FXC FXC3009 User manual

Intelligent 8+2G Switch
User's Manual
Version 1.0 (Oct. 2004)

2
We make no warranties with respect to this documentation and disclaim any
implied warranties of merchantability, quality, or fitness for any particular purpose.
The information in this document is subject to change without notice. We reserve
the right to make revisions to this publication without obligation to notify any
person or entity of any such changes.
Trademarks or brand names mentioned herein are trademarks or registered
trademarks of their respective companies.

Contents
1. INTRODUCTION..........................................................................................1
1.1 PACKAGE CONTENTS...................................................................................1
2. WHERE TO PLACE THE INTELLIGENT SWITCH..............................3
3. CONFIGURE NETWORK CONNECTION................................................3
3.1 CONNECTING DEVICES TO THE INTELLIGENT SWITCH .................................3
3.2 CONNECTING TO ANOTHER ETHERNET SWITCH/HUB...................................3
3.3 CONNECTING WITH TRUNK CONNECTION .....................................................4
3.4 APPLICATION................................................................................................4
4. ADDING MODULE........................................................................................6
4.1 ADDING MINIGBIC(SFP) MODULE .............................................................6
5. LEDS CONDITIONS DEFINITION.............................................................7
5.1 LEDS DEFINED ............................................................................................7
6. MANAGE / CONFIGURE THE SWITCH ..................................................9
6.1 INTRODUCTION THE MANAGEMENT FUNCTIONS............................................9
6.2 MANAGEMENT WITH CONSOLE CONNECTION.............................................12
6.3 MANAGEMENT WITH HTTP CONNECTION ...................................................36
6.4 ABOUT TELNET INTERFACE........................................................................59
6.5 ABOUT SNMP INTERFACE .........................................................................59
7. SOFTWARE UPDATE AND BACKUP.....................................................60
A. PRODUCT SPECIFICATIONS................................................................61
B. COMPLIANCES.........................................................................................62

1
1. Introduction
This switch is a cost-effect high performance 8TX + 2Gigabit ports 10/100/1000
Mbps Ethernet/Fast Ethernet/Gigabit Ethernet management switch with
Broadcom solution. There are two built-in gigabit ports for high-speed users and
high-speed connections.
This switch supports remote management function by SNMP, Http and Telnet
operations. It supports lots of functions for a L2 switch management, e.g.
VLAN(port-based/802.1Q), System Configuration, Port Configuration, Port
Mirroring, Port Statistics, QoS functions, IGMP snooping. Auto-MDIX function is
also supported for every TX port of the switch for easy cable connection.
1.1 Package Contents
zOne Intelligent Switch
zOne AC power cord
zOne console cable
zOne set of 19inch rackmount kit
zFour rubber feet
zThis user's manual
Installation Procedure
Where to place the switch (Section 2)
↓
Configure the switch
1. Set IP address from console (Section 6.2)
2. Configure from Web Browser (Section 6.3)
↓
Network device connection (Section 3)
↓
Connection Status (Section 5)

2

3
2. Where To Place the Intelligent Switch
This Intelligent Switch can be placed on a flat surface (your desk, shelf or table).
Place the Intelligent Switch at a location with these connection considerations in
mind:
zThe switch configuration does not break the rules as specified in Section 3.
zThe switch is accessible and cables can be connected easily to it.
zThe cables connected to the switch are away from sources of electrical
interference such as radio, computer monitor, and light fixtures.
zThere is sufficient space surrounding the switch to allow for proper ventilation
(the switch may not function according to specifications beyond the
temperature range of 0 to 50 degrees C).
3. Configure Network Connection
3.1 Connecting Devices to the Intelligent Switch
[ Connection Guidelines: ]
zFor 10BaseT connection: Category 3 or 5 twisted-pair Ethernet cable
zFor 100BaseTX connection: Category 5 twisted-pair Ethernet cable
zFor 1000BaseT connection: Category 5e twisted-pair Ethernet cable
zFor UTP cable connection, always limit the cable distance to 100 meters (328
ft) as defined by IEEE specification
zBecause this switch supports Auto MDI/MDI-X detection on each UTP port,
you can use normal straight through cable for both workstation connection and
hub/switch cascading.
3.2 Connecting to Another Ethernet Switch/Hub
This Intelligent Switch can be connected to existing 10Mbps/100Mbps/1000Mbps
hubs/switches. Because all UTP ports on the Intelligent Switch support Auto
MDI/MDI-X function, you can connect from any UTP port of the Intelligent Switch
to the MDI or MDI-X port of another hub/switch with Straight Through or
Crossover cables.

4
Straight-Through cable
Max. 100m
Another Switch
3.3 Connecting with Trunk connection
This switch supports trunk function for high-speed connection between switches
to remove the bottleneck problem of switch-to-switch connection. The bandwidth
of the trunk connection is the total bandwidth of the cables in the trunk. For
example, Port 1,2,3,4 are used for trunk connection and the trunk bandwidth is
200Mbps x 4 = 800Mbps.
Because all UTP ports of the Intelligent Switch support Auto MDI/MDI-X function,
you can connect from the trunking ports of the Intelligent Switch to the trunking
ports of another hub/switch with Straight Through or Crossover cables.
Notes: Please enable and configure the trunk function first before connecting
cables to prevent packet looping between switches.
TO:
Trunking ports
Cat.5 cables
Max. 100 meter ( 328 feet )
Another Switch
3.4 Application
A switch can be used to improve overall network performance. Switches make
intelligent decisions about where to send network traffic based on the destination
address of the packet. As a result, the switch can significantly reduce
unnecessary traffic.
The example below demonstrates the switch ability to segment the network. The
number of nodes on each segment is reduced thereby minimizing network
contention (collisions) and boosting the available bandwidth per port.
With management function of the switch, network administrator is easy to monitor
network status and configure for different applications.

5
Workgroup
Power User
Workgroup
File Server
File Server
Switch
Switch
Gigabit Connection

6
4. Adding Module
4.1 Adding MiniGBIC(SFP) Module
A MiniGBIC module slot for gigabit connection extension is supported at front
panel. You can add a MiniGBIC module to the switch and this switch gets
another gigabit port.
MiniGBIC
slot
Please follow the steps to add the module to the switch.
1. Slide in the module into the module slot.
2. Connect network cable to the port of the module.

7
5. LEDs Conditions Definition
5.1 LEDs Defined
The LEDs provide useful information about the switch and the status of all
individual ports.
LED STATUS CONDITION
Power ON Switch is receiving power.
ON Port has established a valid link.
LINK / ACT
Flashing Packets being received or sent.
ON The connection is Full Duplex.
FDX
OFF The connection is Half Duplex.


9
6. Manage / Configure the switch
6.1 Introduction the management functions
This switch is a L2 management switch. It supports in-band management
function from SNMP, Http and Telnet interface. It also supports out-band
management function from RS232 console interface. Besides, it supports
network configuration functions, like VLAN, Trunking, Port Mirror, QoS, spanning
tree and software backup/update. Users can configuration these functions for
different network applications. The following is a brief introduction about these
functions before the detail operation sections.
1.VLAN (Virtual LAN)
VLAN can divide the switch to several broadcast domains to prevent network
traffic between different user groups. This switch supports Port-based and
802.1Q tag-based VLAN. Users in the same VLAN can transfer data to each
other. The network traffic will be blocked if they are in different VLANs.
2.Trunk
If two switches are cascaded together, the bottleneck will happen at the
cascading connection. If more cables could be used for the cascading
connection, it will reduce the bottleneck problem. In normal case, switches will
become unstable because of traffic looping when more than one cable is
connected between them. If the switches support trunk function, they can treat
these cables as one connection between them. The traffic looping will not
happen between these cables and the switches will work stable with bigger
bandwidth between them.
This switch supports trunk function and users can configure it with the following
steps.
a.Enable trunk function.
b.Select the port partition for trunk.
c.Assign ports to a trunk. For example, assign Port 1,2,3 for Trunk 1.
Notes: About redundant application
The trunk connection supports redundant function. If any trunk cable is broken,
the traffic going through that cable will be transferred to another trunk cable
automatically. For example, if user port Port 6 is assigned to Port 1 in a Trunk
and Port 1 connection breaks, Port 2 will take over the traffic for Port 6
automatically. (It could be used for redundant application.)
3.Spanning Tree Protocol
Spanning tree is a protocol to prevent network loop in network topology. If
network loop happens, it will cause switches in the network unstable because
more and more traffic will loop in the network. If network loop happens,
spanning tree protocol will block one connection in the loop automatically. But

10
it will also cause a 30 seconds delay if any network connection is changed
because of the network topology detection operation of the protocol.
Because there could be more than one switch in the network, users can
configure this function for their network spanning tree application.
4.Port Mirror
This switch operates in store-and-forward algorithm so it is not possible to
monitor network traffic from another connection port. But the port mirror
function could copy packets from some monitored port to another port for
network monitor. This switch also provides DA/SA filtering function for
monitoring the traffic to/from some user
5.QoS
For Quality of Service request in a network, packets could be classified to
different forwarding priorities. For real-time network traffic (like video, audio), it
needs higher priority than normal network traffic. With the definition of packet
priority, it could have 8 priority levels (from 0 to 7). This switch supports two
priority level queues on each port. It could be configured for port-based or
802.1P tagged based. User can define the threshold (0 – 7) between high and
low priority queues. And user can also define the weight of traffic between the
high and low priority queues.
6.Static Mac ID in ARL table
The switch can learn the Mac address from user’s packets and keep these Mac
address in the ARL table for store-and-forward table lookup operation. But
these Mac addresses will be deleted from ARL table after some time when
users do not send any packets to the switch. This operation is called aging and
the time is called aging time. It is 5 minutes normally (it could be changed by
users.) If users want to keep a Mac address always in ARL table for some port,
they can assign the Mac address to ARL table. These Mac ID are called Static
Mac address. This switch supports static Mac address assignment. The static
Mac address assignment will also limit the Mac address could be used on the
assigned port only. For example, assigning “00-c0-f6-11-22-33” to Port 5 will
always keep this Mac ID alive on Port 5 but also limit this Mac address could
work on Port 5 only.
Note: About Static Mac Address Filter-in (port binding) function
There is a “Mac Security Configuration” function for port security. Only these
static Mac addresses can access network through the assigned port. The
other Mac addresses will be forbidden for network access through that port.
This function can be used for port binding security application. Please refer to
Section 6.2 / 6.3 for the details of the Mac address filter-in operation of the
switch.
7.IEEE 802.1x Port Security Function
If the 802.1x function is enabled, the switch will act as an authenticator for
users accessing network through the switch. It will need a RADIUS server for
the authentication function. Users will be asked for username and password
before network access. If the RADIUS server authenticates it, the switch will

11
enable the port for network access. This function is very useful for network
security application to prevent illegal users access network through the switch.
This switch supports MD5, TLS and PEAP authentication types.
8.IGMP Snooping Function
This switch can forward IP multicast packets according to the IP multicast group
definition. The IP multicast group information is learned from the packets of
IGMP active router with the snooping operation. You have to define the routing
port (the port that connecting to the IGMP active device) first for this function.
9.Software Backup/Update
This switch supports backup and update functions for its internal software and
its network configuration. It could be done in three ways.
a.From console when booting : doing by Xmodem protocol and by terminal
program for boot code and run-time code updating.
b.From console/Telnet when running : doing by TFTP protocol and it will need a
TFTP server in network for run-time code and configuration backup/update.
c. From web browser : doing by http protocol and by web browser for run-time
code and configuration backup/update.

12
6.2 Management with Console Connection
Please follow the steps to complete the console hardware connection first.
1. Connect from the console port of the switch to COM port of PC with the
console cable.
2. Start the terminal program of Windows. Create a new connection and select
COM port of PC used for the console. Set the configuration of the terminal as
[38400,8,N,1]. (You can find the terminal program in [Start] -> [Programs] ->
[Accessory Programs] -> [Communication] -> [Terminal]. If you cannot find it,
please install it from your Windows Installation Disk. Please refer to your
Windows user manual for the installation.)
3. Power on the switch.
If everything is correct, the booting screen will appear in the terminal program
when the switch is powered on. It will stop at the following screen after some
initializing messages.
-------------------------------------------------------------------------------------------------------
Booting Program Version 1.01.00, built at 16:06:25, Feb 19 2003
RAM: 0x00000000-0x00800000, 0x0000cc78-0x007f3000 available
FLASH: 0x05800000 - 0x05a00000, 32 blocks of 0x00010000 bytes each.
==> enter ^C to abort booting within 3 seconds ......
Start to run system initialization task.
[System Configuration]
Company Name :
Model Name : Intelligent Switch
MAC Address : 00:C0:F6:01:01:01
Firmware version: 2.20.03 (built at Oct 1 2004 12:51:44)
Press <ENTER> key to start.
UCD-SNMP version 4.1.2
-------------------------------------------------------------------------------------------------------
Press Enter key, user name and password will be requested. The default user
name and password is "admin" / ”123456”.
After login the switch, a prompt will be shown. Because this switch supports
command-line for console interface, you can press “?” or “help” to check the
command list first.
Note: Management with Telnet connection has the same interface as console
connection.

13
With help command, you can find the command list as follow.
-------------------------------------------------------------------------------------------------------
>help
[Command List]
?.............. Help commands
backup......... backup run-time firmware or configuration file
del............ Del commands
find........... Find commands
exit........... Logout
help........... Help commands
logout......... Logout
ping........... Ping a specified host with IP address
reset.......... Reset system or reset factory default setting
set............ Set commands
show........... Show commands
upgrade........ Upgrade run-time firmware or configuration file
>
-------------------------------------------------------------------------------------------------------
Here is the detail about these commands.
1.Backup command
This switch supports TFTP protocol for firmware and configuration update and
backup. You should select backup firmware or configuration first. And provide
the IP address of the TFTP server and the backup file name for the backup
operation.
Enter “backup” at the prompt, the command syntax will be shown.
>backup
Syntax: backup [firmware | config] ip filename
For example, “back config 192.168.1.80 abcd” will backup the configuration to
TFTP server 192.168.1.80 and its file name is “abcd”.
2.Del command
The “del” command can delete staic entries in ARL table, disable Mirror
function, remove ports in a trunk group, remove forwarding ports for trunk port.
Enter “del” at the prompt, the command syntax will be shown.
>del
[Command List]
?.............. Help commands
help........... Help commands
arl............ Delete a specified MAC address from ARL table
vlan........... Destroy a specified VLAN ID
trunk.......... Destroy a specified trunk group of port-based trunk
mactrunk....... Destroy a specified trunk group of MAC-based trunk
trunkforward... Destroy a specified trunk forwarding port
¾Delete static entries in ARL table . . .

14
>del arl
Del ARL [xx-xx-xx-xx-xx-xx]
xx-xx-xx-xx-xx-xx is a assigned static Mac ID in ARL table of the switch. You
can remove it from the table with the command. For example, “del arl 00-11-
22-33-44-55” will delete the static Mac ID “00-11-22-33-44-55” from ARL
table.
¾Remove a VLAN Group . . .
>del vlan
Syntax: del vlan [vlan#]
[vlan#] is the VLAN ID.
¾Remove All Ports in a Port-based Trunk Group . . .
>del trunk
Syntax: Del TRUNK [trunk#]
[trunk#] is the trunk group number and all the trunk ports in this trunk will be
removed by this command. This command is for Port-based trunk. The traffic
assignment in Port-based trunk is based on physical port of the traffic and is
assigned manually. For example,”del trunk 3” will remove all trunk ports from
Trunk 3 and Trunk 3 becomes a null trunk.
¾Remove All Ports in a Mac-based Trunk Group . . .
>del mactrunk
Syntax: del mactrunk [trunk#]
[trunk#] is the trunk group number and all the trunk ports in this trunk will be
removed by this command. The traffic assignment in Mac-based trunk is
based on the Mac address of the traffic. For example, ”del trunk 3” will
remove all trunk ports from Trunk 3 and Trunk 3 becomes a null trunk.
¾Remove All Forwarding Ports from a Port-based Trunk Port . . .
>del trunkforward
Syntax: del trunkforward [port#]
This command will delete the forwarding port list for a Port-based trunk port.
For example, Port 5 is a trunk port in Trunk 3 and Port 1,2,3 are assigned to
go through Port 5 in this trunk. “del trunkforward 5” will delete the forwarding
port list Port 1,2,3 for Port 5 and no any traffic will go through Port 5. If you
want to assign traffic of Port 1,2,3 to go through another trunk port, please
use “set trunkforward” command to add them to another trunk port.
Otherwise, no trunk port will work for the traffic of Port 1,2,3 in the trunk
connection.

15
3.Find command
The “find” command can find a static Mac address in the ARL table.
Enter “find” at the prompt, the command syntax will be shown.
>find
[Command List]
?.............. Help commands
help........... Help commands
arl............ Search a specified MAC address in ARL table
The syntax is as follow.
>find arl
Find ARL [xx-xx-xx-xx-xx-xx]
If the Mac address is a static address in ARL table, it will be shown as follow.
>find arl 00-c0-f6-11-22-33
This MAC [00-c0-f6-11-22-33] is in port [2]!
If the Mac address is not a static address in ARL table, it will be shown as
follow.
>find arl 00-c0-f6-77-88-99
Failed!
4.Exit command
This is a logout command – the same as Logout command.
5.Help command
This is a help command (the same as “?” command) and the switch will prompt
command list for this command.
6.Logout command
This is a logout command – the same as Exit command.
7.Ping command
User can use this command to ping another network device to verify the
network connection and activity. (It is similar to the ping command in MS-DOS.)
Enter “ping” at the prompt, the command syntax will be shown.
>ping
Syntax: ping [-n count] [-l length] [-t] [-w timeout] ip
-n count : Number of echo requests to send.
-l length : Send buffer size, and length is between 64~8148
-t : Ping the specified host until stopped by <ESC> key.
-w : Timeout in milliseconds to wait for each reply.
ip : IP address (xxx.xxx.xxx.xxx)
For example, ping 192.168.1.80. “Ctrl-C” can be used to break continuous ping
operation.
8.Reset command
The command can be used to reset switch or restore factory default setting.

16
Enter “reset” at the prompt, the command syntax will be shown.
>reset
Syntax: reset [configuration | system]
“reset configuration” will restore the configuration to the factory default setting.
“reset system” will reset the switch and the switch will reboot.
9.Set command
This command can be used to configure most functions of the switch. Lots of
sub-commands are needed for this command.
Enter “set” at the prompt, the sub-command list will be shown.
>set
[Command List]
?.............. Help commands
help........... Help commands
admin.......... Set administrator name and password
arl............ Add a static MAC address in ARL table
eth0........... Set network eth0 configuration
idle........... Set idle time for CLI session.
igmp........... Set IGMP configuration
mirror......... Set mirror configuration
age............ Set switch age
automode....... Set Auto Negotiation or Auto Detect mode
port........... Set switch port configuration
qos............ Set QoS configuration
snmp........... Set snmp configuration
trunk.......... Set a port to join/leave a specified port-based trunk group
mactrunk....... Set a port to join/leave a specified MAC-based trunk group
trunkforward... Set a port to join/leave a specified trunking port
vlan........... Set a port to join/leave a specified VLAN Group
1qvlan......... Set 802.1Q
dot1x.......... Set 802.1x Configuration
security....... Set MAC Security Configuration
sta............ Set Spanning Tree setting
http........... Set HTTP Protocol setting
9.1 set ? and set help command
These two commands will show the sub-command list for “set” command.
9.2 set admin command
This command can be used to modify the user name and password for
administrator.
9.3 set arl command
This command is for adding static Mac ID to ARL table of the switch.
It syntax is . . .
>set arl
Set ARL [xx-xx-xx-xx-xx-xx] [port#,port#,...] [high/low]

17
For example, “set ARL 00-c0-f6-11-22-33 5 low” will add a static Mac ID
“00-c0-f6-11-22-33” to ARL table for Port 5 with low priority and this Mac ID
will never be aged out from Port 5.
Note: Because the static Mac address is fixed on the assigned port, the
static Mac address can access network through the assigned port only. If
Mac security function is enabled on the port, only the user with the static
address can access network through the port.
9.4 set eth0 command
This command is used to configure IP address of the switch.
Its syntax is . . .
>set eth0
[Syntax]set eth0 [arg_1 data_1] [arg_1 data_1] ... [arg_n data_n]
[Argument List]
ip............. Set IP Address
netmask........ Set netmask
gateway........ Set gateway IP address
For example, “set eth0 ip 192.168.1.250 netmask 255.255.255.0 gateway
192.168.1.154” will set these parameters as the IP address configuration of
the switch. After the command, you can use “show net” to verify the
setting.
Note: We suggest you to reset the switch after modifying IP configuration.
9.5 set idle command
This command is used to set idle time for console connection. If no any key
operation in this idle time, the switch logout automatically for security.
Its syntax is . . .
>set idle
Syntax: Set idle [timeout value]
For example, “set idle 300” will change the idle time to 300 seconds. It is 10
minutes default. Its valid range is 30 ~ 3600 seconds.
9.6 set igmp command
This command is used to set the IGMP function of the switch.
Its syntax is . . .
>set igmp
[Command List]
enable......... Enable IGMP function
disable........ Disable IGMP function
routerport..... Set IGMP router port
Table of contents
Other FXC Switch manuals