to enable SNMP link status trap for the specified port. To disable the sending - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 157
firmware upgrade, configuration import, etc. ipaddr-change -- Enable ipaddr-change trap. It is sent when IP address is changed such as user manually modifies the IP address or the switch SNMP extended bandwidth-control trap for the switch: TL-SL2428(config)# snmp-server traps bandwidth-control 147 - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 158
Command Mode Global Configuration Mode Example Enable all SNMP extended MAC address-related traps for the switch: TL-SL2428(config)# snmp-server traps mac Enable new MAC address trap only for the switch: TL-SL2428(config)# snmp-server traps mac new snmp-server traps vlan Description The snmp-server - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 159
. Command Mode Global Configuration Mode Example Enable all SNMP extended VLAN-related traps for the switch: TL-SL2428(config)# snmp-server traps vlan Enable VLAN-created trap only for the switch: TL-SL2428(config)# snmp-server traps vlan create rmon history Description The rmon history command is - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 160
Command Mode Global Configuration Mode Example Configure the sample port as Gi1/0/2 and the sample interval as 100 seconds for the entry 1-3: TL-SL2428(config)# rmon history 1-3 interface fastEthernet 1/0/2 interval 100 owner owner1 rmon event Description The rmon event command is used to configure - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 161
of event as log and the owner of the event as owner1: TL-SL2428(config)# rmon event 1-4 user user1 description description1 type log owner owner1 variable exceeds the threshold, an alarm event is generated, which triggers the switch to act in the set way. Syntax rmon alarm index interface { - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 162
Mode Example Configure the port of entries of 1,2 and 3 as port 2, the owners as owner1 and the alarm intervals as 100 seconds TL-SL2428(config)# rmon alarm 1-3 interface fastEthernet 1/0/2 owner owner1 interval 100 show snmp-server Description The show snmp-server command is used to display - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 163
used to display the View table. Syntax show snmp-server view Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the View table: TL-SL2428# show snmp-server view show snmp-server group Description The show snmp-server group command is used to display the Group table. Syntax - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 164
display the Community table. Syntax show snmp-server community Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Community table: TL-SL2428# show snmp-server community show snmp-server host Description The show snmp-server host command is used to display the Host table - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 165
the engineID of the SNMP. Syntax show snmp-server engineID Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the engineID: TL-SL2428# show snmp-server engineID show rmon history Description The show rmon history command is used to display the configuration of the history - TP-Link TL-SL2452 | TL-SL2452 V1 CLI Reference Guide 1910010971 - Page 166
of all SNMP-RMON enabled entries is displayed. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Event configuration of entry1-4: TL-SL2428# show rmon event 1-4 show rmon alarm Description The show rmon alarm command is used to display the configuration of the Alarm
TL-SL2210/TL-SL2218/TL-SL2428/TL-SL2452
Smart Switch
REV1.1.0
19100109
71