EasyManua.ls Logo

Cisco SG350-28 User Manual

Cisco SG350-28
725 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Page #1 background imageLoading...
Page #1 background image
Cisco Sx350, SG350X, SG350XG, Sx550X & SG550XG
Series Managed Switches, Firmware Release 2.2.5.x
ADMINISTRATION
GUIDE

Table of Contents

Question and Answer IconNeed help?

Do you have a question about the Cisco SG350-28 and is the answer not in the manual?

Cisco SG350-28 Specifications

General IconGeneral
ModelSG350-28
CategorySwitch
Switching Capacity56 Gbps
LayerLayer 3
Power SupplyInternal
Form FactorRack-mountable
Relative Humidity10% to 90% non-condensing
MAC Address Table Size16K entries
Power Dedicated to PoENot applicable
Dimensions (W x D x H)440 x 257 x 44 mm
Operating Temperature0°C to 45°C
Storage Temperature-20°C to 70°C
Power Consumption24W
Input Voltage100-240V AC, 50/60Hz
Jumbo Frame SupportSupported
Weight3.2 kg

Summary

Getting Started

Starting the Web-based Configuration Utility

Navigating the web-based switch configuration utility.

Quick Start Device Configuration

Using wizards or links for initial device setup.

Configuration Wizards

Getting Started Wizard

Assists in the initial configuration of the device.

Status and Statistics

System Summary

Displays device status, hardware information, and firmware version.

Administration

System Settings

Configures system description, location, contact, host name, and banners.

User Accounts

Manages user accounts and privilege levels for device access.

File Management

Manages system files, firmware, and configuration files.

Administration: File Management

Firmware Operations

Updates or backs up firmware images and swaps active images.

Administration: Stack Management

Stack Management

Configures stack parameters, topology, and master unit.

Administration: Time Settings

System Time Configuration

Sets system time manually, from PC, or via SNTP server.

Port Management

Port Settings

Configures global and per-port settings like link flap prevention and jumbo frames.

Link Aggregation

Bundles physical ports to form a single logical channel (LAG) for bandwidth and redundancy.

PoE

Manages Power over Ethernet features and configuration.

VLAN Management

Regular VLANs

Describes GUI pages for configuring various types of VLANs.

Voice VLAN

Configures voice VLAN for IP phones and VoIP endpoints.

Spanning Tree

STP Status and Global Settings

Configures parameters for enabling STP, RSTP, or MSTP.

STP Interface Settings

Configures STP on a per-port basis and views learned information.

Managing MAC Address Tables

Static Addresses

Assigns static MAC addresses to specific physical interfaces and VLANs.

Multicast

IPv4 Multicast Configuration

Configures IGMP snooping, interface settings, VLAN settings, and proxy.

IPv6 Multicast Configuration

Configures MLD snooping, interface settings, VLAN settings, and proxy.

IP Configuration

IPv4 Management and Interfaces

Manages IPv4 addresses, interfaces, routes, lists, VRRP, ARP, and DHCP.

IPv6 Management and Interfaces

Manages IPv6 global parameters, interfaces, tunnels, addresses, and routing.

Policy-Based Routing

Routes selected packets to a next hop based on packet fields using ACLs.

Security

Configuring TACACS+

Establishes TACACS+ server for centralized security, authentication, and authorization.

RADIUS

Provides centralized 802.1X or MAC-based network access control using RADIUS servers.

Management Access Method

Defines access rules for various management methods like Telnet, SSH, HTTP.

Management Access Authentication

Assigns authentication and authorization methods for management access.

Secure Sensitive Data Management

Facilitates protection of sensitive data like passwords and keys using encryption.

SSH Server

Establishes an SSH session for secure remote access to the device.

Port Security

Limits access on a port to users with specific MAC addresses.

802.1X Authentication

Restricts unauthorized clients from connecting to the LAN.

IP Source Guard

Prevents traffic attacks caused by hosts using a neighbor's IP address.

ARP Inspection

Maps IP addresses to MAC addresses to prevent ARP cache poisoning.

Denial of Service Prevention

Resists Denial of Service (DoS) attacks by limiting traffic.

IP Configuration: RIPv2

Configuring RIP

Explains mandatory and optional actions for configuring RIP.

IP Configuration: VRRP

Configurable Elements of VRRP

Details virtual router identification, VRRP versions, and IP addresses.

Configuring VRRP

Explains how to configure virtual routers, VRRP advertisements, and statistics.

IP Configuration: SLA

Using SLA

Configures ICMP-Echo operations and SLA tracks for monitoring.

Quality of Service

General

Configures QoS modes (Basic, Advanced, Disabled) and trust settings.

QoS Basic Mode

Configures QoS based on CoS/802.1p or DSCP values for egress queues.

QoS Advanced Mode

Configures per-flow QoS using class maps, policers, and policies.

SNMP

Security: SSH Server

SSH User Authentication

Enables SSH user authentication by public key and/or password.

SSH Server Authentication

Authenticates the SSH server to ensure connection to the expected SSH driver.

Security: IPv6 First Hop Security

Router Advertisement Guard

Treats trapped RA messages, filtering and validating received RA messages.

Neighbor Discovery Inspection

Validates received Neighbor Discovery protocol messages and performs egress filtering.

DHCPv6 Guard

Treats trapped DHCPv6 messages, filtering and validating received messages.

Neighbor Binding Integrity

Establishes binding of neighbors by learning IPv6 addresses and storing them.

IPv6 Source Guard

Validates source IPv6 addresses of NDP and DHCPv6 messages.

Attack Protection

Describes attack protection provided by IPv6 First Hop Security features.

Access Control

MAC-Based ACLs Creation

Filters traffic based on Layer 2 fields.

IPv4-based ACL Creation

Creates ACLs to check IPv4 packets based on various fields.

IPv6-Based ACL Creation

Creates IPv6 ACLs to check pure IPv6-based traffic.

Smart Network Application (SNA)

Topology View

Displays graphical representation of the network, devices, and connections.

Device Authorization Control (DAC)

Configures a list of authorized client devices using MAC authentication.

Related product manuals