Juniper-networks EX2500 Manuel d'utilisateur

Naviguer en ligne ou télécharger Manuel d'utilisateur pour Accessoires pour ordinateurs Juniper-networks EX2500. Juniper Networks EX2500 User Manual Manuel d'utilisatio

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 106
  • Table des matières
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 0
Juniper Networks, Inc.
1194 North Mathilda Avenue
Sunnyvale, CA 94089
USA
408-745-2000
www.juniper.net
Revision 3
Juniper Networks
EX2500 Ethernet Switch
Configuration Guide
Release 3.1
Vue de la page 0
1 2 3 4 5 6 ... 105 106

Résumé du contenu

Page 1 - Configuration Guide

Juniper Networks, Inc.1194 North Mathilda AvenueSunnyvale, CA 94089USA408-745-2000www.juniper.netRevision 3Juniper Networks EX2500 Ethernet SwitchConf

Page 2

x  List of TablesEX2500 Ethernet Switch Configuration Guide

Page 3 - Table of Contents

EX2500 Ethernet Switch Configuration Guide86  Configuring Port MirroringFigure 15: Monitoring PortsAs shown in Figure 15, port 2 is acting as a moni

Page 4

Indexes  87Part 3Indexes Index on page 89

Page 5

EX2500 Ethernet Switch Configuration Guide88  Indexes

Page 6 - Part 3 Indexes

Index  89IndexNumerics802.1p priority for QoS ...65802.1Q VLAN tagging ...

Page 7 - List of Figures

90  IndexEX2500 Ethernet Switch Configuration GuideFFailure Detection Pair ...80Fast Uplink Convergen

Page 8

Index  91Indexprivate VLANs ...31promiscuous port ...

Page 9

92  IndexEX2500 Ethernet Switch Configuration Guidetechnical termsAssured Forwarding (AF)...63Class Selector (CS)

Page 10 - List of Tables

Objectives  xiAbout This GuideThis preface provides the following guidelines for using the Juniper Networks EX2500 Ethernet Switch Configuration Guid

Page 11 - About This Guide

EX2500 Ethernet Switch Configuration Guidexii  Documentation ConventionsDocumentation ConventionsTable 1 describes the notice icons used in this manu

Page 12 - Documentation Conventions

List of Technical Publications  xiiiAbout This GuideList of Technical PublicationsTable 3 lists the documentation supporting the EX2500 Ethernet Swit

Page 13 - Requesting Technical Support

EX2500 Ethernet Switch Configuration Guidexiv  Requesting Technical SupportSelf-Help Online Tools and ResourcesFor quick and easy problem resolution,

Page 14 - Opening a Case with JTAC

EX2500 Ethernet Switch Applications  1Part 1EX2500 Ethernet Switch ApplicationsThis configuration guide will help you plan, implement, and administer

Page 15

EX2500 Ethernet Switch Configuration Guide2  EX2500 Ethernet Switch Applications

Page 16

Configuring the Management Interface  3Chapter 1Accessing the SwitchThe EX2500 software provides a means for accessing, configuring, and viewing info

Page 17 - Accessing the Switch

EX2500 Ethernet Switch Configuration Guide4  Dynamic Host Configuration Protocol3. Configure the management IP address, subnet mask, and default gate

Page 18

Using Telnet  5Chapter 1: Accessing the SwitchDHCP is an extension of another network IP management protocol, Bootstrap Protocol (BOOTP), with an add

Page 19 - Using Telnet

ii Juniper Networks, the Juniper Networks logo, JUNOS, NetScreen, ScreenOS, and Steel-Belted Radius are registered trademarks of Juniper Networks, In

Page 20

EX2500 Ethernet Switch Configuration Guide6  Using the EX2500 Web Device ManagerBy default, EX2500 Web Device Manager access is enabled on the switch

Page 21 - SNMPv1, SNMPv2

Using SNMP  7Chapter 1: Accessing the SwitchThe EX2500 Web Device Manager is organized at a high level as follows: Context tabs—These tabs allow you

Page 22 - User Configuration

EX2500 Ethernet Switch Configuration Guide8  Using SNMPSNMPv3SNMPv3 is an enhanced version of the Simple Network Management Protocol, approved by the

Page 23 - Configuring SNMP Trap Hosts

Using SNMP  9Chapter 1: Accessing the Switch2. Configure a user access group, along with the views the group may access. Use the access table to conf

Page 24 - Securing Access to the Switch

EX2500 Ethernet Switch Configuration Guide10  Securing Access to the SwitchSNMPv3 Trap Host ConfigurationTo configure a user for SNMPv3 traps, you ca

Page 25

Securing Access to the Switch  11Chapter 1: Accessing the SwitchRADIUS Authentication and AuthorizationThe EX2500 switch supports the RADIUS (Remote

Page 26

EX2500 Ethernet Switch Configuration Guide12  Securing Access to the Switch3. If desired, you may change the default UDP port number used to listen t

Page 27 - Switch User Accounts

Securing Access to the Switch  13Chapter 1: Accessing the SwitchSwitch User AccountsThe user accounts listed in Table 4 can be defined in the RADIUS

Page 28 - TACACS+ Authentication

EX2500 Ethernet Switch Configuration Guide14  Securing Access to the SwitchAccountingAccounting is the action of recording a user's activities o

Page 29

Securing Access to the Switch  15Chapter 1: Accessing the SwitchHow TACACS+ Authentication WorksTACACS+ works in much the same way as RADIUS authenti

Page 30

Table of Contents  iiiTable of ContentsAbout This Guide xiObjectives ...

Page 31 - Secure Shell

EX2500 Ethernet Switch Configuration Guide16  Securing Access to the SwitchIf the remote user is successfully authenticated by the authentication ser

Page 32

Securing Access to the Switch  17Chapter 1: Accessing the Switchaccounting request, cmd=shell, cmd-arg=interface ipauthorization request, cmd=shell,

Page 33 - End User Access Control

EX2500 Ethernet Switch Configuration Guide18  Securing Access to the SwitchThe EX2500 implementation of SSH supports versions 1.0 and 2.0 and SSH cli

Page 34 - Listing Current Users

Securing Access to the Switch  19Chapter 1: Accessing the SwitchA value of 0 (zero) denotes that RSA server key autogeneration is disabled. When the

Page 35

EX2500 Ethernet Switch Configuration Guide20  Securing Access to the SwitchUser Access Control The end user access control commands allow you to conf

Page 36

Securing Access to the Switch  21Chapter 1: Accessing the SwitchLogging In to an End User AccountOnce an end user account is configured and enabled,

Page 37 - Chapter 2

EX2500 Ethernet Switch Configuration Guide22  Securing Access to the Switch

Page 38 - PVID Numbers

VLAN Overview  23Chapter 2VLANsThis chapter describes network design and topology considerations for using Virtual Local Area Networks (VLANs). VLANs

Page 39 - VLAN Tagging

EX2500 Ethernet Switch Configuration Guide24  VLANs and Port VLAN ID NumbersVLANs and Port VLAN ID NumbersVLAN NumbersThe EX2500 switch supports up t

Page 40 - 26  VLAN Tagging

VLAN Tagging  25Chapter 2: VLANsVLAN TaggingEX2500 software supports 802.1Q VLAN tagging, providing standards-based VLAN support for Ethernet systems

Page 41 - Chapter 2: VLANs

iv  Table of ContentsEX2500 Ethernet Switch Configuration GuideTACACS+ Authentication...

Page 42 - VLAN Configuration Rules

EX2500 Ethernet Switch Configuration Guide26  VLAN TaggingFigure 1: Default VLAN SettingsWhen a VLAN is configured, ports are added as members of th

Page 43 - Component Description

VLAN Tagging  27Chapter 2: VLANsFigure 2: Port-Based VLAN AssignmentAs shown in Figure 3, the untagged packet is marked (tagged) as it leaves the sw

Page 44

EX2500 Ethernet Switch Configuration Guide28  VLAN Topologies and Design ConsiderationsAs shown in Figure 5, the tagged packet remains unchanged as i

Page 45 - Private VLAN Ports

VLAN Topologies and Design Considerations  29Chapter 2: VLANs All ports that are involved in port mirroring must have memberships in the same VLANs.

Page 46

EX2500 Ethernet Switch Configuration Guide30  VLAN Topologies and Design ConsiderationsUse the following procedure to configure the sample network sh

Page 47 - Spanning Tree Protocol

Private VLANs  31Chapter 2: VLANsPrivate VLANsPrivate VLANs provide Layer 2 isolation between the ports within the same broadcast domain. Private VLA

Page 48 - Bridge Priority

EX2500 Ethernet Switch Configuration Guide32  Private VLANsPrivate VLAN Configuration GuidelinesThe following guidelines apply when configuring priva

Page 49 - Port Path Cost

Spanning Tree Overview  33Chapter 3Spanning Tree ProtocolWhen multiple paths exist on a network, Spanning Tree Protocol configures the network so tha

Page 50 - Rules for VLAN Tagged Ports

EX2500 Ethernet Switch Configuration Guide34  Spanning Tree OverviewThe relationship between port, trunk groups, VLANs, and spanning trees is shown i

Page 51 - Port State Changes

Spanning Tree Overview  35Chapter 3: Spanning Tree ProtocolPort PriorityThe port priority helps determine which bridge port becomes the root or desig

Page 52 - RSTP Configuration Example

Table of ContentsTable of Contents vPVRST Configuration Guidelines ...40Configuring PVRST

Page 53 - Per VLAN Rapid Spanning Tree

EX2500 Ethernet Switch Configuration Guide36  Spanning Tree Overview Each STG must have a VLAN assigned to it before it becomes functional. You cann

Page 54 - Configuring PVRST

Rapid Spanning Tree Protocol  37Chapter 3: Spanning Tree Protocol When you remove a port from a VLAN that belongs to an STG, that port is removed fr

Page 55 - MSTP Configuration Guidelines

EX2500 Ethernet Switch Configuration Guide38  Rapid Spanning Tree ProtocolPort Type and Link TypeSpanning tree configuration includes the following p

Page 56

Per VLAN Rapid Spanning Tree  39Chapter 3: Spanning Tree ProtocolPer VLAN Rapid Spanning TreePer VLAN Rapid Spanning Tree Plus Protocol (PVRST+) enha

Page 57 - Fast Uplink Convergence

EX2500 Ethernet Switch Configuration Guide40  Per VLAN Rapid Spanning TreeIn Figure 8, VLAN 1 and VLAN 2 belong to different Spanning Tree Groups. Th

Page 58 - Configuration Guidelines

Multiple Spanning Tree Protocol  41Chapter 3: Spanning Tree ProtocolMultiple Spanning Tree ProtocolMultiple Spanning Tree Protocol (MSTP) extends Rap

Page 59 - Ports and Trunking

EX2500 Ethernet Switch Configuration Guide42  Multiple Spanning Tree ProtocolFigure 9 shows how multiple spanning trees can provide redundancy withou

Page 60 - Built-In Fault Tolerance

Fast Uplink Convergence  43Chapter 3: Spanning Tree ProtocolAdd server ports 1 and 2 to VLAN 1. Add uplink ports 19 and port 20 to VLAN 1.ex2500(conf

Page 61 - TRUNK 1: PORTS 1, 11, AND 18

EX2500 Ethernet Switch Configuration Guide44  Fast Uplink ConvergenceConfiguration GuidelinesWhen you enable Fast Uplink Convergence, the EX2500 swit

Page 62

Trunking Overview  45Chapter 4Ports and TrunkingTrunk groups can provide super-bandwidth, multi-link connections between switches or other trunk-capa

Page 63 - LACP Overview

vi  Table of ContentsEX2500 Ethernet Switch Configuration GuideChapter 6 Remote Monitoring 67RMON Overview ...

Page 64 - Actor Switch Partner Switch 1

EX2500 Ethernet Switch Configuration Guide46  Trunking OverviewEach packet’s particular MAC or IP address information results in selecting one line i

Page 65 - Configuring LACP

Port Trunking Configuration Example  47Chapter 4: Ports and Trunking Each trunk inherits its port configuration (speed, flow control, tagging) from

Page 66

EX2500 Ethernet Switch Configuration Guide48  Configurable Trunk Hash AlgorithmExamine the resulting information. If any settings are incorrect, make

Page 67 - Quality of Service

Link Aggregation Control Protocol  49Chapter 4: Ports and TrunkingYou can select a minimum of one or a maximum of two parameters to create one of the

Page 68 - Permit/Deny

EX2500 Ethernet Switch Configuration Guide50  Link Aggregation Control ProtocolA port’s Link Aggregation Identifier (LAG ID) determines how the port

Page 69 - IP Standard ACLs

Link Aggregation Control Protocol  51Chapter 4: Ports and TrunkingUse the following command to check whether the ports are trunked: ex2500# show lacp

Page 70 - IP Extended ACLs

EX2500 Ethernet Switch Configuration Guide52  Link Aggregation Control Protocol1. Define the admin key on port 7. Only ports with the same admin key

Page 71 - Assigning ACLs to a Port

QoS Overview  53Chapter 5Quality of ServiceQuality of Service features allow you to allocate network resources to mission-critical applications at th

Page 72 - ACL Configuration Examples

EX2500 Ethernet Switch Configuration Guide54  Using ACL FiltersFigure 11: QoS ModelThe basic QoS model works as follows:  Classify traffic:  Read

Page 73 - Chapter 5: Quality of Service

Using ACL Filters  55Chapter 5: Quality of ServiceEach ACL contains rules that define the matching criteria for data packets. The ACL checks each pac

Page 74 - Using ACL Filters

List of Figures  viiList of FiguresFigure 1: Default VLAN Settings...26Figure 2: Por

Page 75 - Configuring Storm Control

EX2500 Ethernet Switch Configuration Guide56  Using ACL FiltersIP Extended ACLsThe switch supports up to 128 IP ACLs (standard and extended), numbere

Page 76

Using ACL Filters  57Chapter 5: Quality of Service Understanding ACL PriorityEach ACL has a unique priority value, based on its number. The lower the

Page 77 - Per Hop Behavior

EX2500 Ethernet Switch Configuration Guide58  Using ACL FiltersWhen you assign an ACL to a port, the ACL acts only upon ingress traffic, not egress t

Page 78 - DSCP Mapping

Using ACL Filters  59Chapter 5: Quality of Service1. Configure an Access Control List. ex2500(config)# access-list ip 150 standard ex2500(config-std-

Page 79 - VLAN Identifier (VID)

EX2500 Ethernet Switch Configuration Guide60  Using ACL Filtersex2500(config-if)# exitACL Example 4—Blocking All Except Certain PacketsUse this confi

Page 80 - Queuing and Scheduling

Using Storm Control Filters  61Chapter 5: Quality of ServiceUsing Storm Control FiltersThe EX2500 switch provides filters that can limit the number o

Page 81 - Remote Monitoring

EX2500 Ethernet Switch Configuration Guide62  Using DSCP Values to Provide QoSUsing DSCP Values to Provide QoSThe switch uses the Differentiated Serv

Page 82 - RMON Group 1—Statistics

Using DSCP Values to Provide QoS  63Chapter 5: Quality of ServicePer Hop BehaviorThe DSCP value determines the Per Hop Behavior (PHB) of each packet.

Page 83 - Configuring RMON History

EX2500 Ethernet Switch Configuration Guide64  Using DSCP Values to Provide QoSQoS LevelsTable 16 shows the default service levels provided by the swi

Page 84 - Configuring RMON Alarms

Using 802.1p Priority to Provide QoS  65Chapter 5: Quality of ServiceUsing 802.1p Priority to Provide QoSThe EX2500 switch provides Quality of Servic

Page 85 - RMON Group 9—Events

viii  List of FiguresEX2500 Ethernet Switch Configuration Guide

Page 86 - 72  RMON Group 9—Events

EX2500 Ethernet Switch Configuration Guide66  Queuing and SchedulingQueuing and SchedulingThe EX2500 switch has eight output Class of Service (COS) q

Page 87 - Chapter 7

RMON Overview  67Chapter 6Remote MonitoringRemote Monitoring (RMON) allows network devices to exchange network monitoring data. The following topics

Page 88 - FastLeave

EX2500 Ethernet Switch Configuration Guide68  RMON Group 1—StatisticsRMON Group 1—StatisticsThe switch supports collection of Ethernet statistics as

Page 89 - IGMPv3 Snooping

RMON Group 2—History  69Chapter 6: Remote MonitoringRMON Group 2—HistoryThe RMON History Group allows you to sample and archive Ethernet statistics f

Page 90 - Static Multicast Router

EX2500 Ethernet Switch Configuration Guide70  RMON Group 3—Alarms3. View RMON history for the port. ex2500(config)# show rmon historyRMON is enable

Page 91 - IGMP Querier

RMON Group 9—Events  71Chapter 6: Remote MonitoringRMON Group 9—EventsThe RMON Event Group allows you to define events that are triggered by alarms.

Page 92 - 78  IGMP Querier

EX2500 Ethernet Switch Configuration Guide72  RMON Group 9—Events

Page 93 - Detection

IGMP Snooping  73Chapter 7IGMPInternet Group Management Protocol (IGMP) is used by IP Multicast routers to learn about the existence of host group me

Page 94 - UFD Configuration Guidelines

EX2500 Ethernet Switch Configuration Guide74  FastLeaveThe switch can sense IGMP Membership Reports from attached clients and can act as a proxy to s

Page 95 - Monitoring UFD

IGMPv3 Snooping  75Chapter 7: IGMPWith FastLeave enabled on the VLAN, a port can be removed immediately from the port list of the group entry when th

Page 96 - 82  Monitoring UFD

List of Tables  ixList of TablesTable 1: Notice Icons... xiiTable 2:

Page 97 - Appendixes

EX2500 Ethernet Switch Configuration Guide76  IGMP Snooping Configuration ExampleIGMP Snooping Configuration ExampleThis section provides steps to co

Page 98 - 84  Appendixes

IGMP Querier  77Chapter 7: IGMPThe IGMP version is set for each VLAN, and cannot be configured separately for each Mrouter. 2. Verify the configurati

Page 99 - Appendix A

EX2500 Ethernet Switch Configuration Guide78  IGMP Querier

Page 100 - Configuring Port Mirroring

High Availability Overview  79Chapter 8High Availability Through Uplink Failure DetectionThis chapter describes how to use Uplink Failure Detection (

Page 101 - Index on page 89

EX2500 Ethernet Switch Configuration Guide80  Failure Detection PairFigure 14: Uplink Failure Detection ExampleFailure Detection PairTo use UFD, you

Page 102 - 88  Indexes

UFD Configuration Example  81Chapter 8: High Availability Through Uplink Failure Detection Ports that are already members of a trunk group are not a

Page 103 - Index  89

EX2500 Ethernet Switch Configuration Guide82  Monitoring UFD

Page 104 - 90  Index

Appendixes  83Part 2Appendixes “Monitoring Ports with Port Mirroring” on page 85 discusses the main tool for troubleshooting your switch—monitoring

Page 105 - Index  91

EX2500 Ethernet Switch Configuration Guide84  Appendixes

Page 106 - 92  Index

Port Mirroring Overview  85Appendix AMonitoring Ports with Port MirroringThis appendix explains port mirroring to help you monitor ports and troubles

Commentaires sur ces manuels

Pas de commentaire