EasyManua.ls Logo

ZyXEL Communications XGS4700 Series User Manual

ZyXEL Communications XGS4700 Series
485 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Page #1 background imageLoading...
Page #1 background image
www.zyxel.com
www.zyxel.com
XGS4700-48F
Layer 3 Managed Stackable Gigabit Ethernet Switch
Copyright © 2011
ZyXEL Communications Corporation
Firmware Version 4.00
Edition 1, 04/2011
Default Login Details
IP Address http://192.168.0.1
(Out-of-band
MGMT port)
http://192.168.1.1
(In-band ports)
User Name admin
Password 1234

Table of Contents

Other manuals for ZyXEL Communications XGS4700 Series

Question and Answer IconNeed help?

Do you have a question about the ZyXEL Communications XGS4700 Series and is the answer not in the manual?

ZyXEL Communications XGS4700 Series Specifications

General IconGeneral
ModelXGS4700 Series
Operating Temperature0°C to 50°C
Storage Temperature-40°C to 70°C
LayerLayer 3
Product TypeLayer 3 Switch
Switching Capacity176 Gbps
Forwarding Rate131 Mpps
Jumbo Frame9K
Power SupplyAC 100-240V, 50/60Hz
Humidity10% to 90% non-condensing
ManagementWeb GUI, CLI, SNMP
FeaturesQoS, VLAN

Summary

About This User's Guide

Intended Audience

Manual for users configuring the switch via web configurator.

Related Documentation

Lists other documentation like Web Configurator Online Help and Command Reference Guide.

Document Conventions

Warnings and Notes

Explains how warnings and notes are displayed in the guide.

Syntax Conventions

Defines conventions for referring to the switch, product labels, keystrokes, and screen navigation.

Safety Warnings

CHAPTER 1 Getting to Know Your Switch

1.1 Introduction

Introduces the switch features, capabilities, and management methods.

1.2 Ways to Manage the Switch

Lists methods for managing the switch, including Web Configurator, CLI, and SNMP.

1.3 Good Habits for Managing the Switch

Provides recommendations for secure and effective switch management.

CHAPTER 2 Hardware Installation and Connection

2.1 Freestanding Installation

Instructions for installing the switch on a flat surface, including attaching rubber feet.

2.2 Mounting the Switch on a Rack

Details rack mounting requirements, precautions, and bracket attachment steps.

2.4 Power Module Installation

Guides on installing or removing AC and DC power modules.

CHAPTER 3 Hardware Overview

3.1 Front Panel Connections

Describes the front panel ports and their functions, including mini-GBIC slots.

3.2 Rear Panel

Shows and lists components on the rear panel, including fan module, uplink modules, and power connectors.

CHAPTER 4 The Web Configurator

4.1 Introduction

Introduces the HTML-based management interface and browser requirements.

4.2 System Login

Steps to access the web configurator and log in using default credentials.

4.4 Saving Your Configuration

Details how to save configuration settings to runtime memory and nonvolatile memory.

4.6 Resetting the Switch

Explains how to reload the factory default configuration file or reset the switch.

CHAPTER 5 Initial Setup Example

5.1 Overview

Lists configuration steps for an example network setup.

5.1.1 Configuring an IP Interface

Details how to configure IP interfaces or routing domains for traffic routing.

5.1.2 Configuring DHCP Server Settings

Guides on setting up DHCP client pools for assigning network information.

5.1.5 Enabling RIP

Steps to enable RIP for exchanging routing information across different routing domains.

CHAPTER 6 Tutorials

6.1 How to Use DHCP Snooping on the Switch

Tutorial on configuring DHCP snooping to control IP address assignment.

6.2 How to Use DHCP Relay on the Switch

Tutorial on configuring the switch to forward DHCP client requests to a specific DHCP server.

6.4 How to Use Error Disable and Recovery on the Switch

Guide on shutting down ports due to loops or excessive ARP requests and configuring recovery.

6.5 How to Set Up a Guest VLAN

Steps to set up a guest VLAN for clients failing 802.1x authentication, allowing limited network access.

CHAPTER 7 System Status and Port Statistics

7.2 Port Status Summary

How to view port statistics by clicking 'Status' on web configurator screens.

CHAPTER 8 Basic Setting

8.2 System Information

How to check firmware version, monitor temperature, fan speeds, and voltage.

8.3 General Setup

Configuring general settings like system name and time, including NTP and Daylight Saving Time.

8.6 IP Setup

Configuring default gateway, DNS server, and IP domains for management.

8.7 Port Setup

Configuring port settings such as speed, duplex mode, and flow control.

CHAPTER 9 VLAN

9.1 Introduction to IEEE 802.1Q Tagged VLANs

Explains VLAN tagging using VLAN ID for frame identification and network processing.

9.3 Port VLAN Trunking

Enables frames with unknown VLAN tags to pass through a port, useful for VLAN groups on end devices.

9.5 Static VLAN

Configuring VLANs to decide frame forwarding based on VLAN tags or port membership.

CHAPTER 10 Static MAC Forward Setup

10.2 Configuring Static MAC Forwarding

Manually entering MAC addresses in the address table to control port access and reduce broadcasting.

CHAPTER 11 Static Multicast Forward Setup

11.2 Configuring Static Multicast Forwarding

Configuring rules to forward specific multicast frames to designated ports.

CHAPTER 12 Filtering

12.1 Configure a Filtering Rule

Configuring the switch to filter traffic based on source, destination MAC addresses, and/or VLAN group.

CHAPTER 13 Spanning Tree Protocol

13.1 STP/RSTP Overview

Explains (R)STP for detecting and breaking network loops, providing backup links.

13.3 Spanning Tree Configuration

Activating STP modes (RSTP, MRSTP, MSTP) via the Spanning Tree Configuration screen.

CHAPTER 14 Bandwidth Control

14.1.1 CIR and PIR

Explains Committed Information Rate (CIR) and Peak Information Rate (PIR) for guaranteed and maximum bandwidth.

14.2 Bandwidth Control Setup

Configuring ingress and egress rate limits on ports to manage bandwidth usage.

CHAPTER 15 Broadcast Storm Control

15.1 Broadcast Storm Control Setup

Limiting broadcast, multicast, and DLF packets per second on ports to prevent storms.

CHAPTER 16 Mirroring

16.1 Port Mirroring Setup

Copying traffic flow to a monitor port for detailed examination without interference.

CHAPTER 17 Link Aggregation

17.1 Link Aggregation Overview

Grouping physical ports into one logical, higher-capacity link for increased bandwidth.

17.4 Link Aggregation Setting

The screen for configuring static link aggregation, including group ID and criteria.

17.5 Link Aggregation Control Protocol

Configuring LACP for dynamic link aggregation and port settings like timeout.

CHAPTER 18 Port Authentication

18.1 Port Authentication Overview

Validating client access to ports using IEEE 802.1x or MAC authentication via an external server.

18.2 Port Authentication Configuration

Activating port authentication methods and configuring RADIUS server settings.

18.2.1 Activate IEEE 802.1x Security

Activating IEEE 802.1x security and configuring settings for ports.

18.2.2 Guest VLAN

Setting up a guest VLAN for clients failing 802.1x authentication, allowing limited network access.

CHAPTER 19 Port Security

19.1 About Port Security

Allows packets with learned or configured static MAC addresses to pass through a port.

19.2 Port Security Setup

Enabling port security and disabling MAC address learning, or freezing MAC addresses.

CHAPTER 20 Classifier

20.1 About the Classifier and QoS

Prioritizing traffic, fine-tuning network performance, and grouping traffic into data flows.

20.2 Configuring the Classifier

Defining classifiers to specify actions on traffic that matches rules.

CHAPTER 21 Policy Rule

21.1 Policy Rules Overview

Classifying traffic into flows and applying policy rules to ensure requested network treatment.

21.2 Configuring Policy Rules

Configuring policy rules to define actions for classified traffic flows, potentially overriding default routing.

CHAPTER 22 Queuing Method

22.1 Queuing Method Overview

Using queuing algorithms to solve performance degradation during network congestion.

22.2 Configuring Queuing

Configuring queuing methods like SPQ, WFQ, and WRR for outgoing traffic.

CHAPTER 23 VLAN Stacking

23.1 VLAN Stacking Overview

Distinguishing multiple customer VLANs by adding an outer VLAN tag to inner tagged frames.

23.2 VLAN Stacking Port Roles

Defining port roles as Normal, Access, or Tunnel for VLAN stacking.

23.4 Configuring VLAN Stacking

Configuring VLAN stacking settings on the Switch, including port-based QinQ.

CHAPTER 24 Multicast

24.1 Multicast Overview

Internet Group Management Protocol for distributing data to multiple recipients, managing multicast sessions.

24.1.3 IGMP Snooping

Snooping IGMP packets to learn group membership and forward multicast traffic efficiently.

24.3 Multicast Setting

Configuring IGMP snooping, including ports, timeouts, and filtering profiles.

CHAPTER 25 AAA

25.1 Authentication, Authorization and Accounting (AAA)

Process of verifying user identity, defining user privileges, and recording user actions.

25.2 AAA Screens

Enabling AAA functions and configuring server settings and priorities.

25.2.1 RADIUS Server Setup

Configuring RADIUS server settings for authentication and accounting.

25.2.2 TACACS+ Server Setup

Configuring TACACS+ server settings for authentication and accounting.

CHAPTER 26 IP Source Guard

26.1 IP Source Guard Overview

Filtering unauthorized DHCP and ARP packets using a binding table with MAC, VLAN, IP, and port attributes.

26.1.1 DHCP Snooping Overview

Filtering unauthorized DHCP packets and building a binding table dynamically.

26.1.2 ARP Inspection Overview

Filtering unauthorized ARP packets to prevent man-in-the-middle attacks.

26.3 IP Source Guard Static Binding

Managing static bindings uniquely identified by MAC address and VLAN ID.

CHAPTER 27 Loop Guard

27.1 Loop Guard Overview

Shutting down a port if it detects packets looping back, preventing broadcast storms.

27.2 Loop Guard Setup

Enabling loop guard on the switch and configuring port settings, noting compatibility with STP.

CHAPTER 28 VLAN Mapping

28.1 VLAN Mapping Overview

Mapping VLAN IDs and priorities of received packets to service provider network usage.

28.2 Enabling VLAN Mapping

Activating the VLAN mapping feature on the switch for ports.

28.3 Configuring VLAN Mapping

Enabling and editing VLAN mapping rules, including port, VID, translated VID, and priority.

CHAPTER 29 Layer 2 Protocol Tunneling

29.1 Layer 2 Protocol Tunneling Overview

Tunneling layer-2 STP, CDP, and VTP packets between customer switches via the service provider network.

29.2 Configuring Layer 2 Protocol Tunneling

Enabling L2PT and configuring destination MAC address, port, and tunneling modes (Access, Tunnel).

CHAPTER 30 sFlow

30.1 sFlow Overview

Standard technology for monitoring switched networks by sampling traffic data and sending it to a collector.

30.2 sFlow Port Configuration

Enabling the sFlow agent, configuring sample rate, poll interval, and collector address for each port.

CHAPTER 31 PPPoE

31.1 PPPoE Intermediate Agent Overview

Deploying PPPoE IA between server and clients to add subscriber information to discovery packets.

31.3 PPPoE Intermediate Agent

Configuring the switch to provide subscriber information for PPPoE client identification and authentication.

31.3.1 PPPoE IA Per-Port

Specifying trusted/untrusted ports and adding extra information to PPPoE discovery packets.

31.3.3 PPPoE IA for VLAN

Enabling PPPoE Intermediate Agent on a VLAN and appending Circuit ID/Remote ID to discovery packets.

CHAPTER 32 Error Disable

32.1 CPU Protection Overview

Limiting control packet rates to the CPU to enhance efficiency and protect against DoS attacks.

32.2 Error-Disable Recovery Overview

Automatically undoing actions like port shutdown or packet discard after an error condition is resolved.

32.4 CPU Protection Configuration

Limiting control packet rates (ARP, BPDU, IGMP) on ports to protect CPU efficiency.

32.5 Error-Disable Detect Configuration

Detecting exceeded rate limits for control packets and configuring actions like port shutdown or packet discard.

CHAPTER 33 Static Route

33.1 Static Routing Overview

Using static routes to send data to devices not reachable through the default gateway.

33.2 Configuring Static Routing

Creating static routes by specifying destination IP, subnet mask, gateway IP, and metric.

CHAPTER 34 Policy Routing

34.1 Policy Route Overview

Overriding default routing behavior based on administrator-defined policies and classifier criteria.

34.2 Configuring Policy Routing Profile

Creating policy routing profiles, which can include multiple policy routing rules.

CHAPTER 35 RIP

35.1 RIP Overview

Routing Information Protocol for exchanging routing information between routers, controlling sending/receiving of RIP packets.

35.2 Configuring RIP

Enabling RIP on the Switch and configuring administrative distance and direction.

CHAPTER 36 OSPF

36.1 OSPF Overview

Link-state protocol for distributing routing info within an autonomous system.

36.3 OSPF Configuration

Activating OSPF and setting general parameters like Router ID and Distance.

36.4 Configure OSPF Areas

Activating authentication for OSPF to ensure secure routing information exchange.

36.5 Configuring OSPF Redistribution

Configuring route redistribution and summary addresses for exchanging routing info with other protocols.

36.6 Configuring OSPF Interfaces

Configuring OSPF interfaces, including authentication, cost, and priority for router elections.

CHAPTER 37 IGMP

37.1 IGMP Overview

Internet Group Management Protocol for distributing data to multiple recipients, managing multicast sessions.

37.3 Configuring IGMP

Enabling IGMP on the switch and selecting the IGMP version for query messages.

CHAPTER 38 DVMRP

38.1 DVMRP Overview

Distance Vector Multicast Routing Protocol for routing multicast data within an autonomous system.

38.3 Configuring DVMRP

Configuring DVMRP on the switch to act as a multicast router, requiring IGMP enablement.

CHAPTER 39 Differentiated Services

39.1 DiffServ Overview

Quality of Service prioritizing traffic flows using CoS and marking packets with DSCPs for per-hop treatment.

39.2 Two Rate Three Color Marker Traffic Policing

Limiting traffic transmission rates based on Committed Information Rate (CIR) and Peak Information Rate (PIR).

39.3 Activating DiffServ

Enabling DiffServ to apply marking rules or IEEE 802.1p priority mapping on selected ports.

39.4 DSCP-to-IEEE 802.1p Priority Settings

Configuring DSCP to IEEE 802.1p mapping for prioritizing traffic based on incoming DSCP values.

CHAPTER 40 DHCP

40.1 DHCP Overview

Dynamic Host Configuration Protocol for obtaining TCP/IP configuration from a server or relay agent.

40.4 DHCP Relay

Configuring DHCP relay for clients and servers not in the same broadcast domain.

40.5 Configuring DHCP VLAN Settings

Configuring DHCP settings on a per-VLAN basis, specifying server or relay function.

CHAPTER 41 VRRP

41.1 VRRP Overview

Virtual Router Redundancy Protocol for creating redundant backup gateways to ensure default gateway availability.

41.3 VRRP Configuration

Configuring VRRP parameters, including IP interface setup and VRRP parameters.

41.3.2 VRRP Parameters

Setting VRRP parameters like advertisement interval, priority, and preempt mode.

41.4 VRRP Configuration Examples

Demonstrates two VRRP configuration examples: One Subnet Network and Two Subnets.

CHAPTER 42 ARP Learning

42.1 ARP Overview

Protocol for mapping IP addresses to MAC addresses, maintaining an association between them.

42.1.2 ARP Learning Mode

Supports ARP-Reply, Gratuitous-ARP, and ARP-Request learning modes for updating the ARP table.

42.2 Configuring ARP Learning

Selecting the ARP learning mode (ARP-Reply, Gratuitous-ARP, ARP-Request) for ports.

CHAPTER 43 Load Sharing

43.1 Load Sharing Overview

Using Equal-Cost MultiPath (ECMP) to forward packets through multiple equal-cost paths for load balancing.

43.2 Configuring Load Sharing

Configuring ECMP routing criteria, such as source IP or source/destination IP, for load balancing.

CHAPTER 44 Maintenance

44.1 The Maintenance Screen

Managing firmware and configuration files, including upgrade, backup, restore, and factory defaults.

44.2 Load Factory Default

Resetting the switch configuration to factory defaults.

44.5 Firmware Upgrade

Downloading and uploading new firmware; ensuring correct model firmware is used.

44.7 Backup a Configuration File

Creating snapshots of switch configurations for later restoration.

CHAPTER 45 Access Control

45.1 Access Control Overview

Controlling access to the switch via console, Telnet, SSH, FTP, Web, and SNMP.

45.3 About SNMP

Simple Network Management Protocol for managing and monitoring TCP/IP devices using agents and managers.

45.4 Setting Up Login Accounts

Configuring administrator and non-administrator accounts for switch access.

45.8 Introduction to HTTPS

Web protocol encrypting web pages using SSL/TLS for secure transactions and data integrity.

45.10 Service Port Access Control

Deciding which services to use for accessing the switch and changing default service ports.

45.11 Remote Management

Specifying trusted computers for accessing the switch services remotely.

CHAPTER 46 Diagnostic

46.1 Diagnostic

Checking system logs, pinging IP addresses, and performing port tests using the Diagnostic screen.

CHAPTER 47 Syslog

47.1 Syslog Overview

Syslog protocol for sending event notification messages to syslog servers for collection and analysis.

47.2 Syslog Setup

Configuring device system logging settings to send logs to an external syslog server.

47.3 Syslog Server Setup

Configuring a list of external syslog servers, including IP address and log level.

CHAPTER 48 Cluster Management

48.1 Clustering Management Status Overview

Managing switches through a cluster manager, requiring direct connection and same VLAN group.

48.2 Cluster Management Status

Viewing cluster status, manager information, and member switch details.

48.3 Clustering Management Configuration

Configuring cluster management settings, including cluster manager, candidate switches, and passwords.

CHAPTER 49 MAC Table

49.1 MAC Table Overview

Shows how frames are forwarded or filtered, displaying learned MAC addresses and their type (dynamic/static).

49.2 Viewing the MAC Table

Searching specific MAC addresses and adding dynamic MAC addresses to static tables.

CHAPTER 50 IP Table

50.1 IP Table Overview

Shows how packets are forwarded or filtered, displaying IP addresses and their type (dynamic/static).

50.2 Viewing the IP Table

Displaying and arranging IP table data by IP address, VLAN group, or port number.

CHAPTER 51 ARP Table

51.1 ARP Table Overview

Protocol for mapping IP addresses to MAC addresses, maintaining an association between them.

51.2 The ARP Table Screen

Viewing IP-to-MAC mappings and removing specific dynamic ARP entries.

CHAPTER 52 Routing Table

52.1 Overview

Contains route information to networks, updated with RIP and OSPF information.

52.2 Viewing the Routing Table Status

Displaying routing table information, showing destination, gateway, interface, metric, and type.

CHAPTER 53 Configure Clone

53.1 Configure Clone

Copying basic and advanced settings from a source port to destination ports.

CHAPTER 54 Troubleshooting

54.1 Power, Hardware Connections, and LEDs

Troubleshooting power issues, LED behavior, and hardware connections.

54.2 Switch Access and Login

Resolving issues related to forgetting IP addresses, usernames, or passwords, and web configurator access.

CHAPTER 55 Product Specifications

Table 169 Hardware Specifications

Summarizes hardware features like dimensions, weight, interfaces, LEDs, and environmental specifications.

Table 170 Firmware Specifications

Details firmware specifications including default IP, user name, password, and supported features like VLAN, DHCP, and IGMP Snooping.

Table 171 Switching Specifications

Lists Layer 2 and Layer 3 switching features, including Bridging, Switching fabric, QoS, VLAN, Port Aggregation, and Filtering.

APPENDIX A Common Services

Table 173 Commonly Used Services

Lists commonly used services, their protocols, port numbers, and descriptions.

APPENDIX B Legal Information

Copyright

Copyright notice and publication details for ZyXEL Communications Corporation.

Disclaimer

ZyXEL's liability disclaimer regarding product application and use.

Certifications

Includes FCC Interference Statement and CE Mark Warning.

Related product manuals