HP PROCURVE 2300 Bedienungsanleitung Seite 1

Stöbern Sie online oder laden Sie Bedienungsanleitung nach Software HP PROCURVE 2300 herunter. HP PROCURVE 2300 User's Manual Benutzerhandbuch

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 270
  • Inhaltsverzeichnis
  • FEHLERBEHEBUNG
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 0
Release Notes:
Version F.05.70 Software
for the ProCurve Series 2300 and 2500 Switches
These release notes include information on the following:
Downloading switch software and Documentation from the Web (Page 1)
Enhancements in Release F.05.xx (Page 6)
Enhancements in Release F.04.08 (Page 72)
Enhancements in Release F.02.11 (Page 148)
Enhancements in Release F.02.02 (Page 164)
Updates and corrections for the Management and Configuration Guide (page 220)
Software fixes for Series 2500 switch software releases (page 226)
Note
Starting with Software version F.05.50, FEC trunks (Cisco Systems’ FastEtherChannel for aggregated links) are
no longer supported, and generation of CDP (Cisco Discovery Protocol) packets are no longer supported. In
their place are IEEE standards based LACP aggregated links (as well as statically configured trunks) and
generation of LLDP packets for device discovery.
For more information, please see: ftp://ftp.hp.com/pub/networking/software/LLDP-and-LACP-statement.pdf.
Caution: Archive Pre-F.05.17 Configuration Files
A configuration file saved while using release F.05.17 or later software is not backward-compatible with earlier
software versions. For this reason, ProCurve recommends that you archive the most recent configuration on
switches using software releases earlier than F.05.17 before you update any switches to software release
F.05.17 or later.
For the latest information on using your ProCurve product please check its "Frequently Asked Questions" (FAQ)
page. Go to the ProCurve Web site at http://www.procurve.com/manuals. Click on Technical support, then
FAQs and select your product from the list presented.
Seitenansicht 0
1 2 3 4 5 6 ... 269 270

Inhaltsverzeichnis

Seite 1 - Release Notes:

Release Notes:Version F.05.70 Softwarefor the ProCurve Series 2300 and 2500 SwitchesThese release notes include information on the following: Downloa

Seite 2

ixRelease F.02.13 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 236Rele

Seite 3 - Warranty

89 Enhancements in Release F.04.08Configuring Secure Shell (SSH)Figure 35. Examples of Visual Phonetic and Hexadecimal Conversions of the Switch’

Seite 4 - Contents

90Enhancements in Release F.04.08Configuring Secure Shell (SSH)SSH Client Contact Behavior. At the first contact between the switch and an SSH cli

Seite 5

91 Enhancements in Release F.04.08Configuring Secure Shell (SSH)Note on Port NumberThe ip ssh key-size command affects only a per-session, internal

Seite 6

92Enhancements in Release F.04.08Configuring Secure Shell (SSH)5. Configuring the Switch for SSH AuthenticationNote that all methods in this secti

Seite 7

93 Enhancements in Release F.04.08Configuring Secure Shell (SSH)(For more on these topics, refer to “Further Information on SSH Client Public-Key A

Seite 8

94Enhancements in Release F.04.08Configuring Secure Shell (SSH)Figure 37. Configuring for SSH Access Requiring a Client Public-Key Match and Man

Seite 9

95 Enhancements in Release F.04.08Configuring Secure Shell (SSH)Further Information on SSH Client Public-Key AuthenticationThe section titled “5. C

Seite 10

96Enhancements in Release F.04.08Configuring Secure Shell (SSH)b. Uses MD5 to create a hash version of this information.c. Returns the hash versio

Seite 11

97 Enhancements in Release F.04.08Configuring Secure Shell (SSH)1. Use your SSH client application to create a public/private key pair. Refer to th

Seite 12 - Software Management

98Enhancements in Release F.04.08Configuring Secure Shell (SSH)Note on Public KeysThe actual content of a public key entry in a public key file is

Seite 13 - TFTP Download from a Server

xRelease F.05.37 (Not a General Release) . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 253Release F.05.38 (Never

Seite 14

99 Enhancements in Release F.04.08Configuring Secure Shell (SSH)Replacing or Clearing the Public Key File. The client public-key file remains in th

Seite 15

100Enhancements in Release F.04.08Configuring Secure Shell (SSH)Messages Related to SSH OperationMessage Meaning00000K Peer unreachable.Indicates

Seite 16

101 Enhancements in Release F.04.08Configuring Secure Shell (SSH)Troubleshooting SSH OperationSee also “Messages Related to SSH Operation” on page

Seite 17

102Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingConfiguring RADIUS Authentication and AccountingRADIUS (Remote A

Seite 18 - LLDP Terminology

103 Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingNoteThe Series 2500 switches do not support RADIUS security for

Seite 19 - LLDP Configuration Options

104Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingSwitch Operating Rules for RADIUS You must have at least one RA

Seite 20 - LLDP Standards Compatibility

105 Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingConfiguring the Switch for RADIUS Authentication• If you need to

Seite 21 - LLDP Operating Rules

106Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingOutline of the Steps for Configuring RADIUS AuthenticationThere

Seite 22 - LLDP Operation and Commands

107 Enhancements in Release F.04.08Configuring RADIUS Authentication and Accountingzero and then trying to log on again. As an alternative, you can

Seite 23 - Viewing LLDP-detected Devices

108Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingFor example, suppose you have already configured local passwords

Seite 24

1 Software ManagementSoftware ManagementCaution: Archive Pre-F.05.17 Configuration Files A configuration file saved while using release F.05.17 or

Seite 25 - Disable Auto-MDIX

109 Enhancements in Release F.04.08Configuring RADIUS Authentication and Accounting2. Configure the Switch To Access a RADIUS ServerThis section de

Seite 26 - New Console Option

110Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingFor example, suppose you have configured the switch as shown in

Seite 27 - Syslog Operation

111 Enhancements in Release F.04.08Configuring RADIUS Authentication and Accounting3. Configure the Switch’s Global RADIUS ParametersYou can config

Seite 28

112Enhancements in Release F.04.08Configuring RADIUS Authentication and Accountingradius-server retransmit < 1 .. 5 > If a RADIUS server fai

Seite 29 - ■ Switch Series 2800

113 Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingFigure 46. Listings of Global RADIUS Parameters Configured In

Seite 30 - Configuring Syslog Logging

114Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingFor local authentication, the switch uses the Operator-level and

Seite 31 - Operating Notes for Syslog

115 Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingNoteThis section assumes you have already: Configured RADIUS au

Seite 32

116Enhancements in Release F.04.08Configuring RADIUS Authentication and Accounting System accounting: Provides records containing the information

Seite 33

117 Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingOutline of the Steps for Configuring RADIUS Accounting1. Configu

Seite 34

118Enhancements in Release F.04.08Configuring RADIUS Authentication and Accounting1. Configure the Switch To Access a RADIUS ServerBefore you conf

Seite 35

2Software Management Use the download utility in ProCurve Manager Plus.NoteDownloading new software does not change the current switch configurat

Seite 36

119 Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingFigure 47. Example of Configuring for a RADIUS Server with a N

Seite 37

120Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingDetermine how you want the switch to send accounting data to a R

Seite 38

121 Enhancements in Release F.04.08Configuring RADIUS Authentication and Accounting Updates: In addition to using a Start-Stop or Stop-Only trigge

Seite 39

122Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingFigure 50. Example of General RADIUS Information from Show Rad

Seite 40

123 Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingTerm DefinitionRound Trip Time The time interval between the mos

Seite 41 - General Features

124Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingRADIUS AuthenticationSyntax: show authentication Displays the pr

Seite 42 - Authenticator Operation

125 Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingRADIUS AccountingSyntax: show accounting Lists configured accoun

Seite 43

126Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingChanging RADIUS-Server Access OrderThe switch tries to access RA

Seite 44

127 Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingFigure 58. Example of New RADIUS Server Search OrderMessages R

Seite 45

128Enhancements in Release F.04.08Configuring RADIUS Authentication and AccountingTroubleshooting RADIUS OperationSymptom Possible CauseThe switch

Seite 46 - Note on 802.1X and LACP

3 Software ManagementXmodem Download From a PC or Unix WorkstationThis procedure assumes that: The switch is connected via the Console RS-232 port

Seite 47

129 Enhancements in Release F.04.08IP Preserve: Retaining VLAN-1 IP Addressing Across Configuration File DownloadsIP Preserve: Retaining VLAN-1 IP

Seite 48

130Enhancements in Release F.04.08IP Preserve: Retaining VLAN-1 IP Addressing Across Configuration File DownloadsFor example, consider Figure 60:F

Seite 49

131 Enhancements in Release F.04.08IP Preserve: Retaining VLAN-1 IP Addressing Across Configuration File DownloadsIf you apply this configuration f

Seite 50

132Enhancements in Release F.04.08Configuring Port-Based Priority for Incoming PacketsConfiguring Port-Based Priority for Incoming PacketsWhen net

Seite 51

133 Enhancements in Release F.04.08Configuring Port-Based Priority for Incoming PacketsOutbound Port Queues and Packet Priority SettingsSeries 2500

Seite 52

134Enhancements in Release F.04.08Configuring Port-Based Priority for Incoming PacketsOperating Rules for Port-Based Priority on Series 2500 Switc

Seite 53

135 Enhancements in Release F.04.08Configuring Port-Based Priority for Incoming PacketsFor example, suppose you wanted to configure ports 10 -12 on

Seite 54

136Enhancements in Release F.04.08Using the "Kill" Command To Terminate Remote SessionsUsing the "Kill" Command To Terminate R

Seite 55 - Introduction

137 Enhancements in Release F.04.08Configuring Rapid Reconfiguration Spanning Tree (RSTP)Configuring Rapid Reconfiguration Spanning Tree (RSTP)This

Seite 56

138Enhancements in Release F.04.08Configuring Rapid Reconfiguration Spanning Tree (RSTP)The IEEE 802.1D version of Spanning Tree (STP) can take a

Seite 57

4Software ManagementSaving Configurations While Using the CLIThe switch operates with two configuration files: Running-Config File: Exists in vol

Seite 58

139 Enhancements in Release F.04.08Configuring Rapid Reconfiguration Spanning Tree (RSTP)Configuring RSTPThe default switch configuration has Spann

Seite 59

140Enhancements in Release F.04.08Configuring Rapid Reconfiguration Spanning Tree (RSTP)CLI: Configuring RSTPViewing the Current Spanning Tree Con

Seite 60

141 Enhancements in Release F.04.08Configuring Rapid Reconfiguration Spanning Tree (RSTP)Figure 65. Example of the Spanning Tree Configuration Di

Seite 61

142Enhancements in Release F.04.08Configuring Rapid Reconfiguration Spanning Tree (RSTP)Reconfiguring Whole-Switch Spanning Tree Values. You can c

Seite 62

143 Enhancements in Release F.04.08Configuring Rapid Reconfiguration Spanning Tree (RSTP)NoteExecuting the spanning-tree command alone enables Span

Seite 63

144Enhancements in Release F.04.08Configuring Rapid Reconfiguration Spanning Tree (RSTP)Reconfiguring Per-Port Spanning Tree Values. You can confi

Seite 64

145 Enhancements in Release F.04.08Configuring Rapid Reconfiguration Spanning Tree (RSTP)Note on Path CostRSTP implements a greater range of path c

Seite 65

146Enhancements in Release F.04.08Configuring Rapid Reconfiguration Spanning Tree (RSTP)Menu: Configuring RSTP1. From the console CLI prompt, ente

Seite 66 - Only 802.1X Devices

147 Enhancements in Release F.04.08Configuring Rapid Reconfiguration Spanning Tree (RSTP)7. Press the [Tab] key or use the arrow keys to go to the

Seite 67

148Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)F

Seite 68 - Connections to Other Switches

5 Software ManagementProCurve Switch, Routing Switch, and Router Software KeysSoftware LetterProCurve Networking ProductsC 1600M, 2400M, 2424M, 400

Seite 69

149 Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)To use fast-uplink STP on a Series 2500 switch, configure fast-uplink (M

Seite 70

150Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)When single-instance spanning tree (STP) is running in a network and a f

Seite 71

151 Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)Operating Rules for Fast Uplink A switch with ports configured for fast

Seite 72

152Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)Menu: Viewing and Configuring Fast-Uplink STPYou can use the menu to qui

Seite 73

153 Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)3. If the Protocol Version is set to RSTP (as shown in figure 70), do th

Seite 74

154Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)Figure 72. The Spanning Tree Operation Screen4. On the ports and/or tr

Seite 75

155 Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)Figure 73. Example of STP Enabled with Two Redundant Links Configured

Seite 76 - Status Indicator Meaning

156Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)To View Fast-Uplink STP Status. Continuing from figures 72 and 73 in the

Seite 77 - ■ The switch reboots

157 Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)In figure 75:• Port 1 and Trk1 (trunk 1; formed from ports 2 and 3) are

Seite 78

158Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)Figure 77. Example of a Show Spanning-Tree Listing for the Topology Sh

Seite 79

6Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.61 through F.05.70Enhancements in Release F.05.05 through F.05.70Enha

Seite 80

159 Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)Figure 78. Example of a Configuration Supporting the STP Topology Show

Seite 81

160Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)Syntax: spanning-tree e <port/trunk-list> mode uplink Enables STP

Seite 82 - IGMP Version 3 Support

161 Enhancements in Release F.02.11Fast-Uplink Spanning Tree Protocol (STP)Fast-Uplink TroubleshootingSome of the problems that can result from inc

Seite 83

162Enhancements in Release F.02.11The Show Tech Command for Listing Switch Configuration and Operating DetailsThe Show Tech Command for Listing Sw

Seite 84

163 Enhancements in Release F.02.11The Show Tech Command for Listing Switch Configuration and Operating Details1. In Hyperterminal, click on Transf

Seite 85

164Enhancements in Release F.02.02Documentation for Enhancements in Release F.02.02Enhancements in Release F.02.02Documentation for Enhancements i

Seite 86 - Friendly port names assigned

165 Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityTACACS+ Authentication for Centralized C

Seite 87 - Friendly Port Name

166Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityWith authentication configured on the sw

Seite 88

167 Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityTerminology Used in TACACS Applications:

Seite 89

168Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityGeneral System RequirementsTo use TACACS

Seite 90 - ■ DES (56-bit)

7 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Implementation of LLDPFor network device discovery

Seite 91 - Public Key Format Requirement

169 Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityTACACS+ OperationTACACS+ in Series 2500

Seite 92

170Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access Security2. Ensure that the switch is configured

Seite 93

171 Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityCautionYou should ensure that the switch

Seite 94

172Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityConfiguring TACACS+ on the SwitchThe swi

Seite 95

173 Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityViewing the Switch’s Current Authenticat

Seite 96

174Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityConfiguring the Switch’s Authentication

Seite 97 - Host Public Key

175 Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityTable 13. Primary/Secondary Authentica

Seite 98 - Note on the Public Key Format

176Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityFor example, here is a set of access opt

Seite 99

177 Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityConfiguring the Switch’s TACACS+ Server

Seite 100 - Switch’s Public Key

178Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access Security Name Default Rangehost <ip-addr>

Seite 101 - ■ Execute no ip ssh

8Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60MIB (Management Information Base): An internal data

Seite 102 - Note on Port Number

179 Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityAdding, Removing, or Changing the Priori

Seite 103

180Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityTo configure westside as a global encryp

Seite 104

181 Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityHow Authentication OperatesGeneral Authe

Seite 105

182Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access Security• If the username/password pair received

Seite 106

183 Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityUsing the Encryption KeyGeneral Operatio

Seite 107 - Bit Size Public Index

184Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityFor example, you would use the next comm

Seite 108

185 Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityMessagesThe switch generates the CLI me

Seite 109 - Note on Public Keys

186Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access SecurityTroubleshooting TACACS+ OperationAll Use

Seite 110

187 Enhancements in Release F.02.02TACACS+ Authentication for Centralized Control of Switch Access Security The time quota for the account has bee

Seite 111

188Enhancements in Release F.02.02CDP (Updated by Software Version F.05.50)CDP (Updated by Software Version F.05.50)Software version F.02.02 for t

Seite 112 - Troubleshooting SSH Operation

ii © Copyright 2001-2009 Hewlett-Packard Development Company, LP. The information contained herein is subject to change without notice.Publicatio

Seite 113 - ■ Port-Access

9 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Table 1. Viewable Data Available for LLDP Adverti

Seite 114 - Terminology

189 Enhancements in Release F.02.02New Time Synchronization Protocol OptionsTimeP Time SynchronizationYou can either manually assign the switch to

Seite 115 - Preparation:

190Enhancements in Release F.02.02New Time Synchronization Protocol Options•TimeP: DHCP or Manual3. Configure the remaining parameters for the ti

Seite 116

191 Enhancements in Release F.02.02New Time Synchronization Protocol OptionsTable 15. SNTP ParametersMenu: Viewing and Configuring SNTPTo View, E

Seite 117

192Enhancements in Release F.02.02New Time Synchronization Protocol OptionsFigure 88. The System Information Screen (Default Values)2. Press [E]

Seite 118

193 Enhancements in Release F.02.02New Time Synchronization Protocol OptionsNote: This step replaces any previously configured server IP address. I

Seite 119 - Telnet and SSH

194Enhancements in Release F.02.02New Time Synchronization Protocol OptionsViewing the Current SNTP ConfigurationThis command lists both the time

Seite 120

195 Enhancements in Release F.02.02New Time Synchronization Protocol OptionsEnabling SNTP in Broadcast Mode. Because the switch provides an SNTP po

Seite 121

196Enhancements in Release F.02.02New Time Synchronization Protocol OptionsSyntax: timesync sntp Selects SNTP as the time synchronization metho

Seite 122

197 Enhancements in Release F.02.02New Time Synchronization Protocol OptionsFigure 93. Example of Specifying the SNTP Protocol Version NumberChan

Seite 123

198Enhancements in Release F.02.02New Time Synchronization Protocol OptionsDisabling the SNTP Mode. If you want to prevent SNTP from being used ev

Seite 124 - Local Authentication Process

10Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60LLDP Operating RulesPort Trunking. LLDP manages t

Seite 125 - Configuring RADIUS Accounting

199 Enhancements in Release F.02.02New Time Synchronization Protocol OptionsTable 16. Timep ParametersMenu: Viewing and Configuring TimePTo View,

Seite 126

200Enhancements in Release F.02.02New Time Synchronization Protocol OptionsFigure 96. The System Information Screen (Default Values)2. Press [E]

Seite 127

201 Enhancements in Release F.02.02New Time Synchronization Protocol Optionsiii. Press [>] to move the cursor to the Poll Interval field, then g

Seite 128

202Enhancements in Release F.02.02New Time Synchronization Protocol OptionsIf SNTP is the selected time synchronization method ), show timep still

Seite 129 - ■ IP address: 10.33.18.151

203 Enhancements in Release F.02.02New Time Synchronization Protocol OptionsFor example, suppose: Time synchronization is configured for SNTP. Yo

Seite 130

204Enhancements in Release F.02.02New Time Synchronization Protocol OptionsHP2512(config)# timesync timep Selects TimeP.HP2512(config)# ip timep m

Seite 131 - ■ Stop-Only:

205 Enhancements in Release F.02.02New Time Synchronization Protocol OptionsDisabling the TimeP Mode. Disabling the TimeP mode means to configure i

Seite 132 - Viewing RADIUS Statistics

206Enhancements in Release F.02.02New Time Synchronization Protocol OptionsAdding and Deleting SNTP Server AddressesAdding Addresses. As mentioned

Seite 133

207 Enhancements in Release F.02.02New Time Synchronization Protocol OptionsMenu Interface Operation with Multiple SNTP Server Addresses Configured

Seite 134

208Enhancements in Release F.02.02Operation and Enhancements for Multimedia Traffic Control (IGMP)Operation and Enhancements for Multimedia Traffi

Seite 135 - RADIUS Authentication

11 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60LLDP Operation and CommandsIn the default configur

Seite 136 - RADIUS Accounting

209 Enhancements in Release F.02.02Operation and Enhancements for Multimedia Traffic Control (IGMP)multicast packets to ports from which a join re

Seite 137

210Enhancements in Release F.02.02Operation and Enhancements for Multimedia Traffic Control (IGMP)Fast-Leave IGMPIGMP Operation Presents a "D

Seite 138 - as both the primary

211 Enhancements in Release F.02.02Operation and Enhancements for Multimedia Traffic Control (IGMP)unnecessary multicast traffic from that group to

Seite 139 - Global RADIUS Encryption Key

212Enhancements in Release F.02.02Operation and Enhancements for Multimedia Traffic Control (IGMP)Forced Fast-Leave IGMPForced Fast-Leave IGMP Fea

Seite 140 - Configuration File Downloads

213 Enhancements in Release F.02.02Operation and Enhancements for Multimedia Traffic Control (IGMP)For example:Figure 106. Listing the Forced Fas

Seite 141

214Enhancements in Release F.02.02Operation and Enhancements for Multimedia Traffic Control (IGMP)CLI: Configuring Per-Port Forced Fast-Leave IGMP

Seite 142

215 Enhancements in Release F.02.02Operation and Enhancements for Multimedia Traffic Control (IGMP)Querier OperationThe function of the IGMP Querie

Seite 143

216Enhancements in Release F.02.02The Switch Excludes Well-Known or Reserved Multicast Addresses from IP Multicast FilteringThe Switch Excludes We

Seite 144

217 Enhancements in Release F.02.02Port Security: Changes to Retaining Learned Static Addresses Across a RebootPort Security: Changes to Retaining

Seite 145

218Enhancements in Release F.02.02Port Security: Changes to Retaining Learned Static Addresses Across a RebootTo remove an address learned using e

Seite 146

12Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Viewing LLDP-detected DevicesNoteSelected LLDP inf

Seite 147 - The kill 2 command

219 Enhancements in Release F.02.02Username Assignment and PromptUsername Assignment and PromptPrior to release F.02.02, assigning a manager or ope

Seite 148 - Overview

220Updates and Corrections for the Management and Configuration GuideUpdates and Corrections for the Management and Configuration Guide This secti

Seite 149

221 Updates and Corrections for the Management and Configuration Guide• Running configuration has been changed and needs to be saved.This message i

Seite 150 - Configuring RSTP

222Updates and Corrections for the Management and Configuration GuideThis change affects the following commands:Restoring the Factory-Default Conf

Seite 151

223 Updates and Corrections for the Management and Configuration GuideGVRP Does Not Require a Common VLANDelete the note at the top of page 9-78 in

Seite 152

224Updates and Corrections for the Management and Configuration GuideNoteDuplicate MAC addresses are likely to occur in VLAN environments where XN

Seite 153

225 Updates and Corrections for the Management and Configuration GuideAlso on page 9-54, add the following item to the bulleted list: When TimeP i

Seite 154

226Software FixesSoftware FixesRelease F.01.07 was the first software release for the ProCurve Series 2500 switchesRelease F.01.08 . . . . . . .

Seite 155

227 Software FixesRelease F.05.19 (Never Released) . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 25

Seite 156 - Note on Path Cost

228Software FixesRelease F.05.64 (Never Released) . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 257

Seite 157

13 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Additional information from the remote device can

Seite 158

229 Software FixesRelease F.01.08Fixed in release F.01.08: 100/1000-T transceiver — When using this 100/1000-T transceiver and negotiating to 100

Seite 159

230Software FixesNoteThe startup-config file saved under version F.02.02 is NOT backward-compatible with previous software versions. HP recommends

Seite 160

231 Software Fixes LACP — Resolves several issues with LACP, including: conversation on a trunk may momentarily fail if a trunk member port goes d

Seite 161

232Software FixesRelease F.02.04 (Beta Release Only)The switch's CDP packets have been modified to better interoperate with older Cisco IOS v

Seite 162

233 Software Fixes IGMP — If there are several IGMP groups in several VLANs, and the switch is acting as Querier, the switch may stop sending IGMP

Seite 163

234Software FixesNoteContact your local Customer Care Center before activating this feature to receive proper configura-tion instructions. Failur

Seite 164 - The asterisk indicates that

235 Software Fixes XRMON — Various XRMON counters display incorrect values. Possible symptoms include network management applications reporting a

Seite 165

236Software FixesRelease F.02.12Fixed in release F.02.12 Monitoring Port — When a config file containing a Monitoring Port configuration is loade

Seite 166 - 5. Press

237 Software Fixes Port Configuration — Changing a port setting from one Auto mode to another may not be reflected in Auto-negotiation's adve

Seite 167

238Software FixesRelease F.04.08Fixed in release F.04.08Modification of Lab troubleshooting commands.Release F.04.09 (Beta Release Only)Fixed in r

Seite 168

14Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Configuring Per-Port LLDP Transmit/ReceiveThis com

Seite 169

239 Software FixesNoteThe startup-config file saved under version F.05.05, or later, is NOT backward-compatible with previous software versions. T

Seite 170

240Software Fixes Crash — If dynamic trunks are configured and the switch is rebooted, the switch may crash with a message similar to:->Softwa

Seite 171 - Operating Notes

241 Software Fixes Link-up polling interval — A delay of up to 1.7 seconds between plugging in a cable (linkbeat established) and traffic being fo

Seite 172 - Fast-Uplink Troubleshooting

242Software Fixes STP/Startup-Config — When a startup-config file containing an 802.1D STP configuration is reloaded that was saved off from the

Seite 173

243 Software FixesRelease F.05.12 (Beta Release Only)Adds the following enhancement: Changes to 802.1X to support Open VLAN ModeRelease F.05.13 (B

Seite 174

244Software Fixes Performance/Crash (PR_4967) — Slow performance may occur when using 10/100 ports or the 100FX transceiver operating at half-d

Seite 175

245 Software Fixes Crash — When setting the host name to a very long (~20 characters) string, the switch may crash with a bus error similar to:-&g

Seite 176 - Access Security

246Software Fixes SNMP — The OID ifAlias is defaulted to "not assigned", causing Network Node Manager to log error messages. (The fix i

Seite 177

247 Software Fixes RSTP/LACP — Turning LACP off, then back on, leaves LACP in Passive mode. This can Trunking — With ports 25 and 26 configured i

Seite 178

248Software FixesRelease F.05.19 (Never Released)Fixed in release F.05.19 Counters (PR_92221) — Counters for J4834A 100/1000 xcvr do not clear .

Seite 179 - General System Requirements

15 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60New Console OptionStarting with Release F.05.23, a

Seite 180 - TACACS+ Operation

249 Software Fixes Syslog (PR_1000003656) — The syslog capability added to F.05.22. Syslog (PR_1000004080) — A timep event log message on syslog

Seite 181 - Note on Privilege Levels

250Software FixesRelease F.05.24 (Not a General Release)Fixed in release F.05.24 Web (PR_1000007144) — When using the Web user interface, VLAN Co

Seite 182

251 Software Fixes SNMP (PR_1000190654) — When switch has the IP address configured on a VLAN other than the "default VLAN", Find/Fix/In

Seite 183

252Software FixesRelease F.05.32 (Not a General Release)Fixed in release F.05.32 TFTP/Config (PR_1000215024) — After a new configuration is loade

Seite 184

253 Software FixesRelease F.05.37 (Not a General Release)Fixed in release F.05.36 CLI (PR_83354) — The command "show mac vlan <VID>&quo

Seite 185

Release F.05.51 (Never Released)Fixed in release F.05.51 Crash (PR_1000297510) — When using the Web User Interface and the switch is set as commander

Seite 186

255 Software FixesRelease F.05.55Fixed in release F.05.55 LLDP (PR_1000310666) — The command "show LLDP" does not display information le

Seite 187

256Software FixesRelease F.05.59Fixed in release F.05.59 Daylight savings (PR_1000364740) — Due to the passage of the Energy Policy Act of 2005,

Seite 188

257 Software FixesDaylight Savings (PR_1000467724) — DST is outdated for the Western-European Time Zone. This change corrects the schedule for the

Seite 189

258Software FixesRelease F.05.69Fixed in release F.05.69 ProCurve Manager (PR_1000768253) — The ProCurve Manager 2.2 Auto Update 5 test communica

Seite 190 - First-Choice TACACS+ Server

16Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Syslog OverviewThe switch’s Event Log records swit

Seite 191

© Copyright 2001-2009 Hewlett-Packard Company, LP. The information contained in this document is subject to change without notice.Part Number: 5990-31

Seite 192 - How Authentication Operates

17 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60no logging < syslog-ip-address > removes onl

Seite 193

18Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60NoteAs of March 2004, the logging facility < fa

Seite 194 - General Operation

iiiDisclaimerThe information contained in this document is subject to change without notice.HEWLETT-PACKARD COMPANY MAKES NO WARRANTY OF ANY KIND

Seite 195 - Authentication

19 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Viewing the Syslog ConfigurationConfiguring Syslog

Seite 196 - Messages

20Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60See Figure 6 below for an example of adding an add

Seite 197

21 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60The Isolated Port Groups feature originally includ

Seite 198

22Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Table 2. Communication Allowed Between Port-Isol

Seite 199 - 1. System Information

23 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Operating Rules for Port Isolation Port Isolation

Seite 200 - Time Protocol Operation

24Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Configuring Port Isolation on the SwitchSteps for

Seite 201

25 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Configuring and Viewing Port-IsolationNoteThe no p

Seite 202 - Table 15. SNTP Parameters

26Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60For example, suppose that the switch is in its def

Seite 203 - – TIMEP

27 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Figure 8. Example of Isolating Ports on a Series

Seite 204

28Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60 Figure 9. Example of Port-Isolation Configurat

Seite 205

iiiContentsSoftware ManagementDownload Switch Documentation and Software from the Web . . . . . . . . . . . . . . . . . . . . . . . . . . . 1View or

Seite 206 - Broadcast as the SNTP mode

29 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Troubleshooting Port-Isolation OperationConfigurin

Seite 207

30Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60General Features802.1X on the Series 2500 switches

Seite 208 - Broadcast

31 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Authenticating One Switch to Another. 802.1X authe

Seite 209

32Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60iv. If the client is successfully authenticated an

Seite 210 - Table 16. Timep Parameters

33 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.602. The RADIUS server then responds with an MD5 acc

Seite 211 - – TIMEP (the default)

34Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60EAP (Extensible Authentication Protocol): EAP enab

Seite 212

35 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60General Operating Rules and Notes When a port on

Seite 213 - Time Sync

36Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60General Setup Procedure for Port-Based Access Cont

Seite 214 - Manual mode enables

37 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.603. Configure the 802.1X authentication type. Optio

Seite 215 - DHCP as

38Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Configuring Switch Ports as 802.1X Authenticators8

Seite 216 - Address Prioritization

ivConfiguring Port Isolation on the Switch . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 24Steps for Confi

Seite 217

39 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.601. Enable 802.1X Authentication on Selected PortsT

Seite 218 - Configured

40Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Syntax: aaa port-access authenticator < port-li

Seite 219 - Control (IGMP)

41 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Syntax: aaa port-access authenticator < port-li

Seite 220

42Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.603. Configure the 802.1X Authentication MethodThis

Seite 221 - Fast-Leave IGMP

43 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.604. Enter the RADIUS Host IP Address(es)If you sele

Seite 222

44Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60802.1X Open VLAN ModeThis section describes how to

Seite 223 - Forced Fast-Leave IGMP

45 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60 3rd Priority: If the port does not have an Autho

Seite 224 - 7 specifies port 7

46Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Table 4. 802.1X Open VLAN Mode Options802.1X Per

Seite 225 - Verification

47 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Open VLAN Mode with Only an Unauthorized-Client VL

Seite 226 - Querier Operation

48Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Operating Rules for Authorized-Client and Unauthor

Seite 227 - Switch Memory Operation

vShow Commands for Port-Access Supplicant . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 66How RADIUS/802.1X Authenticati

Seite 228 - Addresses Across a Reboot

49 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Note:If you use the same VLAN as the Unauthorized-

Seite 229

50Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Setting Up and Configuring 802.1X Open VLAN ModePr

Seite 230

51 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Note that as an alternative, you can configure the

Seite 231 - Configuration Guide

52Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.603. If you selected either eap-radius or chap-radiu

Seite 232 - Time Protocol Changes

53 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Configuring 802.1X Open VLAN Mode. Use these comma

Seite 233 - Passwords

54Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Inspecting 802.1X Open VLAN Mode Operation. For in

Seite 234

55 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Option For Authenticator Ports: Configure Port-Sec

Seite 235

56Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Note on Blocking a Non-802.1X Device If the port’s

Seite 236

57 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Configuring Switch Ports To Operate As Supplicants

Seite 237 - Software Fixes

58Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60• If, after the supplicant port sends the configur

Seite 238

viMessages Related to Prioritization . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 135Troubleshooting Pr

Seite 239

59 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Configuring a Supplicant Switch Port. Note that yo

Seite 240 - Release F.02.02

60Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Syntax: aaa port-access supplicant [ethernet] <

Seite 241

61 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Displaying 802.1X Configuration, Statistics, and C

Seite 242 - Release F.02.03

62Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Syntax: show port-access authenticator (Syntax Con

Seite 243

63 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Viewing 802.1X Open VLAN Mode StatusYou can examin

Seite 244

64Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Note that because a temporary Open VLAN port assig

Seite 245

65 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Figure 15. Example of Showing a VLAN with Ports

Seite 246 - Release F.02.11

66Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Show Commands for Port-Access SupplicantNote on Su

Seite 247 - Release F.02.13

67 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60How RADIUS/802.1X Authentication Affects VLAN Oper

Seite 248

68Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60 VLAN 33 becomes unavailable to port 2 for the du

Seite 249 - Release F.04.08

viiOperating Notes . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Seite 250

69 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60Figure 18. The Active Configuration for VLAN 33

Seite 251

70Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60NotesAny port VLAN-ID changes you make on 802.1X-a

Seite 252

71 Enhancements in Release F.05.05 through F.05.70Enhancements in Release F.05.05 through F.05.60IGMP Version 3 SupportWhen the switch receives an

Seite 253

72Enhancements in Release F.04.08Enhancements in Release F.04.08Enhancement Summary PageFriendly Port Names Enables you to assign optional, meanin

Seite 254 - Release F.05.14

73 Enhancements in Release F.04.08Using Friendly (Optional) Port NamesUsing Friendly (Optional) Port NamesThis feature enables you to assign alphan

Seite 255

74Enhancements in Release F.04.08Using Friendly (Optional) Port NamesConfiguring Friendly Port NamesSyntax: interface [e] <port-list> name &

Seite 256

75 Enhancements in Release F.04.08Using Friendly (Optional) Port NamesDisplaying Friendly Port Names with Other Port DataYou can display friendly p

Seite 257

76Enhancements in Release F.04.08Using Friendly (Optional) Port NamesFigure 23. Example of Friendly Port Name Data for Specific Ports on the Swi

Seite 258 - Release F.05.18

77 Enhancements in Release F.04.08Using Friendly (Optional) Port NamesFor a given port, if a friendly port name does not exist in the running-confi

Seite 259 - Release F.05.22

78Enhancements in Release F.04.08Configuring Secure Shell (SSH)Configuring Secure Shell (SSH)The Series 2500 switches use Secure Shell version 1 (

Seite 260

viiiPort Security: Changes to Retaining Learned Static Addresses Across a Reboot . . . . . 217Recommended Port Security Procedures . . . . . . . . .

Seite 261

79 Enhancements in Release F.04.08Configuring Secure Shell (SSH)NoteSSH in the ProCurve Series 2500 switches is based on the OpenSSH software toolk

Seite 262

80Enhancements in Release F.04.08Configuring Secure Shell (SSH)Terminology SSH Server: An HP Series 2500 switch with SSH enabled. Key Pair: A pa

Seite 263 - Release F.05.34

81 Enhancements in Release F.04.08Configuring Secure Shell (SSH)keys by default, check the application software for a key conversion utility or use

Seite 264

82Enhancements in Release F.04.08Configuring Secure Shell (SSH)The general steps for configuring SSH include:A. Client Preparation1. Install an SS

Seite 265 - Release F.05.52

83 Enhancements in Release F.04.08Configuring Secure Shell (SSH)6. Use your SSH client to access the switch using the switch’s IP address or DNS n

Seite 266 - Release F.05.55

84Enhancements in Release F.04.08Configuring Secure Shell (SSH)Configuring the Switch for SSH OperationSSH-Related Commands in This Sectionshow ip

Seite 267 - Release F.05.61

85 Enhancements in Release F.04.08Configuring Secure Shell (SSH)1. Assigning a Local Login (Operator) and Enable (Manager) PasswordAt a minimum, HP

Seite 268 - Release F.05.68

86Enhancements in Release F.04.08Configuring Secure Shell (SSH)To Generate or Erase the Switch’s Public/Private RSA Host Key Pair. Because the hos

Seite 269 - Release F.05.70

87 Enhancements in Release F.04.08Configuring Secure Shell (SSH)3. Providing the Switch’s Public Key to ClientsWhen an SSH client contacts the swit

Seite 270

88Enhancements in Release F.04.08Configuring Secure Shell (SSH)3. Ensure that there are no line breaks in the text string. (A public key must be a

Kommentare zu diesen Handbüchern

Keine Kommentare