EasyManua.ls Logo

D-Link DGS-3620-28PC-SI User Manual

D-Link DGS-3620-28PC-SI
502 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Page #1 background imageLoading...
Page #1 background image

Table of Contents

Question and Answer IconNeed help?

Do you have a question about the D-Link DGS-3620-28PC-SI and is the answer not in the manual?

D-Link DGS-3620-28PC-SI Specifications

General IconGeneral
Device TypeSwitch
ModelDGS-3620-28PC-SI
Switching Capacity128 Gbps
MAC Address Table Size16K
PoE Budget370W
Power over Ethernet (PoE)Yes
Humidity5% to 95% non-condensing
Rack MountableYes
Power SupplyInternal
Primary Ports24 x 10/100/1000BASE-T
Uplink Ports4 x 10G SFP+ Ports
Jumbo Frame Support9K
LayerLayer 3
Dimensions (W x D x H)440 x 44 x 250 mm
Operating Temperature0 to 50°C
Storage Temperature-40 to 70°C
Power Consumption37W (without PoE)
Input Voltage100 to 240 VAC
Management TypeWeb, CLI, SNMP

Summary

Intended Readers

Safety Instructions

Provides essential safety guidelines for operating the system and protecting against potential damage.

Safety Cautions

Chapter 1 Web-based Switch Configuration

Login to the Web Manager

Steps to access the switch's web manager by entering its IP address in a browser.

Chapter 2 System Configuration

PoE

Details on Power over Ethernet support, including IEEE 802.3af/at and power delivery capabilities.

User Accounts Settings

Manages user privileges and controls access to switch configuration and management.

Stacking

Information about combining multiple switches into a stack for centralized management.

Chapter 3 Management

IP Interface

Manages IP interfaces, including static and dynamic IP address configuration.

System IP Address Settings

Configuration of the switch's IP address, subnet mask, and default gateway.

Single IP Management

Concept for stacking switches over Ethernet using a single IP address for simplified management.

Firmware Upgrade

Process for upgrading firmware on member switches from a Commander Switch.

Configuration File Backup/Restore

Used to upgrade, backup, and restore configuration files using a TFTP server.

SNMP Settings

Configuration for Simple Network Management Protocol (SNMP) for device management and monitoring.

Chapter 4 L2 Features

VLAN

Overview of Virtual Local Area Networks and their role in network segmentation and performance.

IEEE 802.1Q VLANs

Details tagged VLANs and their implementation across the network for segmentation.

Port-based VLANs

VLANs configured per port, limiting traffic flow and defining port access rights.

802.1Q VLAN Settings

Lists and configures existing VLANs by VLAN ID and VLAN Name.

Voice VLAN

Configuration for Voice VLANs to carry voice traffic from IP phones, prioritizing voice packets.

VLAN Trunk Settings

Configuration to enable VLANs on ports, allowing frames from unknown VLAN groups to pass.

QinQ

QinQ VLANs allow network providers to expand VLAN configurations for customer VLANs within larger VLANs.

QinQ Settings

Configuration of QinQ parameters, including state, TPID, and port roles.

Spanning Tree

Overview of Spanning Tree Protocols (STP, RSTP, MSTP) for loop prevention.

STP Bridge Global Settings

Configuration of global Spanning Tree Protocol bridge parameters.

STP Port Settings

Per-port configuration for Spanning Tree Protocol settings.

Link Aggregation

Combines multiple ports into a single high-bandwidth data pipeline.

Port Trunking Settings

Configuration of port trunk settings, including algorithm, type, and master port.

L2 Multicast Control

Controls multicast traffic at Layer 2, including IGMP and MLD proxy and snooping.

IGMP Proxy

Manages IGMP proxy state and upstream interface for multicast traffic forwarding.

IGMP Snooping

Recognizes IGMP queries and reports to manage multicast traffic efficiently.

IGMP Snooping Settings

Enables IGMP Snooping and allows fine-tuning of settings for each VLAN.

MLD Proxy

Configures MLD proxy state and upstream interface for IPv6 multicast traffic.

MLD Snooping

IPv6 function similar to IGMP snooping for IPv4, discovering ports requesting multicast data.

MLD Snooping Settings

Configuration of MLD snooping settings.

Multicast VLAN

Manages traffic flow by limiting multicast traffic to specific VLANs.

Multicast Filtering

Filters multicast traffic based on various criteria.

IPv4 Multicast Filtering

Configuration for filtering IPv4 multicast traffic.

IPv6 Multicast Filtering

Configuration for filtering IPv6 multicast traffic.

ERPS Settings

Configuration for Ethernet Ring Protection Switching (ERPS) for ring topology protection.

LLDP

Overview of Link Layer Discovery Protocol for network device discovery.

LLDP-MED

Configuration for LLDP-MED features, including log state and system information.

PTP

Precision Time Protocol (PTP) for synchronizing distributed clocks over Ethernet networks.

Chapter 5 L3 Features

IPv4 Static/Default Route Settings

Configuration of static routing entries for IPv4 formatted addressing.

IPv6 Static/Default Route Settings

Entry of static IPv6 addresses into the switch's routing table.

Policy Route Settings

Creation of policy routes and definition of their rule names.

Static Multicast Route Settings

Creation of static multicast routes for IP multicast packet handling.

ECMP Algorithm Settings

Configuration of ECMP OSPF state and ECMP route load-balancing algorithm.

Route Redistribution Settings

Redistributes routing information from other protocols to RIP, OSPF, or BGP.

OSPF

Overview of Open Shortest Path First (OSPF) routing protocol.

OSPFv2

Configuration and operational details for OSPFv2 protocol.

OSPF Global Settings

Configuration of OSPF global settings for the switch.

OSPF Area Settings

Configuration of OSPF Area settings, grouping contiguous networks and hosts.

OSPF Interface Settings

Configuration of OSPF interface settings for the switch.

OSPFv3 (EI Mode Only)

Configuration and operation details for OSPFv3 protocol.

OSPFv3 Global Settings

Configuration of OSPFv3 global settings for the switch.

OSPFv3 Area Settings

Configuration of OSPFv3 area settings.

OSPFv3 Interface Settings

Configuration of OSPFv3 interface settings.

RIP

Overview of Routing Information Protocol (RIP) for distance-vector routing.

RIP Settings

Configuration of RIP settings for one or more IP interfaces.

IP Multicast Routing Protocol

Functions supporting IP multicasting: IGMP, DVMRP, PIM-DM/SM/SSM.

IGMP

Internet Group Management Protocol for communicating multicast group membership.

IGMP Interface Settings

Configuration of IGMP on a per-IP interface basis.

MLD

Multicast Listener Discovery Protocol for IPv6, similar to IGMP for IPv4.

MLD Interface Settings

Configuration of MLD interface settings.

PIM

Protocol Independent Multicast overview for IP networks.

PIM-SM

Configuration and operation of PIM Sparse Mode.

PIM-DM

Configuration and operation of PIM Dense Mode.

PIM for IPv4

Configuration settings for PIM protocol in IPv4 networks.

PIM Global Settings

Configuration of PIM global state and parameter settings for distribution trees.

PIM Interface Settings

Configuration of PIM protocol settings per IP interface.

VRRP

Virtual Router Redundancy Protocol for dynamic assignment of virtual router responsibility.

VRRP Virtual Router Settings

Configuration of VRRP virtual router settings.

BGP (EI Mode Only)

Configuration and operation of Border Gateway Protocol (BGP).

BGP Global Settings

Configuration of BGP state, AS number, and global settings.

BGP Dampening Settings

Configuration of BGP dampening settings to avoid unstable networks caused by flapping routes.

BGP Peer Group Settings

Creation or deletion of Border Gateway Protocol (BGP) neighbors.

BGP Neighbor

Configuration and management of BGP neighbors.

IP Route Filter

Configuration of IP prefix lists and standard access lists for route filtering.

IP Prefix List Settings

Creation and configuration of IP prefix lists.

IP Standard Access List Settings

Creation of access lists used to filter routes.

Route Map Settings

Creation of route maps and addition/deletion of sequences.

Chapter 6 QoS

802.1p Settings

Configuration of 802.1p priority queuing for Quality of Service.

Bandwidth Control

Settings to control transmitting and receiving data rates for selected ports.

Bandwidth Control Settings

Configuration to limit data rates on ports, applying ceilings to transmit and receive speeds.

Traffic Control Settings

Monitors and controls traffic flow to mitigate issues caused by packet storms.

Scheduling Settings

Configuration of how the switch maps incoming packets to hardware priority queues.

QoS Scheduling

Configuration of packet mapping to priority queues based on 802.1p user priority.

Chapter 7 ACL

ACL Configuration Wizard

Assists users in creating access profiles and ACL rules by inputting address, service type, and action.

Access Profile List

Allows users to establish criteria for packet forwarding based on header information.

Egress Access Profile List

Manages egress access profiles for per-flow processing of packets leaving the switch.

Chapter 8 Security

802.1X

Overview of IEEE 802.1X standard for authorizing and authenticating network access.

802.1X (Port-Based and Host-Based Access Control)

Details the two types of Access Control used on the Switch: Port-Based and Host-Based.

Port-based Network Access Control

Controls port authorization state, allowing traffic after successful authentication.

Host-based Network Access Control

Creates logical ports for each attached device, enabling independent control of EAPOL exchanges.

802.1X Global Settings

Configuration of global parameters for the 802.1X function.

802.1X Port Settings

Configuration of 802.1X authenticator settings on a per-port basis.

Guest VLAN Settings

Implementation of 802.1X Guest VLANs for limited access for non-802.1X supported devices.

RADIUS

Overview of RADIUS feature for centralized user administration and network protection.

Authentication RADIUS Server Settings

Configures RADIUS server settings for authentication.

IP-MAC-Port Binding (IMPB)

Restricts network access by binding IP-MAC addresses to specific ports.

DHCP Snooping

Functionality to restrict DHCP server packets and manage client IP assignments.

MAC-based Access Control (MAC)

Method to authenticate and authorize access using port or host MAC addresses.

MAC-based Access Control Settings

Sets parameters for MAC-based access control, including authentication and port configuration.

MAC-based Access Control Local Settings

Configures a list of MAC addresses with their corresponding target VLAN for switch authentication.

Web-based Access Control (WAC)

Feature for authenticating users accessing the Internet via the switch using HTTP or HTTPS.

WAC Global Settings

Configures the switch for the Web-based access control function.

WAC User Settings

Views and sets local database user accounts for Web authentication.

WAC Port Settings

Views and sets port configurations for Web authentication.

Compound Authentication

Allows multiple authentication methods to be supported on the switch.

Compound Authentication Settings

Configures Authorization Network State Settings and compound authentication methods.

Port Security

Prevents unauthorized computers from gaining access to the network using MAC addresses.

Port Security Settings

Configures port security settings, including locking MAC addresses to ports.

ARP Spoofing Prevention Settings

Configures spoofing prevention entry to prevent MAC spoofing for the protected gateway.

BPDU Attack Protection

Configures BPDU protection function for ports to prevent BPDU handling attacks.

Loopback Detection Settings

Detects loops created by specific ports and temporarily shuts down the port.

DHCP Server Screening

Restricts DHCP Server packets and receives specified DHCP server packets.

Access Authentication Control

Allows users to secure access using TACACS/XTACACS/TACACS+/RADIUS protocols.

Authentication Policy Settings

Enables administrator-defined authentication policy for users accessing the switch.

Authentication Server Settings

Configures user-defined authentication server hosts for TACACS/XTACACS/TACACS+/RADIUS.

Login Method Lists Settings

Configures user-defined authentication techniques for users logging onto the switch.

SSL Settings

Provides secure communication path using SSL for authentication, digital signatures, and encryption.

SSH

Secure Shell (SSH) for secure remote login and network services over insecure networks.

SSH Settings

Configures and views settings for the SSH server.

SSH Authentication Method and Algorithm Settings

Configures SSH algorithms for authentication encryption.

SSH User Authentication List

Configures parameters for users attempting to access the switch via SSH.

Trusted Host Settings

Configures trusted host secure IP addresses or ranges for remote switch management.

Safeguard Engine Settings

Configures Safeguard Engine to minimize workload during attacks and manage traffic flow.

Chapter 9 Network Application

DHCP

Overview of Dynamic Host Configuration Protocol for IP parameter assignment.

DHCP Relay

Configuration of DHCP Relay settings.

DHCP Relay Settings

Configures DHCPv6 relay state and destination IPv6 addresses.

DNS

Overview of Domain Name System (DNS) for mapping names to IP addresses.

SNTP

Simple Network Time Protocol for synchronizing computer clocks via the Internet.

SNTP Settings

Configures time settings for the switch, including server IP and poll interval.

Chapter 10 OAM

CFM (EI Mode Only)

Configuration for Connectivity Fault Management (CFM) parameters.

CFM Settings

Configures CFM parameters including state, MD, Level, and SenderID TLV.

CFM Loopback Settings

Configures CFM loopback settings for ports.

CFM Linktrace Settings

Configures CFM linktrace settings for path tracing.

Ethernet OAM

Overview of Ethernet Operations, Administration, and Maintenance (OAM).

Ethernet OAM Settings

Configures Ethernet OAM settings.

Ethernet OAM Configuration Settings

Configures Ethernet OAM configuration parameters.

Cable Diagnostics (EI Mode Only)

Tests copper cables to determine quality and identify errors.

Chapter 11 Monitoring

Utilization

Monitors resource utilization, including CPU, DRAM, Flash, and Port utilization.

CPU Utilization

Displays the percentage of CPU usage over time intervals.

Port Utilization

Displays the percentage of total available bandwidth used on each port.

Port Statistics

Allows viewing packet statistics (RX/TX, Bytes, Packets, Unicast, Multicast, Broadcast) as graphs or tables.

Packets

Detailed statistics for received and transmitted packets.

Received (RX)

Displays received packet error statistics.

Chapter 12 Save and Tools

Save Configuration / Log

Allows users to backup the switch configuration and log files.

Download Firmware

Downloads firmware to the switch from TFTP, RCP, or HTTP servers.

Upload Firmware

Uploads firmware from the switch to a TFTP, RCP, or HTTP server.

Download Configuration

Downloads configuration files for the switch from TFTP, RCP, or HTTP servers.

Upload Configuration

Uploads configuration files from the switch to a TFTP, RCP, or HTTP server.

Reset

Resets the switch to factory defaults with options to retain specific configurations.

Reboot System

Restarts the switch, with options to save current configuration before rebooting.

Appendix A Mitigating ARP Spoofing Attacks Using Packet Content ACL

Prevent ARP Spoofing via Packet Content ACL

Utilizes Packet Content ACL to mitigate DoS attacks caused by ARP spoofing.

Appendix B Password Recovery Procedure

Related product manuals