EasyManua.ls Logo

Phoenix Contact FL SWITCH GHS 12G/8 - User Manual

Phoenix Contact FL SWITCH GHS 12G/8
242 pages
Print Icon
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Loading...
AUTOMATION
UM EN FL SWITCH GHS CLI for
FL SWITCH GHS 12G/8
FL SWITCH GHS 4G/12
User Manual
Order No: -
Gigabit Modular Switch
RSPSupply - 1-888-532-2706 - www.RSPSupply.com
http://www.RSPSupply.com/p-14161-Phoenix-Contact-2700271-FL-SWITCH-GHS-4G/12-Modular-Ethernet-Switch.aspx

Table of Contents

Question and Answer IconNeed help?

Do you have a question about the Phoenix Contact FL SWITCH GHS 12G/8 and is the answer not in the manual?

Summary

User Manual

Gigabit Modular Switch

Identifies the product as a Gigabit Modular Switch, providing context for the manual's content.

Description of the CLI interface

UM EN FL SWITCH GHS CLI

Specifies the manual's focus on the Command Line Interface for the FL SWITCH GHS.

Manual Usage and Safety

Explanation of symbols and signal words

Details the meaning of symbols and signal words used throughout the manual for hazard identification.

General terms and conditions of use

Statement of legal authority

Section 1: Using the Command Line Interface

COMMAND SYNTAX

Explains the structure and rules for constructing CLI commands, including parameters.

COMMAND CONVENTIONS

Details the conventions used in the document for command keywords and parameters.

COMMON PARAMETER VALUES

Describes common parameter values and their formatting for CLI commands.

SLOT;PORT NAMING CONVENTION

Command Usage Techniques

USING THE “NO” FORM OF A COMMAND

Explains how to use the 'no' keyword to reverse or disable configuration commands.

FL SWITCH GHS FIRMWARE MODULES

Lists the modules included in the FL SWITCH GHS Firmware software suite.

COMMAND MODES

COMMAND COMPLETION AND ABBREVIATION

CLI ERROR MESSAGES

USING CLI HELP

ACCESSING THE CLI

Section 2: Switching Commands

PORT CONFIGURATION COMMANDS

Describes commands for viewing and configuring port settings on the switch.

AUTO-NEGOTIATE

Enables or disables automatic negotiation for port speed and duplex settings.

mtu

Configures the Maximum Transmission Unit (MTU) size for interface frames.

shutdown

Disables or enables a network port, affecting physical and port-channel interfaces.

speed

Sets the speed and duplex configuration for network interfaces.

show port

Displays detailed information about the status and configuration of network ports.

SPANNING TREE PROTOCOL (STP) COMMANDS

spanning-tree

Enables or disables the Spanning Tree Protocol (STP) operational mode on the switch.

spanning-tree edgeport

Specifies a port as an Edge Port to transition directly to Forwarding State.

spanning-tree hello-time

Sets the Admin Hello Time parameter for common and internal spanning tree.

spanning-tree mst

Configures Path Cost or Port Priority for Multiple Spanning Tree instances.

spanning-tree port mode

Sets the Administrative Switch Port State to enabled or disabled.

show spanning-tree

Displays the current Spanning Tree Protocol (STP) settings for the switch.

VLAN COMMANDS

vlan database

Provides access to VLAN configuration mode for setting VLAN characteristics.

network mgmt_vlan

Configures the Management VLAN ID for the switch.

vlan

Creates a new VLAN and assigns it a unique ID within the specified range.

vlan ingressfilter

Enables or disables ingress filtering for VLAN traffic on interfaces.

vlan name

Changes the name of an existing VLAN, associating it with its ID.

vlan port acceptframe all

Sets the frame acceptance mode for all interfaces to VLAN Only or Admit All.

PROVISIONING (IEEE 802.1 P) COMMANDS

GARP COMMANDS

Configures Generic Attribute Registration Protocol (GARP) and views its status.

set garp timer join

Sets the GVRP join time for ports or globally, affecting GARP participation.

GVRP COMMANDS

set gvrp adminmode

Enables or disables the GVRP administrative mode on the system.

GMRP COMMANDS

set gmrp adminmode

Enables or disables the GARP Multicast Registration Protocol (GMRP) on the system.

PORT-BASED NETWORK ACCESS CONTROL COMMANDS

dot1 x guest-vlan

Configures a VLAN as a guest VLAN for ports with failed 802.1x authentication.

dot1 x port-control

Sets the authentication mode for a port (force-unauthorized, force-authorized, or auto).

dot1 x timeout

Configures the timer values used by the authenticator state machine on a port.

STORM-CONTROL COMMANDS

storm-control broadcast

Enables broadcast storm recovery mode for an interface to limit broadcast traffic.

storm-control multicast

Enables multicast storm recovery mode for an interface to limit multicast traffic.

storm-control unicast

Enables unicast storm recovery mode for an interface to limit unknown unicast traffic.

PORT-CHANNEL;LAG (802.3 AD) COMMANDS

port-channel

Configures a new port-channel (LAG) and generates a logical slot/port number.

lacp admin key

Configures the administrative value of the key for the port-channel.

lacp actor admin state

Configures the administrative value of the actor state transmitted in LACPDUs.

lacp actor system priority

Configures the priority value associated with the LACP Actor’s SystemID.

lacp partner admin state

Configures the current administrative value of actor state for the protocol Partner.

lacp partner port priority

Configures the LACP partner port priority value.

lacp partner system-id

Configures the 6-octet MAC Address for the Partner’s System ID.

port lacptimeout (Interface Config)

Sets the timeout on a physical interface for actor or partner to long or short timeout.

port-channel adminmode

Enables or disables a port-channel (LAG), with optional 'all' setting.

show lacp actor

Displays LACP actor attributes, including system priority and port priority.

show port-channel brief

Displays a summary of all port-channels (LAGs) and their static capabilities.

PORT MIRRORING

monitor session

Configures a probe port and monitored port for port mirroring sessions.

IGMP SNOOPING CONFIGURATION COMMANDS

set igmp

Enables or disables IGMP Snooping globally, on interfaces, or per VLAN.

set igmp interfacemode

Enables IGMP Snooping on all interfaces or disables it.

set igmp fast-leave

Enables or disables IGMP Snooping fast-leave mode on selected interfaces/VLANs.

set igmp groupmembership-interval

Sets the IGMP Group Membership Interval time for interfaces or VLANs.

show igmpsnooping

Displays IGMP Snooping information for interfaces or VLANs.

IGMP SNOOPING QUERIER COMMANDS

set igmp querier

Enables IGMP Snooping Querier on the system or a VLAN, specifying the IP address.

show igmpsnooping querier

Displays IGMP Snooping Querier information for the system or specific VLANs.

PORT SECURITY COMMANDS

port-security

Enables or disables port security (MAC address locking) on the switch.

port-security max-dynamic

Sets the maximum number of dynamically locked MAC addresses allowed per port.

show port-security

Displays the current port security settings for the system or specific interfaces.

LLDP (802.1 AB) COMMANDS

lldp transmit

Enables or disables the LLDP advertisement capability.

lldp timers

Sets timing parameters for local data transmission on LLDP-enabled ports.

clear lldp statistics

Resets all LLDP statistics, including MED-related information.

show lldp

Displays a summary of the current LLDP configuration for the switch.

LLDP-MED COMMANDS

lldp med

Enables or disables LLDP-MED, effectively activating transmit and receive functions.

show lldp med

Displays a summary of the current LLDP MED configuration.

DENIAL OF SERVICE COMMANDS

dos-control sipdip

Enables protection against Denial of Service attacks where Source IP equals Destination IP.

dos-control tcpfrag

Enables TCP Fragment Denial of Service protection for packets with offset 1.

dos-control l4 port

Enables L4 Port Denial of Service protection for packets where Source Port equals Destination Port.

MAC DATABASE COMMANDS

bridge aging-time

Configures the forwarding database address aging timeout in seconds.

show mac-address-table multicast

Displays Multicast Forwarding Database (MFDB) information.

INTERNET GROUP MESSAGE PROTOCOL (IGMP) COMMANDS

ip igmp

Sets the administrative mode of IGMP in the system to active or inactive.

ip igmp version

Configures the IGMP version (1, 2, or 3) for an interface.

show ip igmp

Displays system-wide IGMP information, including interface status.

IGMP PROXY COMMANDS

ip igmp-proxy

Enables or disables the IGMP Proxy on the router for host multicast forwarding.

show ip igmp-proxy

Displays host interface status parameters for the IGMP Proxy.

STATIC MCAST CONFIGURATION

Section 3: Quality of Service (QoS) Commands

CLASS OF SERVICE (COS) COMMANDS

Configures Class of Service (CoS) settings to control traffic priority and transmission rate.

classofservice dot1 p-mapping

Maps an 802.1p priority to an internal traffic class.

classofservice ip-dscp-mapping

Maps an IP DSCP value to an internal traffic class.

classofservice trust

Sets the class of service trust mode for an interface (trust Dot1p, DSCP, or Precedence).

show interfaces cos-queue

Displays the class-of-service queue configuration for a specified interface.

MAC ACCESS CONTROL LIST (ACL) COMMANDS

mac access-list extended

Creates a MAC Access Control List (ACL) identified by a name.

mac access-group

Attaches a specific MAC ACL to an interface or associates it with a VLAN ID.

IP ACCESS CONTROL LIST (ACL) COMMANDS

access-list

Creates an IP Access Control List (ACL) identified by an access list number.

ip access-group

Attaches a specific IP ACL to an interface or associates it with a VLAN ID.

show ip access-lists

Displays IP ACLs, IPv6 ACLs, and MAC ACL information for an interface.

Section 4: Utility Commands

DUAL IMAGE COMMANDS

Manages dual software images, allowing selection of the active image for reboots.

SYSTEM INFORMATION AND STATISTICS COMMANDS

Displays system information, statistics, components, and configurations.

show arp switch

Displays the IP stack's Address Resolution Protocol (ARP) table.

show eventlog

Displays the event log, containing system error messages.

show hardware

Displays inventory information for the switch hardware.

show interface

Displays statistics summary for a specific interface or all CPU traffic.

show interface ethernet

Displays detailed statistics for Ethernet interfaces.

LOGGING COMMANDS

logging buffered

Enables logging to an in-memory log with a capacity of up to 128 logs.

logging cli-command

Enables logging of all CLI commands issued on the system.

logging host

Enables logging to a configured host, specifying IP address, type, and port.

show logging

Displays the current logging configuration information.

SYSTEM UTILITY AND CLEAR COMMANDS

traceroute

Discovers network routes by sending packets hop-by-hop to a destination.

clear config

Resets the switch configuration to factory defaults without powering off.

clear pass

Resets all user passwords to factory defaults, requiring confirmation.

ping

Tests network connectivity by sending Echo Requests to a destination host.

reload

Resets the switch without powering it off, re-executing the boot code.

copy

Uploads, downloads, and manages files and firmware images on the switch.

SIMPLE NETWORK TIME PROTOCOL (SNTP) COMMANDS

sntp client mode

Enables SNTP client mode, allowing configuration for broadcast or unicast.

sntp server

Configures SNTP servers, including IP address, priority, version, and port.

show sntp client

Displays SNTP client settings, including supported modes and versions.

Section 5: Management Commands

NETWORK INTERFACE COMMANDS

Configures logical interfaces for management access, including the management VLAN.

serviceport ip

Sets the IP address, subnet mask, and gateway for the network management port.

show network

Displays configuration settings for the switch's network interface.

CONSOLE PORT ACCESS COMMANDS

TELNET COMMANDS

ip telnet server enable

Enables Telnet server access to the system and opens the Telnet listening port.

telnet

Establishes a new outbound Telnet connection to a remote host.

session-timeout

Sets the Telnet session timeout value in minutes for inactivity.

show telnetcon

Displays the current inbound Telnet settings for connections to the switch.

SECURE SHELL (SSH) COMMANDS

ip ssh

Enables SSH access to the system, providing secure remote management.

sshcon timeout

Sets the SSH connection session timeout value in minutes.

show ip ssh

Displays the current SSH settings for the switch.

MANAGEMENT SECURITY COMMANDS

crypto certificate generate

Generates a self-signed certificate for HTTPS access.

crypto key generate rsa

Generates an RSA key pair for SSH, overwriting existing keys.

HYPERTEXT TRANSFER PROTOCOL (HTTP) COMMANDS

ip http server

Enables or disables access to the switch through the Web interface.

ip http secure-server

Enables the secure socket layer for secure HTTP connections.

ip http session hard-timeout

Configures the hard timeout for un-secure HTTP sessions in hours.

ip http secure-session maxsessions

Limits the number of allowable secure HTTP sessions.

show ip http

Displays the current HTTP settings for the switch.

ACCESS COMMANDS

disconnect

Closes active remote connections (HTTP, Telnet, SSH) or specific sessions.

show loginsession

Displays current Telnet and serial port connections to the switch.

USER ACCOUNT COMMANDS

users name

Adds a new user account to the system, with username and privileges.

users name <username> unlock

Unlocks a user account that has been locked due to multiple failed login attempts.

users passwd

Changes the password for a logged-in user, enforcing case sensitivity.

show users

Displays configured user names and their settings (access mode, SNMPv3).

passwords min-length

Enforces a minimum password length for local users and the enable password.

passwords lock-out

Strengthens security by locking user accounts after multiple failed login attempts.

write memory

Configuration Scripting Commands

script apply

Applies the commands within a specified script file to the switch.

script delete

Deletes a specified script file or all script files from the switch.

SNMP COMMANDS

snmp-server

Configures SNMP agent settings including system name, location, and contact.

snmp-server community

Adds, names, and configures SNMP communities with specified privileged levels.

snmp-server community ipaddr

Sets a client IP address for an SNMP community, defining an access range.

snmp-server community mode

Activates an SNMP community, allowing managers to interact based on access rights.

snmp-server community ro

Restricts switch information access to read-only mode.

snmp-server enable traps violation

Enables sending traps for disallowed MAC addresses on locked ports.

snmptrap

Adds an SNMP trap receiver, specifying name, IP address, and SNMP version.

show snmpcommunity

Displays SNMP community information, including supported communities.

RADIUS COMMANDS

authorization network radius

Enables the switch to accept VLAN assignment from a RADIUS server.

radius accounting mode

Enables or disables the RADIUS accounting function.

radius server host

Configures RADIUS authentication and accounting servers with IP addresses.

radius server key

Configures the shared secret between the RADIUS client and server.

show radius

Displays RADIUS configuration items and configured RADIUS servers.

show radius statistics

Displays statistics for RADIUS or configured servers.

Phoenix Contact FL SWITCH GHS 12G/8 Specifications

General IconGeneral
BrandPhoenix Contact
ModelFL SWITCH GHS 12G/8
CategorySwitch
LanguageEnglish

Related product manuals