TP-Link T1600G-52PS TL-SG2452P T1600G-28PSTL-SG2424P V1 CLI Reference Guide
TP-Link T1600G-52PS TL-SG2452P Manual
View all TP-Link T1600G-52PS TL-SG2452P manuals
Add to My Manuals
Save this manual to your list of manuals |
TP-Link T1600G-52PS TL-SG2452P manual content summary:
- TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 1
T1600G-28TS (TL-SG2424) T1600G-52TS (TL-SG2452) T1600G-28PS (TL-SG2424P) T1600G-52PS (TL-SG2452P) JetStream Gigabit Smart Switch REV1.1.3 1910011526 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 2
COPYRIGHT & TRADEMARKS Specifications are subject to change without notice. is a registered trademark of TP-LINK TECHNOLOGIES CO., LTD. Other brands and product names are trademarks or registered trademarks of their respective holders. No part of the specifications may be reproduced in any form - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 3
14 1.4.1 Format Conventions 14 1.4.2 Special Characters 14 1.4.3 Parameter Format 14 Chapter 2 User Interface 15 2.1 enable ...15 2.2 service password-encryption 15 2.3 enable password...16 2.4 enable secret ...17 2.5 configure ...18 2.6 exit ...18 2.7 end ...19 2.8 history - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 4
4.2 mac-vlan ...26 4.3 show mac-vlan...27 4.4 show mac-vlan interface 28 Chapter 5 Protocol VLAN Commands 29 5.1 protocol-vlan template 29 5.2 protocol-vlan vlan ...30 5.3 protocol-vlan ...30 5.4 show protocol-vlan template 31 5.5 show protocol-vlan vlan 31 Chapter 6 Voice VLAN - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 5
8.7 show user account-list 50 8.8 show user configuration 50 8.9 show telnet-status...51 Chapter 9 HTTP and HTTPS Commands 52 9.1 ip http server ...52 9.2 ip http max-users ...52 9.3 ip http session timeout 53 9.4 ip http secure-server 54 9.5 ip http secure-protocol 54 9.6 ip - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 6
11.5 ip arp inspection recover 71 11.6 show ip arp inspection 72 11.7 show ip arp inspection interface 72 11.8 show ip arp inspection statistics 73 11.9 clear ip arp inspection statistics 73 Chapter 12 DoS Defend Commands 74 12.1 ip dos-prevent ...74 12.2 ip dos-prevent type 74 12.3 show ip - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 7
-table count 105 show mac address-table address 106 show mac address-table vlan 106 Chapter 17 System Configuration Commands 107 17.1 system-time manual 107 17.2 system-time ntp ...107 17.3 system-time dst predefined 109 17.4 system-time dst date 110 17.5 system-time dst recurring 111 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 8
17.9 17.10 17.11 17.12 17.13 17.14 17.15 17.16 17.17 17.18 17.19 17.20 17.21 17.22 17.23 17.24 17.25 17.26 17.27 17.28 17.29 17.30 17.31 ip address ...113 ip address-alloc ...114 reset ...115 reboot...115 copy running-config startup-config 116 copy startup-config tftp 116 copy tftp startup-config - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 9
19.4 19.5 19.6 19.7 19.8 19.9 19.10 19.11 19.12 19.13 19.14 19.15 19.16 19.17 shutdown ...133 flow-control ...134 duplex ...134 jumbo ...135 speed ...136 storm-control pps ...136 storm-control...137 bandwidth ...138 clear counters ...138 show interface status 139 show interface counters 139 show - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 10
23.2 loopback-detection interval 155 23.3 loopback-detection recovery-time 156 23.4 loopback-detection(interface 156 23.5 loopback-detection config 157 23.6 loopback-detection recover 158 23.7 show loopback-detection global 158 23.8 show loopback-detection interface 158 Chapter 24 ACL - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 11
25.15 25.16 25.17 25.18 show power inline information interface 177 show power profile 178 show power holiday 178 show power time-range 178 Chapter 26 MSTP Commands 180 26.1 26.2 26.3 26.4 26.5 26.6 26.7 26.8 26.9 26.10 26.11 26.12 26.13 26.14 26.15 26.16 26.17 26.18 26.19 26.20 26.21 26.22 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 12
27.4 27.5 27.6 27.7 27.8 27.9 27.10 27.11 27.12 27.13 27.14 27.15 27.16 27.17 27.18 27.19 27.20 27.21 27.22 27.23 27.24 27.25 27.26 27.27 ip igmp snooping mtime 198 ip igmp snooping report-suppression 199 ip igmp snooping immediate-leave 199 ip igmp snooping drop-unknown 200 ip igmp snooping - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 13
28.13 28.14 28.15 28.16 28.17 28.18 28.19 28.20 28.21 28.22 28.23 28.24 28.25 28.26 28.27 ipv6 mld snooping querier vlan (general query 221 ipv6 mld snooping max-groups 222 ipv6 mld profile...223 deny ...223 permit ...224 range...224 ipv6 mld filter...225 clear ipv6 mld snooping statistics 225 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 14
29.22 29.23 29.24 29.25 29.26 29.27 show snmp-server host 247 show snmp-server engineID 247 show rmon history 248 show rmon event ...248 show rmon alarm ...249 show rmon statistics 249 Chapter 30 LLDP Commands 250 30.1 30.2 30.3 30.4 30.5 30.6 30.7 30.8 30.9 30.10 30.11 30.12 30.13 30.14 30. - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 15
32.6 32.7 32.8 32.9 32.10 32.11 32.12 description ...266 show interface vlan 267 show ip interface...267 show ip interface brief 268 show ip route ...268 show ip route specify 269 show ip route summary 270 XIV - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 16
apply to these models if not specially noted, and T1600G-52TS is taken as an example model in the example commands. Overview of this Guide Chapter 1: Using the CLI Provide information about how to use the CLI, CLI Command Modes, Security Levels and some Conventions. Chapter 2: User Interface Provide - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 17
Chapter 12: DoS Defend Command Provide information about the commands used for DoS defend and detecting the DoS attack. Chapter 13: System Log Commands Provide information about the commands used for configuring system log. Chapter 14: SSH Commands Provide information about the commands used for - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 18
Chapter 27: IGMP Snooping Commands Provide information about the commands used for configuring the IGMP Snooping (Internet Group Management Protocol Snooping). Chapter 28: MLD Snooping Commands Provide information about the commands used for configuring the MLD Snooping (Multicast Listener Discovery - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 19
Chapter 1 Using the CLI 1.1 Accessing the CLI You can log on to the switch and access the CLI by logging on to the switch remotely by a Telnet or SSH connection through an Ethernet port. 1.1.1 Logon by Telnet To log on to the switch by a Telnet connection, please take the following steps: 1. Click - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 20
3. Type in the User name and Password (the factory default value for both of them are admin) and press the Enter button to enter User EXEC Mode , which is shown as Figure 1-2. Figure 1-2 Log in the Switch 4. Type in enable command to enter Privileged EXEC Mode. Figure 1-3 Enter into Priviledged EXEC - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 21
Figure 1-4 Enable SSH function Password Authentication Mode 1. Open the software to log on to the interface of PuTTY. Enter the IP address of the switch into Host Name field; keep the default value 22 in the Port field; select SSH as the Connection type. Figure 1-5 SSH Connection Config 6 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 22
2. Click the Open button in the above figure to log on to the switch. Enter the login user name and password to log on the switch, and then enter enable to enter Privileged EXEC Mode, so you can continue to configure the switch. Figure 1-6 Log on the Switch Key Authentication Mode 1. Select the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 23
2. After the key is successfully generated, please save the public key and private key to a TFTP server. Figure 1-8 Save the Generated Key 3. Log on to the switch by Telnet and download the public key file from the TFTP server to the switch, as the following figure shows: Figure 1-9 Download the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 24
Note: 1. The key type should accord with the type of the key file. 2. The SSH key downloading can not be interrupted. 4. After the public key is downloaded, please log on to the interface of PuTTY and enter the IP address for login. Figure 1-10 SSH Connection Config 9 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 25
5. Click Browse to download the private key file to SSH client software and click Open. Figure 1-11 Download the Private Key 6. After successful authentication, please enter the login user name. If you log on to the switch without entering password, it indicates that the key has been successfully - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 26
User EXEC Mode Privileged EXEC Mode Global Configuration Mode Interface Configuration Mode Interface gigabitEthernet Interface link-aggregation Interface range gigabitEthernet Interface range link-aggregation Interface vlan ...... VLAN Configuration Mode The following table gives detailed - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 27
Mode Accessing Path Prompt Logout or Access the next mode Interface Configuration Mode Interface Configuration Mode VLAN Configuration Mode Layer 2 Interface: Use the interface gigabitEthernet port, interface port-channel lagid or interface range gigabitEthernet port-list command to enter this - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 28
Global Configuration Mode: In this mode, global commands are provided, such as the Spanning Tree, Schedule Mode and so on. Interface Configuration Mode: In this mode, users can configure one or several ports, different ports corresponds to different commands a). Interface gigabitEthernet: - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 29
1.4 Conventions 1.4.1 Format Conventions The following conventions are used in this Guide: Items in square brackets [ ] are optional Items in braces { } are required Alternative items are grouped in braces and separated by vertical bars. For example: speed { - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 30
set the password to access Privileged EXEC Mode from User EXEC Mode: T1600G-52TS>enable Enter password: T1600G-52TS# 2.2 service password-encryption Description The service password-encryption command is used to encrypt the password when the password is defined or when the configuration is written - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 31
Enable the global encryption function: T1600G-52TS(config)# service password-encryption 2.3 enable password Description The enable here is unencrypted and the global encryption function is enabled in service password-encryption, the password in the configuration file will be displayed in the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 32
Example Set the super password as "admin" and unencrypted to access Privileged EXEC Mode from User EXEC Mode: T1600G-52TS(config)#enable password 0 admin 2.4 enable secret Description The enable secret command is used to set a secret password, which is using an MD5 encryption algorithm, for users to - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 33
Example Set the secret password as "admin" and unencrypted to access Privileged EXEC Mode from User EXEC Mode. The password will be displayed in the encrypted form. T1600G-52TS(config)#enable secret 0 admin 2.5 configure Description The configure command is used to access Global Configuration Mode - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 34
2.7 end Description The end command is used to return to Privileged EXEC Mode. Syntax end Command Mode Privileged EXEC Mode and Any Configuration Mode Example Return to Privileged EXEC Mode from Interface Configuration Mode: T1600G-52TS(config-if)#end T1600G-52TS# 2.8 history Description The history - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 35
Syntax history clear Command Mode Privileged EXEC Mode and any Configuration Mode Example Clear the commands you have entered in the current mode: T1600G-52TS(config)#history clear 20 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 36
Chapter 3 IEEE 802.1Q VLAN Commands VLAN (Virtual Local Area Network) technology is developed for the switch to divide the LAN into multiple logical LANs flexibly. Hosts in the same VLAN can communicate with each other, regardless of their physical locations. VLAN can enhance performance by - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 37
Parameter vlan-id -- Specify IEEE 802.1Q VLAN ID, ranging from 1 to 4094. Command Mode Global Configuration Mode Example Create VLAN Interface 2: T1600G-52TS(config)# interface vlan 2 3.3 name Description The name command is used to assign a description to a VLAN. To clear the description, please - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 38
Parameter vlan-list -- Specify IEEE 802.1Q VLAN ID list, ranging from 2 to 4094, in the format of 2-3, 5. It is multi-optional. tagged | untagged -- Egress rule,untagged or tagged. Tagged: All packets forwarded by the port are tagged. The packets contain VLAN information. Untagged: Packets forwarded - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 39
3.6 show vlan summary Description The show vlan summary command is used to display the summarized information of IEEE 802.1Q VLAN. Syntax show vlan summary Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the summarized information of IEEE 802.1Q VLAN: T1600G-52TS(config - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 40
Parameter vlan-id -- Specify IEEE 802.1Q VLAN ID, ranging from 1 to 4094. It is multi-optional. Using the show vlan command without parameter displays the detailed information of all VLANs. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the information of vlan 5: T1600G - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 41
Chapter 4 MAC-based VLAN Commands MAC VLAN (Virtual Local Area Network) is the way to classify the VLANs based on MAC Address. A MAC address is relative to a single VLAN ID. The untagged packets and the priority-tagged packets coming from the MAC address will be tagged with this VLAN ID. 4.1 mac- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 42
effect. To disable the MAC-based VLAN function, please use no mac-vlan command. All the ports are disabled by default. Syntax mac-vlan no mac-vlan Command Mode Interface Configuration Mode (interface fastEthernet / interface range fastEthernet / interface gigabitEthernet / interface range - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 43
4.4 show mac-vlan interface Description The show mac-vlan interface command is used to display the port state of MAC-based VLAN. Syntax show mac-vlan interface Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the enable state of all the ports: T1600G-52TS(config)#show mac - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 44
Chapter 5 Protocol VLAN Commands Protocol-based VLAN (Virtual Local Area Network) is the way to classify VLANs based on Protocols. A Protocol corresponds to a VLAN ID. The untagged packets and the priority-tagged packets matching the protocol template will be tagged with this VLAN ID. 5.1 protocol- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 45
T1600G-52TS(config)#protocol-vlan template name TP frame ether_2 ether-type 2024 5.2 protocol-vlan vlan Description The protocol-vlan vlan command is used to create a Protocol-based VLAN. To delete a Protocol-based VLAN, please use no protocol-vlan command. Syntax protocol-vlan vlan vlan-id { - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 46
Command Mode Interface Configuration Mode (interface fastEthernet / interface range fastEthernet / interface gigabitEthernet / interface range gigabitEthernet/ interface ten-gigabitEthernet / interface range ten-gigabitEthernet) Parameter index -- Specify the protocol group ID. Example Add Gigabit - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 47
Example Display information of the Protocol-based VLAN entry: T1600G-52TS(config)# show protocol-vlan vlan 32 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 48
Chapter 6 Voice VLAN Commands Voice VLANs are configured specially for voice data stream. By configuring Voice VLANs and adding the ports with voice devices attached to voice VLANs, you can perform QoS-related configuration for voice data, ensuring the transmission priority of voice data stream and - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 49
Parameter time -- Aging time (in minutes) to be set for the Voice VLAN. It ranges from 1 to 43200 minutes and the default value is 1440 minutes. Command Mode Global Configuration Mode Example Set the aging time for the Voice VLAN as 1 minute: T1600G-52TS(config)# voice vlan aging 1 6.3 voice vlan - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 50
is used to configure the Voice VLAN mode for the Ethernet port. Syntax switchport voice vlan mode { manual | auto } Parameter manual | auto -- Port mode. Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet / interface port-channel / interface - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 51
Example Configure the port 1/0/3 to operate in the auto voice VLAN mode: T1600G-52TS(config)# interface gigabitEthernet 1/0/3 T1600G-52TS(config-if)# switchport voice vlan mode auto 6.6 switchport voice vlan security Description The switchport voice vlan security command is used to enable the Voice - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 52
Example Display the configuration information of Voice VLAN globally: T1600G-52TS(config)# show voice vlan 6.8 show voice vlan oui Description The show voice vlan oui command is used to display the configuration information of Voice VLAN OUI. Syntax show voice vlan oui Command Mode Privileged EXEC - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 53
Display the Voice VLAN configuration information of port 1/0/2: T1600G-52TS(config)# show voice vlan switchport gigabitEthernet 1/0/2 38 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 54
Chapter 7 Etherchannel Commands Etherchannel Commands are used to configure LAG and LACP function. LAG (Link Aggregation Group) is to combine a number of ports together to make a single high-bandwidth data path, which can highly extend the bandwidth. The bandwidth of the LAG is the sum of bandwidth - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 55
7.2 port-channel load-balance Description The port-channel load-balance command is used to configure the Aggregate Arithmetic for LAG. To return to the default configurations, please use no port-channel load-balance command. Syntax port-channel load-balance { src-mac | dst-mac | src-dst-mac | src-ip - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 56
7.3 lacp system-priority Description The lacp system-priority command is used to configure the LACP system priority globally. To return to the default configurations, please use no lacp system-priority command. Syntax lacp system-priority pri no lacp system-priority Parameter pri -- The system - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 57
Example Configure the LACP port priority as 1024 for ports 1-3: T1600G-52TS(config)# interface range gigabitEthernet 1/0/1-3 T1600G-52TS(config-if-range)# lacp port-priority 1024 Configure the LACP port priority as 2048 for port 4: T1600G-52TS(config)# interface gigabitEthernet 1/0/4 T1600G-52TS( - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 58
Syntax show etherchannel load-balance Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Aggregate Arithmetic of LAG: T1600G-52TS(config)# show etherchannel load-balance 7.7 show lacp Description The show lacp command is used to display the LACP information for a - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 59
Syntax show lacp sys-id Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the LACP system priority: T1600G-52TS(config)# show lacp sys-id 44 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 60
Chapter 8 User Management Commands User Manage Commands are used to manage the user's logging information by Web, Telnet or SSH, so as to protect the settings of the switch from being randomly changed. 8.1 user name (password) Description The user name command is used to add a new user or modify the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 61
Mode Global Configuration Mode User Guidelines If the password you configured here is unencrypted and the global encryption function is enabled in service password-encryption, the password in the configuration file will be displayed in the symmetric encrypted form. Example Add and enable a new admin - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 62
5 -- Indicates an MD5 encrypted password with fixed length will follow. encrypted-password -- An MD5 encrypted password with fixed length, which you can copy from another switch's configuration file. Command Mode Global Configuration Mode User Guidelines If both the user name (password) and user - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 63
Example Enable the access-control of the user whose IP address is 192.168.0.148: T1600G-52TS(config)# user access-control ip-based 192.168.0.148 255.255.255.255 8.4 user access-control mac-based Description The user access-control mac-based command is used to limit the MAC address of the users' - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 64
login. To cancel the user access limit, please use no user access-control command. Syntax user access-control port-based interface { gigabitEthernet port | range gigabitEthernet port-list } [ snmp ] [ telnet ] [ ssh ] [ http ] [ https ] [ ping ] [ all ] no user access-control Parameter port -- The - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 65
T1600G-52TS(config)# telnet disable 8.7 show user account-list Description The show user account-list command is used to display the information of the current users. Syntax show user account-list Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the information of the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 66
8.9 show telnet-status Description The show telnet-status command is used to display the configuration information of the Telnet function. Syntax show telnet-status Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display whether the Telnet function is enabled: T1600G-52TS(config - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 67
Chapter 9 HTTP and HTTPS Commands With the help of HTTP (HyperText Transfer Protocol) or HTTPS (Hyper Text Transfer Protocol over Secure Socket Layer), you can manage the switch through a standard browser. HTTP is the protocol to exchange or transfer hypertext. SSL (Secure Sockets Layer), a security - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 68
Syntax ip http max-users admin-num guest-num no ip http max-users Parameter admin-num -- The maximum number of the users logging on to the HTTP server as Admin, ranging from 1 to 16. The total number of Admin and Guest should be less than 16. guest-num -- The maximum number of the users logging on - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 69
the SSL protocol version. To restore to the default SSL version, please use no ip http secure-protocol command. By default, the switch supports SSLv3 and TLSv1. Syntax ip http secure-protocol { [ ssl3 ] [ tls1 ] } no ip http secure-protocol Parameter ssl3 -- The SSL 3.0 protocol. tls1 -- The TLS - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 70
-protocol ssl3 9.6 ip http secure-ciphersuite Description The ip http secure-ciphersuite command is used to configure the cipherSuites over the SSL connection supported by the switch. To restore to the default ciphersuite types, please use no ip http secure-ciphersuite command. Syntax ip http secure - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 71
Syntax ip http secure-max-users admin-num guest-num no ip http secure-max-users Parameter admin-num -- The maximum number of the users logging on to the HTTPS server as Admin, ranging from 1 to 16. The total number of Admin and Guest should be no more than 16. guest-num -- The maximum number of the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 72
1 to 25 characters. The Certificate must be BASE64 encoded. ip-addr -- The IP address of the TFTP server. Both IPv4 and IPv6 addresses are supported, for example 192.168.0.1 or fe80::1234. Command Mode Global Configuration Mode Example Download an SSL Certificate named ssl-cert from TFTP server with - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 73
from 1 to 25 characters. The Key must be BASE64 encoded. ip-addr -- The IP address of the TFTP server. Both IPv4 and IPv6 addresses are supported, for example 192.168.0.1 or fe80::1234. Command Mode Global Configuration Mode Example Download an SSL key named ssl-key from TFTP server with the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 74
Syntax show ip http configuration Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration information of the HTTP server: T1600G-52TS(config)# show ip http configuration 9.12 show ip http secure-server Description The show ip http secure-server command is used - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 75
source binding Description The ip source binding command is used to bind the IP address, MAC address, VLAN ID and the Port number together manually. You can manually bind the IP address, MAC address, VLAN ID and the Port number together in the condition that you have got the related information of - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 76
Example Bind an ACL entry with the IP 192.168.0.1, MAC 00:00:00:00:00:01, VLAN ID 2 and the Port number 5 manually. And then enable the entry for the ARP detection: T1600G-52TS(config)#ip source binding host1 192.168.0.1 00:00:00:00:00:01 vlan 2 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 77
Syntax ip dhcp snooping vlan vlan-range no ip dhcp snooping vlan vlan-range Parameter vlan-range -- Specify the VLANs to enable the DHCP snooping function, in the format of 1-3, 5. Command Mode Global Configuration Mode Example Enable the DHCP Snooping function on VLAN 1,4,6-7: T1600G-52TS(config)# - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 78
restore to the default option, please use no ip dhcp snooping information strategy command. Syntax ip dhcp snooping information strategy strategy no ip dhcp snooping information strategy Parameter strategy -- The operations for Option 82 field of the DHCP request packets from the Host, including - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 79
Command Mode Global Configuration Mode Example Configure the customized sub-option Remote ID for the Option 82 as tplink: T1600G-52TS(config)#ip dhcp snooping information remote-id tplink 10.7 ip dhcp snooping information circuit-id Description The ip dhcp snooping information circuit-id command is - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 80
servers. To turn the port back to a distrusted port, please use no ip dhcp snooping trust command. Syntax ip dhcp snooping trust no ip dhcp snooping trust Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet / interface port-channel / interface range - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 81
10.10 ip dhcp snooping limit rate Description The ip dhcp snooping limit rate command is used to enable the Flow Control feature for the DHCP packets. The excessive DHCP packets will be discarded. To restore to the default configuration, please use no ip dhcp snooping limit rate command. Syntax ip - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 82
Parameter value -- Specify the rate limit of DHCP Decline packets, and the optional values are 0, 5, 10, 15, 20, 25 and 30 (units:packet/second). It default value is 0, which stands for "disable". Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 83
Syntax show ip dhcp snooping Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the running status of DHCP Snooping: T1600G-52TS#show ip dhcp snooping 10.14 show ip dhcp snooping interface Description The show ip dhcp snooping interface command is used to display the DHCP - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 84
Chapter 11 ARP Inspection Commands ARP (Address Resolution Protocol) Detect function is to protect the switch from the ARP cheating, such as the Network Gateway Spoofing and Man-In-The-Middle Attack, etc. 11.1 ip arp inspection(global) Description The ip arp inspection command is used to enable the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 85
Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet) Example Configure the Gigabit Ethernet ports 1/0/2-5 as the Trusted Port: T1600G-52TS(config)#interface range gigabitEthernet 1/0/2-5 T1600G-52TS(config-if-range)#ip arp inspection trust 11.3 ip - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 86
11.4 ip arp inspection limit-rate Description The ip arp inspection limit-rate command is used to configure the ARP speed of a specified port. To restore to the default speed, please use no ip arp inspection limit-rate command. Syntax ip arp inspection limit-rate value no ip arp inspection limit- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 87
Example Restore Gigabit Ethernet port 1/0/5 to the ARP transmit status: T1600G-52TS(config)#interface gigabitEthernet 1/0/5 T1600G-52TS(config-if)#ip arp inspection recover 11.6 show ip arp inspection Description The show ip arp inspection command is used to display the ARP detection global - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 88
Example Display the configuration of Gigabit Ethernet port 1/0/1: T1600G-52TS(config)#show ip arp inspection interface gigabitEthernet 1/0/1 Display the configuration of all Ethernet ports: T1600G-52TS(config)#show ip arp inspection interface 11.8 show ip arp inspection statistics Description The - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 89
) Attack is to occupy the network bandwidth maliciously by the network attackers or the evil programs sending a lot of service requests to the Host. With the DoS Defend enabled, the switch can analyze the specific field of the received packets and provide the defend measures - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 90
Parameter land -- Land attack. scan-synfin -- Scan SYNFIN attack. xma-scan -- Xma Scan attack. null-scan -- NULL Scan attack. port-less-1024 --The SYN packets whose Source Port less than 1024. blat -- Blat attack. ping-flood -- Ping flooding attack. With the ping flood attack enabled, the switch - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 91
Chapter 13 System Log Commands The log information will record the settings and operation of the switch respectively for you to monitor operation status and diagnose malfunction. 13.1 logging buffer Description The logging buffer command is used to store the system log messages to an internal buffer - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 92
Parameter level -- Severity level of the log information output to each channel. There are 8 severity levels marked with values 0-7. The smaller value has the higher priority. Only the log with the same or smaller severity level value will be output. By default, it is 6 indicating that the log - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 93
13.4 logging file flash frequency Description The logging file flash frequency command is used to specify the frequency to synchronize the system log file in the log buffer to the flash. To resume the default synchronizing frequency, please use the no logging file flash frequency command. Syntax - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 94
log host. Syntax logging host index idx host-ip level no logging host index idx Parameter idx -- The index of the log host. The switch supports 4 log hosts at most. host-ip -- The IP for the log host. level -- The severity level of the log information sent to each log host - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 95
Example Enable log host 2 and set its IP address as 192.168.0.148, the level 5: T1600G-52TS(config)# logging host index 2 192.168.0.148 5 13.7 logging monitor Description The logging monitor command is used to display the system logs on the terminal devices. To disable logging to the terminal, - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 96
output to the terminal devices. By default, it is 5 indicating that all the log information between level 0-5 will be output to the terminal devices. Command Mode Global Configuration Mode Example Set the severity level as 7: T1600G-52TS(config)# logging monitor level 7 13.9 clear logging - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 97
Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of the Local Log: T1600G-52TS(config)# show logging local-config 13.11 show logging loghost Description The show logging loghost command is used to display the configuration of the log host. Syntax show - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 98
Parameter level -- Severity level. There are 8 severity levels marked with values 0-7. The information of levels with priority not lower than the select level will display. Display all the log information in the log buffer by default. Command Mode Privileged EXEC Mode and Any Configuration Mode - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 99
Chapter 14 SSH Commands SSH (Security Shell) can provide the unsecured remote management with security and powerful authentication to ensure the security of the management information. 14.1 ip ssh server Description The ip ssh server command is used to enable SSH function. To disable the SSH - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 100
Example Enable SSH v2: T1600G-52TS(config)# ip ssh version v2 14.3 ip ssh algorithm Description The ip ssh algorithm command is used to configure the algorithm in SSH function. To disable the specified algorithm, please use no ip ssh algorithm command. Syntax ip ssh algorithm { AES128-CBC | AES192- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 101
Command Mode Global Configuration Mode Example Specify the idle-timeout time of SSH as 30 seconds: T1600G-52TS(config)# ip ssh timeout 30 14.5 ip ssh max-client Description The ip ssh max-client command is used to specify the maximum number of the connections to the SSH server. To return to the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 102
must be in the range of 512 to 3072 bits. ip-addr -- The IP address of the TFTP server. Both IPv4 and IPv6 addresses are supported, for example 192.168.0.1 or fe80::1234. Command Mode Global Configuration Mode Example Download an SSH-1 type key file named ssh-key from TFTP server - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 103
14.8 show ip ssh Description The show ip ssh command is used to display the global configuration of SSH. Syntax show ip ssh Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the global configuration of SSH: T1600G-52TS(config)# show ip ssh 88 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 104
Chapter 15 IEEE 802.1X Commands IEEE 802.1X function is to provide an access control for LAN ports via the authentication. Only the supplicant passing the authentication can access the LAN. 15.1 dot1x system-auth-control Description The dot1x system-auth-control command is used to enable the IEEE - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 105
Example Disable the 802.1X handshake function: T1600G-52TS(config)# no dot1x handshake 15.3 dot1x auth-method Description The dot1x auth-method command is used to configure the Authentication Method of IEEE 802.1X and the default 802.1x authentication method is "eap". To restore to the default 802. - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 106
15.4 dot1x guest-vlan(global) Description The dot1x guest-vlan command is used to enable the Guest VLAN function globally. To disable the Guest VLAN function, please use no dot1x guest-vlan command. Syntax dot1x guest-vlan vid no dot1x guest-vlan Parameter vid -- The VLAN ID needed to enable the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 107
Command Mode Global Configuration Mode Example Enable the quiet-period function: T1600G-52TS(config)#dot1x quiet-period Enable the quiet-period function and set the quiet-period as 5 seconds: T1600G-52TS(config)#dot1x quiet-period 5 15.6 dot1x timeout Description The dot1x timeout command is used to - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 108
15.7 dot1x max-reauth-req Description The dot1x max-reauth-req command is used to configure the maximum transfer times of the repeated authentication request when the server cannot be connected. To restore to the default value, please use no dot1x max-reauth-req command. Syntax dot1x max-reauth-req - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 109
Example Enable the IEEE 802.1X function for the Gigabit Ethernet port 1/0/1: T1600G-52TS(config)#interface gigabitEthernet 1/0/1 T1600G-52TS(config-if)#dot1x 15.9 dot1x guest-vlan(interface) Description The dot1x guest-vlan command is used to enable the guest VLAN function for a specified port. To - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 110
Parameter auto | authorized-force | unauthorized-force -- The Control Mode for the port. auto: In this mode, the port will normally work only after passing the 802.1X Authentication. authorized-force: In this mode, the port can work normally without passing the 802.1X Authentication. unauthorized- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 111
Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet) Example Configure the Control Type for Gigabit Ethernet port 1/0/20 as "port-based": T1600G-52TS(config)#interface gigabitEthernet 1/0/20 T1600G-52TS(config-if)#dot1x port-method port-based 15.12 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 112
which you can copy from another switch's configuration file. The password or encrypted-password you configured here will be displayed in the encrypted form. acct-key { [ 0 ] password | 7 encrypted-password } -- 0 and 7 are the encryption type. 0 indicates that an unencrypted password will follow. 7 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 113
15.14 show dot1x global Description The show dot1x global command is used to display the global configuration of 802.1X. Syntax show dot1x global Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of 802.1X globally: T1600G-52TS(config)#show dot1x global - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 114
15.16 show radius accounting Description The show radius accounting command is used to display the configuration of the accounting server. Syntax show radius accounting Command Mode Privileged EXEC Mode and Any Configuration Modes Example Display the configuration of the accounting server: T1600G- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 115
MAC address entry. To remove the corresponding entry, please use no mac address-table static command. The static address can be added or removed manually, independent of the aging time. In the stable networks, the static MAC address entries can facilitate the switch to reduce broadcast packets and - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 116
filtering command. The filtering address function is to forbid the undesired package to be forwarded. The filtering address can be added or removed manually, independent of the aging time. Syntax mac address-table filtering mac-addr vid vid no mac address-table filtering {[ mac-addr ] [ vid vid - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 117
time. When Static mode is selected, the learned MAC address will be out of the influence of the aging time and can only be deleted manually. The learned entries will be cleared after the switch is rebooted. When permanent mode is selected, the learned MAC address will be out of the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 118
influence of the aging time and can only be deleted manually too. However, the learned entries will be saved even the switch is rebooted. status -- Enable or disable the Port Security function for a specified port. By - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 119
16.6 show mac address-table aging-time Description The show mac address-table aging-time command is used to display the Aging Time of the MAC address. Syntax show mac address-table aging-time Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Aging Time of the MAC - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 120
16.8 show mac address-table interface Description The show mac address-table interface command is used to display the address configuration of the specified port/LAG. Syntax show mac address-table interface { gigabitEthernet port | port-channel lagid } Parameter port -- The Ethernet port number. - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 121
16.10 show mac address-table address Description The show mac address-table address command is used to display the information of the specified MAC address. Syntax show mac address-table address mac-addr [ interface { gigabitEthernet port | port-channel lagid } | vid vlan-id ] Parameter mac-addr -- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 122
, upgrade the switch system and other operations. 17.1 system-time manual Description The system-time manual command is used to configure the system time manually. Syntax system-time manual time Parameter time -- Set the date and time manually, MM/DD/YYYY-HH:MM:SS Command Mode Global Configuration - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 123
UTC-08:00 -- TimeZone for Pacific Time(US Canada). UTC-07:00 -- TimeZone for Mountain Time(US Canada). UTC-06:00 -- TimeZone for Central Time(US Canada). UTC-05:00 -- TimeZone for Eastern Time(US Canada). UTC-04:30 -- TimeZone for Caracas. UTC-04:00 -- TimeZone for Atlantic Time(Canada). UTC- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 124
Example Configure the system time mode as NTP, the time zone is UTC-12:00, the primary NTP server is 133.100.9.2 and the secondary NTP server is 139.78.100.163, the fetching-rate is 11 hours: T1600G-52TS(config)# system-time ntp UTC-12:00 133.100.9.2 139.79.100.163 11 17.3 system-time dst predefined - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 125
17.4 system-time dst date Description The system-time dst date command is used to configure the one-off daylight saving time. The start date is in the current year by default. The time range of the daylight saving time must shorter than one year, but you can configure it spanning years. To disable - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 126
T1600G-52TS(config)# system-time dst date Apr 1 00:00 2015 Oct 1 00:00 2015 30 17.5 system-time dst recurring Description The system-time dst recurring command is used to configure the recurring daylight saving time. It can be configured spanning years. To disable DST function, please use no system- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 127
Example Configure the daylight saving time from 2:00am, the first Sunday of May to 2:00am, the last Sunday of Oct and the offset is 45 minutes: T1600G-52TS(config)# system-time dst recurring first Sun May 02:00 last Sun Oct 02:00 45 17.6 hostname Description The hostname command is used to configure - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 128
ip address Description This ip address command is used to configure the IP address and IP subnet mask for the specified interface manually. The interface type includes: routed port, port-channel interface, loopback interface and VLAN interface. Syntax ip address { ip-addr } { mask } [ secondary ] no - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 129
Parameter ip-addr -- The IP address of the Layer 3 interface. mask -- The subnet mask of the Layer 3 interface. secondary -- Specify the interface's secondary IP address. If this parameter is omitted here, the configured IP address is the interface's primary address. Command Mode Interface - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 130
Example Enable the DHCP Client function on the Lay 3 routed port 1/0/1: T1600G-52TS(config)# interface gigabitEthernet 1/0/1 T1600G-52TS(config-if)# no switchport T1600G-52TS(config-if)# ip address-alloc dhcp Disable the IP address obtaining function on the VLAN interface 2: T1600G-52TS(config)# - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 131
startup-config tftp ip-address ip-addr filename name Parameter ip-addr -- IP Address of the TFTP server. Both IPv4 and IPv6 addresses are supported, for example 192.168.0.1 or fe80::1234. name -- Specify the name for the configuration file which would be backup. Command Mode Privileged EXEC Mode - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 132
tftp startup-config ip-address ip-addr filename name Parameter ip-addr -- IP Address of the TFTP server. Both IPv4 and IPv6 addresses are supported, for example 192.168.0.1 or fe80::1234. name -- Specify the name for the configuration file which would be downloaded. Command Mode Privileged EXEC Mode - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 133
Syntax boot application filename { image1 | image 2 } { startup | backup } no boot application Parameter image1 | image2 -- Specify the image file to be configured. By default, the image1.bin is the startup image and the image2.bin is the backup image. startup | backup -- Specify the property of the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 134
Syntax firmware upgrade ip-address ip-addr filename name Parameter ip-addr -- IP Address of the TFTP server. Both IPv4 and IPv6 addresses are supported, for example 192.168.0.1 or fe80::1234. name -- Specify the name for the firmware file. Command Mode Privileged EXEC Mode Example Upgrade the switch - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 135
. ip_addr -- The IP address of the destination node for ping test. If the parameter ip/ipv6 is not selected, both IPv4 and IPv6 addresses are supported, for example 192.168.0.100 or fe80::1234. -n count -- The amount of times to send test data during Ping testing. It ranges from 1 to 10 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 136
should be IPv6. ip_addr -- The IP address of the destination device. If the parameter ip/ipv6 is not selected, both IPv4 and IPv6 addresses are supported, for example 192.168.0.100 or fe80::1234. maxHops -- The maximum number of the route hops the test data can pass though. It ranges from - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 137
17.22 show image-info Description The show image-info command is used to display the information of image files in the system. Syntax show image-info Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the system image files' information: T1600G-52TS# show image-info 17.23 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 138
Syntax show running-config Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the system current operating configuration: T1600G-52TS# show running-config 17.25 show startup-config Description The show startup-config command is used to display the current configuration - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 139
diagnostics of the connected Ethernet Port., which facilitates you to check the connection status of the cable connected to the switch, locate and diagnose the trouble spot of the network. Syntax show cable-diagnostics interface gigabitEthernet port 124 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 140
Parameter port -- The number of the port which is selected for Cable test. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Show the cable-diagnostics of port 3: T1600G-52TS# show cable-diagnostics interface gigabitEthernet 1/0/3 17.30 show cpu-utilization Description The show - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 141
Example Display the memory utilization information of the switch: T1600G-52TS# show memory-utilization 126 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 142
automatic configuration of the ipv6 link-local address. The switch has only one ipv6 link-local address, which can be configured automatically or manually. The general ipv6 link-local address has the prefix as fe80::/10. IPv6 routers cannot forward packets that have link-local source or destination - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 143
address autoconfig 18.3 ipv6 address link-local Description The ipv6 address link-local command is used to configure the ipv6 link-local address manually on a specified interface. To delete the configured link-local address, please use no ipv6 address link-local command. Syntax ipv6 address ipv6 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 144
disable the DHCPv6 Client function, please use no ipv6 address dhcp command. Syntax ipv6 address dhcp no ipv6 address dhcp Configuration Mode Interface Configuration Mode Example Enable the DHCP Client function on VLAN interface 1: T1600G-52TS(config)# interface vlan 1 T1600G-52TS(config-if)# ipv6 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 145
-52TS(config)# interface vlan 1 T1600G-52TS(config-if)# ipv6 address 3ffe::/64 eui-64 18.7 ipv6 address Description This command is used to manually configure a global IPv6 address on the interface. To remove a global IPv6 address from the interface, please use no ipv6 address command. Syntax ipv6 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 146
Configuration Mode Interface Configuration Mode Example Configure the global address 3001::1/64 on VLAN interface 1: T1600G-52TS(config)# interface vlan 1 T1600G-52TS(config-if)# ipv6 address 3001::1/64 18.8 show ipv6 interface Description This command is used to display the configured ipv6 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 147
Chapter 19 Ethernet Configuration Commands Ethernet Configuration Commands can be used to configure the Bandwidth Control, Negotiation Mode and Storm Control for Ethernet ports. 19.1 interface gigabitEthernet Description The interface gigabitEthernet command is used to enter the Interface - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 148
User Guidelines Command in the Interface Range gigabitEthernet Mode is executed independently on all ports in the range. It does not affect the execution on the other ports at all if the command results in an error on one port. Example To enter the Interface range gigabitEthernet Configuration Mode, - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 149
Syntax shutdown no shutdown Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet / interface port-channel / interface range port-channel) Example Disable port 1/0/3: T1600G-52TS(config)# interface gigabitEthernet 1/0/3 T1600G-52TS(config-if)# - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 150
Syntax duplex { auto | full | half } no duplex Parameter auto | full | half -- The duplex mode of the Ethernet port. There are three options: auto-negotiation mode, full-duplex mode and half-duplex mode. By default the Gigabit Ethernet port is auto-negotiation mode. Command Mode Interface - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 151
19.8 speed Description The speed command is used to configure the Speed Mode for an Ethernet port. To return to the default configuration, please use no speed command. Syntax speed { 10 | 100 | 1000 | auto } no speed Parameter 10 | 100 | 1000 | auto -- The speed mode of the Ethernet port. There are - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 152
Example Set the storm control mode as pps on port 1/0/5: T1600G-52TS(config)# interface gigabitEthernet 1/0/5 T1600G-52TS(config-if)# storm-control pps 19.10 storm-control Description The storm-control command is used to enable the broadcast, multicast, or unicast strom control function and to set - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 153
19.11 bandwidth Description The bandwidth command is used to configure the bandwidth limit for an Ethernet port. To disable the bandwidth limit, please use no bandwidth command. Syntax bandwidth {[ ingress ingress-rate ] [ egress egress-rate ]} no bandwidth { all | ingress | egress } Parameter - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 154
Command Mode Privileged EXEC Mode and Any Configuration Mode Example Clear the statistic information of all ports and LAGs: T1600G-52TS(config)# clear counters 19.13 show interface status Description The show interface status command is used to display the connection status of the Ethernet port/LAG. - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 155
Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the statistics information of all Ethernet ports and LAGs: T1600G-52TS(config)# show interface counters Display the statistics information of port 1/0/2: T1600G-52TS(config)# show interface counters gigabitEthernet 1/0/2 19 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 156
Syntax show storm-control interface [ gigabitEthernet port-list ] [ port-channel lagid-list ] Parameter port-list --The list of Ethernet ports. lagid-list -- The list of LAGs. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the storm-control information of port 4, 5, 6, - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 157
experience of a better quality. 20.1 qos Description The qos command is used to configure CoS (Class of Service) based on port. To return to the default configuration, please use no qos command. Syntax qos cos-id no qos Parameter cos-id -- The priority - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 158
Syntax qos dscp no qos dscp Command Mode Global Configuration Mode User Guidelines DSCP (DiffServ Code Point) is a new definition to IP ToS field given by IEEE. DSCP priorities are mapped to the corresponding 802.1p priorities. IP datagram will be classified into the egress queue based on the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 159
User Guidelines 1. By default, the mapping relation between tag/cos and the egress queue is: 0/CoS 0-TC1, 1/CoS 1-TC0, 2/CoS 2-TC2, 3/CoS 3-TC3, 4/CoS 4-TC4, 5/CoS 5-TC5, 6/CoS 6-TC6, 7/CoS 7-TC7. 2. Among the priority levels TC0-TC7, the bigger value, the higher p r i o r i t y. Example Map CoS 5 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 160
User Guidelines By default, the mapping relation between tag and the egress queue is: (0-7)-CoS 0, (8-15)-CoS 1, (16-23)-CoS 2, (24-31)-CoS 3, (32-39)-CoS 4, (40-47)-CoS 5, (48-55)-CoS 6, (56-63)-CoS 7. Example Map DSCP values 10-12 to CoS 2: T1600G-52TS(config)# qos queue dscp-map 10-12 2 20.5 qos - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 161
command. The weight values of TC0, TC1, TC2, TC3, TC4, TC5 and TC6 are 1, 2, 4, 8, 16, 32 and 64 respectively, while the value of TC7 is 0 and non-configurable. equ -- Equal-Mode. In this mode, all the queues occupy the bandwidth equally. The weight value ratio of all the queues is 1:1:1:1:1:1:1:1 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 162
values of TC0, TC1, TC2, TC3, TC4, TC5 and TC6 are 1, 2, 4, 8, 16, 32 and 64 respectively, while the value of TC7 is 0 and non-configurable. Command Mode Global Configuration Mode Example Specify the Schedule Mode as Weight Round Robin Mode, with the weight values of TC0, TC1, TC2 and TC3 as 4, 7, - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 163
20.8 show qos cos-map Description The show qos cos-map command is used to display the configuration of IEEE 802.1P Priority and the mapping relation between cos-id and tc-id. Syntax show qos cos-map Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 164
Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the schedule rule of the egress queues: T1600G-52TS# show qos queue mode 20.11 show qos status Description The show qos status command is used to display the status of IEEE 802.1P priority and DSCP priority. Syntax show qos - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 165
, the monitoring port is connected to data diagnose device, which is used to analyze the monitored packets for monitoring and troubleshooting the network. 21.1 monitor session destination interface Description The monitor session destination interface command is used to configure the monitoring - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 166
21.2 monitor session source interface Description The monitor session source interface command is used to configure the monitored port. To delete the corresponding monitored port, please use no monitor session source interface command. Syntax monitor session session_num source interface - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 167
T1600G-52TS(config)# monitor session 1 source interface gigabitEthernet 1/0/4-5,1/0/7 rx Delete port 4 in monitor session 1 and its configuration: T1600G-52TS(config)# no monitor session 1 source interface gigabitEthernet 1/0/4 rx 21.3 show monitor session Description The show monitor session - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 168
Chapter 22 Port Isolation Commands Port Isolation provides a method of restricting traffic flow to improve the network security by forbidding the port to forward packets to the ports that are not on its forwarding port list. 22.1 port isolation Description The port isolation command is used to - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 169
22.2 show port isolation interface Description The show port isolation interface command is used to display the forward port list of a port/LAG. Syntax show port isolation interface [ gigabitEthernet port | port-channel lagid ] Parameter port -- The number of Ethernet port you want to show its - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 170
Chapter 23 Loopback Detection Commands With loopback detection feature enabled, the switch can detect loops using loopback detection packets. When a loop is detected, the switch will display an alert or further block the corresponding port according to the configuration. 23.1 loopback-detection( - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 171
Example Specify the interval-time as 50 seconds: T1600G-52TS(config)# loopback-detection interval 50 23.3 loopback-detection recovery-time Description The loopback-detection recovery-time command is used to configure the time after which the blocked port would automatically recover to normal status. - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 172
by which the switch copes with the detected loops. Syntax loopback-detection config [ process-mode { alert | port-based }] [ recovery-mode { auto | manual }] Parameter process-mode -- The mode how the switch processes the detected loops. Alert: When a loop is detected, display an alert. Port based - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 173
23.6 loopback-detection recover Description The loopback-detection recover command is used to remove the block status of selected ports, recovering the blocked ports to normal status, Syntax loopback-detection recover Command Mode Interface Configuration Mode (interface gigabitEthernet / interface - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 174
Syntax show loopback-detection interface [ gigabitEthernet port ] Parameter port -- The Ethernet port number. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of loopback detection function and the status of all ports: T1600G-52TS# show loopback- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 175
Chapter 24 ACL Commands 24.1 access-list create Description The access-list create command is used to create standard-IP ACL and extend-IP ACL. Syntax access-list create access-list-num Parameter access-list-num -- ACL ID, ranging from 500 to 2499. The ID range of Standard-IP ACL ranges is 500-1499 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 176
Example Create a MAC ACL whose ID is 23: T1600G-52TS(config)# mac access-list 23 24.3 access-list standard Description The access-list standard command is used to add Standard-IP ACL rule. To delete the corresponding rule, please use no access-list standard command. Standard-IP ACLs analyze and - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 177
T1600G-52TS(config)# access-list standard 520 rule 10 permit sip 192.168.0.100 smask 255.255.255.0 24.4 access-list extended Description The access-list extended command is used to add Extended-IP ACL rule. To delete the corresponding rule, please use no access-list extended command. Syntax access- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 178
T1600G-52TS(config)# access-list extended 2220 rule 10 permit sip 192.168.0.100 smask 255.255.255.0 24.5 rule Description The rule command is used to configure MAC ACL rule. To delete the corresponding rule, please use no rule command. Syntax rule rule-id { deny | permit } [[ smac source-mac ] smask - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 179
24.6 access-list policy name Description The access-list policy name command is used to add Policy. To delete the corresponding Policy, please use no access-list policy name command. A Policy is used to control the data packets those match the corresponding ACL rules by configuring ACLs and actions - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 180
Example Add ACL whose ID is 120 to policy1 and create an action for them: T1600G-52TS(config)# access-list policy action policy1 120 24.8 access-list bind acl Description The access-list bind acl command is used to bind an ACL to the specified port. To cancel the bind relation, please use no access- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 181
Example Bind policy1 to port 1/0/2: T1600G-52TS(config)# interface gigabitEthernet 1/0/2 T1600G-52TS(config-if)# access-list bind policy1 24.10 access-list bind(vlan) Description The access-list bind command is used to bind a policy to a VLAN. To cancel the bind relation, please use no access-list - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 182
T1600G-52TS(config)# show access-list 20 24.12 show access-list policy Description The show access-list policy command is used to display the information of a specified policy. Syntax show access-list policy name Parameter name -- The Policy Name desired to show. Command Mode Privileged EXEC Mode - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 183
Chapter 25 PoE Commands Note: Only T1600G-28PS and T1600G-52PS support PoE function. PoE (Power over Ethernet) technology describes a system to transmit electrical power along with data to remote devices over standard twisted-pair cable in - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 184
the port in the profile can supply. There are six options: "power-limit", "auto", "class1", "class2", "class3" and "class4". "power-limit" indicates you can manually enter a value. It ranges from 1 to 300. The value is in the unit of 0.1 watt. For instance, if you want to configure the max power - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 185
the corresponding PoE time-range configuration, please use no power time-range command. The PoE time-range determines the power supply time of the switch. You can specify a PoE time-range for each PoE port individually. Syntax power time-range name no power time-range name Parameter name -- The PoE - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 186
index -- Specify the index of the absolute time-range to delete. If not specified, all absolute time-ranges will be deleted. Command Mode Power Time-range Configuration Mode Example Create an absolute mode time-range for the PoE of the switch and specify the date extending from 08:00 on May 5th, - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 187
index -- Specify the index of the periodic time-range to delete. If not specified, all periodic time-ranges will be deleted. Command Mode Power Time-range Configuration Mode Example Configure the Time-range named "tRange2" with two periodic time-ranges: one is from 08:00 to 18:00 during Monday to - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 188
power the port in the profile can supply. There are six options: "power-limit", "auto", "class1", "class2", "class3" and "class4". "power-limit" indicates you can manually enter a value. It ranges from 1 to 300. The value is in the unit of 0.1 watt. For instance, if you want to configure the max 173 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 189
power as 5w, you should enter 50. "auto" indicates the value is assigned automatically by the PoE switch. "class1" represents 4w. "class2" represents 7w. "class3" represents 15.4w. "class4" represents 30w. Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 190
25.10 power inline supply Description The power inline supply command is used to configure the PoE status of the corresponding port. Syntax power inline supply { enable | disable } Parameter enable | disable -- The PoE status of the port. By default, the PoE status is "enable". Command Mode - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 191
Example Bind the PoE profile named "IP Camera" to port 2: T1600G-52PS(config)# interface gigabitEthernet 1/0/2 T1600G-52PS(config-if)# power inline profile "IP Camera" 25.12 power inline time-range Description The power inline time-range command is used to bind a PoE time-range to the corresponding - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 192
Example Display the PoE information of the system: T1600G-52PS# show power inline 25.14 show power inline configuration interface Description The show power inline configuration interface command is used to display the PoE configuration of the certain port. Syntax show power inline configuration - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 193
25.16 show power profile Description The show power profile command is used to display the defined PoE profile. Syntax show power profile Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the defined PoE profile: T1600G-52PS# show power profile 25.17 show power holiday - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 194
Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of PoE time-range: T1600G-52PS# show power time-range 179 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 195
Chapter 26 MSTP Commands MSTP (Multiple Spanning Tree Protocol), compatible with both STP and RSTP and subject to IEEE 802.1s, can disbranch a ring network. STP is to block redundant links and backup links as well as optimize paths. 26.1 debug spanning-tree Description The debug spanning-tree - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 196
Example Display all the spanning-tree debug messages: T1600G-52TS# debug spanning-tree all 26.2 spanning-tree(global) Description The spanning-tree command is used to enable STP function globally. To disable the STP function, please use no spanning-tree command. Syntax spanning-tree no spanning-tree - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 197
26.4 spanning-tree common-config Description The spanning-tree common-config command is used to configure the parameters of the ports for comparison in the CIST and the common parameters of all instances. To return to the default configuration, please use no spanning-tree common-config command. CIST - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 198
Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet / interface port-channel / interface range port-channel) Example Enable the STP function of port 1, and configure the Port Priority as 64, ExtPath Cost as 100, IntPath Cost as 100, and then enable - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 199
default configuration of the corresponding Instance, please use no spanning-tree mst configuration command. Syntax spanning-tree mst configuration no spanning-tree mst configuration Command Mode Global Configuration Mode Example Enter into the MST configuration mode: T1600G-52TS(config)# spanning- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 200
Remove VLANs 1-50 in mapping VLANs 1-100 for Instance 1: T1600G-52TS(config)# spanning-tree mst configuration T1600G-52TS(config-mst)# no instance 1 vlan 1-50 26.8 name Description The name command is used to configure the region name of MST instance. Syntax name name Parameters name -- The region - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 201
T1600G-52TS(config-mst)# revision 100 26.10 spanning-tree mst instance Description The spanning-tree mst instance command is used to configure the priority of MST instance. To return to the default value of MST instance priority, please use no spanning-tree mst instance command. Syntax spanning-tree - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 202
Parameter instance-id -- Instance ID, ranging from 1 to 8. pri -- Port Priority, which must be multiple of 16 ranging from 0 to 240. By default, it is 128. Port Priority is an important criterion on determining if the port will be chosen as the root port by the device connected to this port. cost -- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 203
26.13 spanning-tree tc-defend Description The spanning-tree tc-defend command is used to configure the TC Protect of Spanning Tree globally. To return to the default configuration, please use no spanning-tree tc-defend command. A switch removes MAC address entries upon receiving TC-BPDUs. If a - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 204
Parameter forward-time -- Forward Delay, which is the time for the port to transit its state after the network topology is changed. Forward Delay ranges from 4 to 30 in seconds and it is 15 by default. Otherwise, 2 * (Forward Delay - 1) >= Max Age. hello-time --Hello Time, which is the interval to - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 205
26.16 spanning-tree max-hops Description The spanning-tree max-hops command is used to configure the maximum number of hops that occur in a specific region before the BPDU is discarded. To return to the default configurations, please use no spanning-tree max-hops command. Syntax spanning-tree max- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 206
T1600G-52TS(config-if)# spanning-tree bpdufilter 26.18 spanning-tree bpduguard Description The spanning-tree bpduguard command is used to enable the BPDU protect function for a port. With the BPDU protect function enabled, the port will set itself automatically as ERROR-PORT when it receives BPDU - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 207
Example Enable the Loop Protect function for port 2: T1600G-52TS(config)# interface gigabitEthernet 1/0/2 T1600G-52TS(config-if)# spanning-tree guard loop 26.20 spanning-tree guard root Description The spanning-tree guard root command is used to enable the Root Protect function for a port. With the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 208
Syntax spanning-tree guard tc no spanning-tree guard tc Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet / interface port-channel / interface range port-channel) Example Enable the TC Protect of Spanning Tree for port 2: T1600G-52TS(config)# - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 209
Example Display the active information of spanning-tree: T1600G-52TS(config)# show spanning-tree active 26.24 show spanning-tree bridge Description The show spanning-tree bridge command is used to display the bridge parameters. Syntax show spanning-tree bridge [ forward-time | hello-time | hold- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 210
Display the spanning-tree information of port 1/0/2: T1600G-52TS(config)# show spanning-tree interface gigabitEthernet 1/0/2 Display the spanning-tree mode information of port 1/0/2: T1600G-52TS(config)# show spanning-tree interface gigabitEthernet 1/0/2 mode 26.26 show spanning-tree interface- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 211
Syntax show spanning-tree mst { configuration [ digest ] | instance instance-id [ interface [ gigabitEthernet port | port-channel lagid ] ] } Parameter instance-id -- Instance ID desired to show, ranging from 1 to 8. port -- The Ethernet port number. lagid -- The ID of the LAG. Command Mode - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 212
Chapter 27 IGMP Snooping Commands IGMP Snooping (Internet Group Management Protocol Snooping) is a multicast control mechanism running on Layer 2 switch. It can effectively prevent multicast groups being broadcasted in the network. 27.1 ip igmp snooping(global) Description The ip igmp snooping - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 213
Example Enable IGMP Snooping function of port 1/0/3: T1600G-52TS(config)# interface gigabitEthernet 1/0/3 T1600G-52TS(config-if)# ip igmp snooping 27.3 ip igmp snooping rtime Description The ip igmp snooping rtime command is used to specify router port aging time globally. To restore the default - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 214
Example Specify IGMP Snooping member port aging time as 100 seconds globally: T1600G-52TS(config)# ip igmp snooping mtime 100 27.5 ip igmp snooping report-suppression Description The ip igmp snooping report-suppression command is used enable the IGMP report suppression function. When it is enabled, - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 215
Example Enable the Fast Leave function for port 1/0/3: T1600G-52TS(config)# interface gigabitEthernet 1/0/3 T1600G-52TS(config-if)# ip igmp snooping immediate-leave 27.7 ip igmp snooping drop-unknown Description The ip igmp snooping drop-unknown command is used to process the unknown multicast as - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 216
Example Specify the interval of Specific Query Message to 3 seconds: T1600G-52TS(config)# ip igmp snooping last-listener query-inteval 3 27.9 ip igmp snooping last-listener query-count Description The ip igmp snooping last-listener query-count command is used to specify the numbers of Specific Query - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 217
no ip igmp snooping vlan-config vlan-id-list [ rtime router-time | mtime member-time | rport interface { gigabitEthernet port-list | port-channel lagid } ] no ip igmp snooping vlan-config vlan-id-list static ip interface { gigabitEthernet port-list | port-channel lagid } Parameter vlan-id-list -- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 218
27.11 ip igmp snooping multi-vlan-config Description The ip igmp snooping multi-vlan-config command is used to create Multicast VLAN. To delete the corresponding Multicast VLAN, please use no ip igmp snooping multi-vlan-config command. To restore the default values, please use no ip igmp snooping - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 219
T1600G-52TS(config)# ip igmp snooping multi-vlan-config 3 rport interface gigabitEthernet 1/0/3 27.12 ip igmp snooping querier vlan Description The ip igmp snooping querier vlan command is used to enable the IGMP Snooping Querier function of the VLAN(s). To disable the IGMP Snooping Querier function - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 220
interval -- The time interval to send a general query frame by IGMP Snooping Querier, ranging from 10 to 300 (Seconds). By default, it is 60 seconds. response-time -- The maximal time for the host to respond to a general query frame, ranging from 1 to 25 (Seconds). By default, it is 10 Seconds. ip- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 221
drop -- When the number of the dynamic multicast groups that a port joins has exceeded the max-group, the port will not join any new multicast group. replace -- When the number of the dynamic multicast groups that a port joins has exceeded the max-group, the newly joined multicast group will replace - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 222
27.16 deny Description The deny command is used to configure the filtering mode of profile as deny. Syntax deny Command Mode Profile Configuration Mode Example Configure the filtering mode of profile 1 as deny: T1600G-52TS(config)# ip igmp profile 1 T1600G-52TS(config-igmp-profile)#deny 27.17 permit - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 223
Syntax range start-ip end-ip no range start-ip end-ip Parameter start-ip -- The start filtering multicast IP address. end-ip -- The end filtering multicast IP address. Command Mode Profile Configuration Mode Example Configure one of the filter multicast address entry as range 225.1.1.1 to 226.3.2.1 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 224
27.20 clear ip igmp snooping statistics Description The clear ip igmp snooping statistics command is used to clear the statistics of the IGMP packets. Syntax clear ip igmp snooping statistics Command Mode Privileged EXEC Mode and Any Configuration Mode Example Clear the statistics of the IGMP - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 225
Parameter port -- The Ethernet port number. port-list -- The list of Ethernet ports. basic-config | max-groups | packet-stat -- The related configuration information selected to display. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the IGMP baisic configuration - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 226
27.24 show ip igmp snooping multi-vlan Description The show ip igmp snooping multi-vlan command is used to display the Multicast VLAN configuration. Syntax show ip igmp snooping multi-vlan Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Multicast VLAN configuration: - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 227
Example Display the information of all IGMP snooping groups: T1600G-52TS#show ip igmp snooping groups Display all the multicast entries in VLAN 5: T1600G-52TS(config)#show ip igmp snooping groups vlan 5 Display the count of multicast entries in VLAN 5: T1600G-52TS(config)#show ip igmp snooping - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 228
27.27 show ip igmp profile Description The show ip igmp profile command is used to display the configuration information of all the profiles or a specific profile. Syntax show ip igmp profile [ id ] Parameter id -- Specify the ID of the profile, ranging from 1 to 999. Command Mode Privileged EXEC - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 229
Chapter 28 MLD Snooping Commands MLD Snooping (Multicast Listener Discovery Snooping) is a multicast control mechanism running on Layer 2 switch. It can effectively prevent multicast groups being broadcasted in the IPv6 network. 28.1 ipv6 mld snooping(global) Description The ipv6 mld snooping - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 230
28.3 ipv6 mld snooping rtime Description The ipv6 mld snooping rtime command is used to specify router port aging time globally. To restore the default timer, please use no ipv6 mld snooping rtime command. Syntax ipv6 mld snooping rtime rtime no ipv6 mld snooping rtime Parameter rtime -- Specify the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 231
28.5 ipv6 mld snooping report-suppression Description The ipv6 mld snooping report-suppression command is used enable the MLD report suppression function. When it is enabled, the switch forwards only the first MLD report message per mulicast group to the Layer 3 device, and the subsequent MLD - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 232
28.7 ipv6 mld snooping drop-unknown Description The ipv6 mld snooping drop-unknown command is used to enable the unknown multicast packets filter function. To disable this function, please use no ipv6 mld snooping drop-unknown command. By default, it is disabled. Syntax ipv6 mld snooping drop- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 233
restore the default number, please use no ipv6 mld snooping last-listener query-count command. Syntax ipv6 mld snooping last-listener query-count num no ipv6 mld snooping last-listener query-count Parameter num -- Specify the numbers of Specific Query Message to be sent, ranging from 1 to 5. Command - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 234
router-time -- Router Port Time. Within this time, if the switch does not receive MLD query message from the router port, it will consider this port is not a router port any more. Router Port Time ranges from 60 to 600 in seconds. By default, it is 0 and the global router-time will be used. member- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 235
Syntax ipv6 mld snooping multi-vlan-config [ vlan-id ] [ rtime router-time | mtime member-time | rport interface { gigabitEthernet port-list | port-channel lagid } ] no ipv6 mld snooping multi-vlan-config [ rtime router-time | mtime member-time | rport interface { gigabitEthernet port-list | port- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 236
Syntax ipv6 mld snooping querier vlan vlan-id no ipv6 mld snooping querier vlan vlan-id Parameter vlan-id -- The VLAN that enables the MLD querier function, ranging from 1 to 4094. Command Mode Global Configuration Mode Example Enable MLD Querier function on VLAN 2: T1600G-52TS(config)# ipv6 mld - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 237
Example For VLAN 2, specify its query-interval as 200 seconds, and the response-time as 20 seconds: T1600G-52TS(config)#ipv6 mld snooping querier vlan 2 query-interval 200 T1600G-52TS(config)#ipv6 mld snooping querier vlan 2 max-response-time 20 28.14 ipv6 mld snooping max-groups Description The - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 238
Example Specify the maximum numbers of groups that ports 1/0/2-5 can join as 10, and configure the throttling action as replace: T1600G-52TS(config)#interface range gigabitEthernet 1/0/2-5 T1600G-52TS(config-if-range)#ipv6 mld snooping max-groups 10 T1600G-52TS(config-if-range)#ipv6 mld snooping max - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 239
Example Configure the filtering mode of profile 1 as deny: T1600G-52TS(config)# ipv6 mld profile 1 T1600G-52TS(config-mld-profile)#deny 28.17 permit Description The permit command is used to configure the filtering mode of profile as permit. Syntax permit Command Mode Profile Configuration Mode - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 240
Example Configure one of the filter multicast address entry as range ff80::1234 to ff80::1235 in profile 1: T1600G-52TS(config)# ipv6 mld profile 1 T1600G-52TS(config-mld-profile)#range ff80::1234 ff80::1235 28.19 ipv6 mld filter Description The ipv6 mld filter command is used to bind the specified - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 241
28.21 show ipv6 mld snooping Description The show ipv6 mld snooping command is used to display the global configuration of MLD Snooping. Syntax show ipv6 mld snooping Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the global configuration of MLD Snooping: T1600G-52TS( - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 242
T1600G-52TS# show ipv6 mld snooping interface gigabitEthernet 1/0/2 basic-config Display the MLD packet statistics of ports 1/0/1-4: T1600G-52TS# show ipv6 mld snooping interface gigabitEthernet 1/0/1-4 packet-stat 28.23 show ipv6 mld snooping vlan Description The show ipv6 mld snooping vlan command - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 243
28.25 show ipv6 mld snooping groups Description The show ipv6 mld snooping groups command is used to display multicast groups. Syntax show ipv6 mld snooping groups [ vlan { vlan-id } ] [ ipv6_multicast_addr | count | dynamic | dynamic count | static | static count ] Parameter vlan-id --The VLAN ID - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 244
T1600G-52TS(config)# show ipv6 mld snooping querier 28.27 show ipv6 mld profile Description The show ipv6 mld profile command is used to display the configuration information of all the profiles or a specific profile. Syntax show ipv6 mld profile [ id ] Parameter id -- Specify the ID of the profile, - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 245
Chapter 29 SNMP Commands SNMP (Simple Network Management Protocol) functions are used to manage the network devices for a smooth communication, which can facilitate the network administrators to monitor the network nodes and implement the proper operation. 29.1 snmp-server Description The snmp- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 246
mib-oid -- MIB Object ID. It is the Object Identifier (OID) for the entry of View, ranging from 1 to 61 characters. include | exclude -- View Type, with include and exclude options. They represent the view entry can/cannot be managed by the SNMP management station individually. Command Mode Global - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 247
By default, the Security Level is noAuthNoPriv. There is no need to configure this in SNMP v1 Mode and SNMP v2c Mode. read-view -- Select the View to be the Read View. The management access is restricted to read-only, and changes cannot be made to the assigned SNMP View. write-view -- Select the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 248
local | remote -- User Type, with local and remote options. Local indicates that the user is connected to a local SNMP engine, while remote means that the user is connected to a remote SNMP engine. group-name -- The Group Name of the User. The User is classified to the corresponding Group according - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 249
T1600G-52TS(config)# snmp-server user admin local group2 smode v3 slev authPriv cmode MD5 cpwd 11111 emode DES epwd 22222 29.5 snmp-server community Description The snmp-server community command is used to add Community. To delete the corresponding Community, please use no snmp-server community - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 250
retries ] [ timeout timeout ] no snmp-server host ip user-name Parameter ip -- The IP Address of the management Host. Both IPv4 and IPv6 addresses are supported, for example 192.168.0.100 or fe80::1234. udp-port -- UDP port, which is used to send notifications. The UDP port functions with the IP - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 251
station as admin, the Security Model of the management station as v2c, the type of the notifications as inform, the maximum time for the switch to wait as 1000 seconds, and the retries time as 100: T1600G-52TS(config)# snmp-server host 192.168.0.146 162 admin smode v2c type inform retries 100 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 252
Example Specify the local engineID as 1234567890, and the remote engineID as abcdef123456: T1600G-52TS(config)# snmp-server engineID local 1234567890 remote abcdef123456 29.8 snmp-server traps snmp Description The snmp-server traps snmp command is used to enable SNMP standard traps which include - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 253
29.9 snmp-server traps link-status Description The snmp-server traps link-status command is used to enable SNMP link status trap for the specified port. To disable the sending of SNMP link status trap, please use no snmp-server traps link-status command. Syntax snmp-server traps link-status no snmp- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 254
loopback-detection -- Enable loopback-detection trap. It is sent when the switch detects loopback or loopback is cleared. storm-control -- Enable storm-control trap. It is sent when the multicast or broadcast rate exceeds the predefined value. spanning-tree -- Enable spanning-tree trap. It is sent - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 255
Command Mode Global Configuration Mode Example Enable all SNMP extended MAC address-related traps for the switch: T1600G-52TS(config)# snmp-server traps mac Enable new MAC address trap only for the switch: T1600G-52TS(config)# snmp-server traps mac new 29.12 snmp-server traps vlan Description The - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 256
29.13 rmon history Description The rmon history command is used to configure the history sample entry. To return to the default configuration, please use no rmon history command. RMON (Remote Monitoring), basing on SNMP architecture, functions to monitor the network. History Group is one of the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 257
29.14 rmon event Description The rmon event command is used to configure the entries of SNMP-RMON Event. To return to the default configuration, please use no rmon event command. Event Group, as one of the commonly used RMON Groups, is used to define RMON events. Alarms occur when an event is - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 258
29.15 rmon alarm Description The rmon alarm command is used to configure SNMP-RMON Alarm Management. To return to the default configuration, please use no rmon alarm command. Alarm Group is one of the commonly used RMON Groups. RMON alarm management allows monitoring the specific alarm variables. - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 259
to configure the entries of SNMP-RMON statistics. To delete the corresponding entry, please use no rmon statistics command. The maximum supported entries are 1000. Syntax rmon statistics index interface gigabitEthernet port [ owner owner-name] [ status { underCreation | valid }] no rmon statistics - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 260
owner-name -- The creator of the event entry, ranging from 1 to 16 characters. By default, it is "monitor". status -- The status of the statistics entry, either "underCreation" or "valid". "underCreation" means this entry won't take effect until it is modified to "valid"; "valid" means this entry - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 261
Example Display the View table: T1600G-52TS# show snmp-server view 29.19 show snmp-server group Description The show snmp-server group command is used to display the Group table. Syntax show snmp-server group Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Group - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 262
Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Community table: T1600G-52TS# show snmp-server community 29.22 show snmp-server host Description The show snmp-server host command is used to display the Host table. Syntax show snmp-server host Command Mode Privileged - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 263
29.24 show rmon history Description The show rmon history command is used to display the configuration of the history sample entry. Syntax show rmon history [ index ] Parameter index -- The index number of the entry selected to display the configuration, ranging from 1 to 12, in the format of 1-3, - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 264
29.26 show rmon alarm Description The show rmon alarm command is used to display the configuration of the Alarm Management entry. Syntax show rmon alarm [ index ] Parameter index -- The index number of the entry selected to display the configuration, ranging from 1 to 12, in the format of 1-3, 5. - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 265
Chapter 30 LLDP Commands Note: Only T1600G-28PS and T1600G-52PS support LLDP function. LLDP function enables network devices to advertise their own device information periodically to neighbors on the same LAN. The information of the LLDP - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 266
Parameter multiplier -- Configure the Hold Multiplier parameter. It ranges from 2 to 10. By default, it is 4. Command Mode Global Configuration Mode Example Specify Hold Multiplier as 5: T1600G-52PS(config)# lldp hold-multiplier 5 30.3 lldp timer Description The lldp timer command is used to - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 267
be sent out (the number of LLDPDUs equals this parameter). The value ranges from 1 to 10 and the default value is 3. Command Mode Global Configuration Mode Example Specify the Transmit Interval of LLDPDU as 45 seconds and Trap message to NMS as 120 seconds: T1600G-52PS(config)# lldp timer tx- - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 268
Syntax lldp receive no lldp receive Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet) Example Enable port 1 to receive LLDPDU: T1600G-52PS(config)# interface gigabitEthernet 1/0/1 T1600G-52PS(config-if)# lldp receive 30.6 lldp transmit - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 269
no lldp snmp-trap Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet) Example Enable the SNMP notification for port 1: T1600G-52PS(config)# interface gigabitEthernet 1/0/1 T1600G-52PS(config-if)# lldp snmp-trap 30.8 lldp tlv-select Description The - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 270
-box post-office-box ] [ additional additional ] [ country-code country-code ] [ what { dhcp-server | endpoint | switch } ] } Parameter emergency-number -- Emergency Call Service ELIN identifier, which is used during emergency call setup to a traditional CAMA or ISDN trunk-based PSAP. The length of - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 271
Status will be changed to Tx&Rx. To disable the LLDP-MED feature for the corresponding port, please use no lldp med-status command. Syntax lldp med-status no lldp med-status Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet) Example Enable the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 272
30.12 show lldp Description The show lldp command is used to display the global configuration of LLDP and LLDP-MED fast start repeat count number. Syntax show lldp Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the global configuration of LLDP and LLDP-MED fast start - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 273
30.14 show lldp local-information interface Description The show lldp local-information interface command is used to display the LLDP and LLDP-MED local information of the corresponding port. By default, the information of all the ports will be displayed. Syntax show lldp local-information interface - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 274
30.16 show lldp traffic interface Description The show lldp traffic interface command is used to display the LLDP statistic information between the local device and neighbor device of the corresponding port. By default, the LLDP statistic information of all the ports will be displayed. Syntax show - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 275
contains two types of ARP entries: dynamic and static. An ARP dynamic entry is automatically created and maintained by ARP. A static ARP entry is manually configured and maintained. 31.1 arp Description This arp command is used to add a static ARP entry. To delete the specified ARP entry, please use - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 276
Command Mode Privileged EXEC Mode Example Clear all the dynamic ARP entries: T1600G-52TS(config)# clear arp-cache 31.3 arp timeout Description This arp timeout command is used to configure the ARP aging time of the interface. Syntax arp timeout timeout no arp timeout Parameter timeout -- Specify the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 277
Parameter ip -- Specify the IP address of your desired ARP entry. mac -- Specify the MAC address of your desired ARP entry. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the ARP entry with the IP as 192.168.0.2: T1600G-52TS(config)# show ip arp 192.168.0.2 31.5 show ip - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 278
Syntax show ip arp summary Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the number of the ARP entries: T1600G-52TS(config)# show ip arp summary 263 - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 279
Chapter 32 Static Routes Commands 32.1 interface vlan Description This interface vlan command is used to create the VLAN interface. To delete the specified VLAN interface, please use the no interface vlan command. Syntax interface vlan { vid } no interface vlan { vid } Parameter vid -- The ID of the - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 280
Example Create the loopback interface 1: T1600G-52TS(config)# interface loopback 1 32.3 switchport Description This switchport command is used to switch the Layer 3 interface into the Layer 2 port. To switch the Layer 2 port into the Layer 3 routed port, please use the no switchport command. Syntax - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 281
Example Shut down the routed port 1/0/9 : T1600G-52TS(config)# interface gigabitEthernet 1/0/9 T1600G-52TS(config-if)# no switchport T1600G-52TS(config-if)# shutdown 32.5 ip route Description This ip route command is configure the static route. To clear the corresponding entry, please use the no ip - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 282
Syntax description string no description Parameter string -- Content of an interface description, ranging from 1 to 32 characters. Command Mode Interface Configuration Mode Example Add a description system-if to the routed port 1/0/9 : T1600G-52TS(config)# interface gigabitEthernet 1/0/9 T1600G-52TS - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 283
Syntax show ip interface [ gigabitEthernet port | port-channel lagid | loopback id | vlan vlan-id ] Parameter port -- The port number. lagid -- The ID of the LAG. Member ports in this LAG should all be routed ports. id -- The loopback interface ID. vlan-id -- The VLAN interface ID. Command Mode - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 284
Syntax show ip route [ static | connected ] Parameter static | connected -- Specify the route type. If not specified, all types of route entries will be displayed. static: The static routes. connected: The connected routes. Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display - TP-Link T1600G-52PS TL-SG2452P | T1600G-28PSTL-SG2424P V1 CLI Reference Guide - Page 285
Display the routes to all the subnets that belongs to 192.168.0.0/16: T1600G-52TS(config)# show ip route specify 192.168.0.0 255.255.0.0 longer-prefixes 32.12 show ip route summary Description This show ip route summary command is used to display the summary information of the route entries
T1600G-28TS (TL-SG2424)
T1600G-52TS (TL-SG2452)
T1600G-28PS (TL-SG2424P)
T1600G-52PS (TL-SG2452P)
JetStream Gigabit Smart Switch
REV1.1.3
1910011526