TL-SG3210 V1 User Guide
Page 16
Enter admin for the User Name and Password, both in the same subnet addresses of the browser, then press the Enter key. Chapter 3 Login to the Switch 3.1 Login 1) To access the configuration utility, open a web-browser and type in the default address http://192.168.0.1 in the address field of the Switch. Figure...
Enter admin for the User Name and Password, both in the same subnet addresses of the browser, then press the Enter key. Chapter 3 Login to the Switch 3.1 Login 1) To access the configuration utility, open a web-browser and type in the default address http://192.168.0.1 in the address field of the Switch. Figure...
TL-SG3210 V1 User Guide
Page 23
...the menu System→User Manage→User Table to load the following page. 16 By default, the default IP address is 192.168.0.1. 4.2 User Manage User Manage functions to configure the user name and password for users to log on to protect the settings of the switch. The guest only ...the Web management page with the local network. 2. If the switch gets the IP address from the Internet, so IP address, subnet mask and default gateway can see the configuration of the switch. The switch provides two access levels: Guest and Admin. the admin can view the information about ...
...the menu System→User Manage→User Table to load the following page. 16 By default, the default IP address is 192.168.0.1. 4.2 User Manage User Manage functions to configure the user name and password for users to log on to protect the settings of the switch. The guest only ...the Web management page with the local network. 2. If the switch gets the IP address from the Internet, so IP address, subnet mask and default gateway can see the configuration of the switch. The switch provides two access levels: Guest and Admin. the admin can view the information about ...
TL-SG3210 V1 User Guide
Page 32
...the switch. 25 After the Key File is recommended. ¾ Configuration Procedure 1. Enter the IP address of PuTTY. keep the default value 22 in the above figure to the switch via Password authentication. Note: 1. Application Example 1 for SSH: ¾ Network Requirements 1. PuTTY client software is downloaded, the user's ...original key of the same type will result in the SSH access to the switch via password authentication using SSH and the SSH function is in the range of 256 to 3072 bits. 2. Enter the login user name and...
...the switch. 25 After the Key File is recommended. ¾ Configuration Procedure 1. Enter the IP address of PuTTY. keep the default value 22 in the above figure to the switch via Password authentication. Note: 1. Application Example 1 for SSH: ¾ Network Requirements 1. PuTTY client software is downloaded, the user's ...original key of the same type will result in the SSH access to the switch via password authentication using SSH and the SSH function is in the range of 256 to 3072 bits. 2. Enter the login user name and...
TL-SG3210 V1 User Guide
Page 165
...the supplicant for the user name. 3. The switch changes the state of the supplicant system with the key and sends the encrypted password (contained in a RADIUS Access-Request packet) with the user name included. Supplicant System EAP Switch RADIUS Authentication Server EAPOL-Start EAP...The supplicant system can not get the response from the switch, the client program encrypts the password of the corresponding port to accepted state to the 802.1X client program. 5. By default, the switch will then send feedbacks (through the switch. (The encryption is authorized. ...
...the supplicant for the user name. 3. The switch changes the state of the supplicant system with the key and sends the encrypted password (contained in a RADIUS Access-Request packet) with the user name included. Supplicant System EAP Switch RADIUS Authentication Server EAPOL-Start EAP...The supplicant system can not get the response from the switch, the client program encrypts the password of the corresponding port to accepted state to the 802.1X client program. 5. By default, the switch will then send feedbacks (through the switch. (The encryption is authorized. ...
TL-SG3210 V1 User Guide
Page 166
....1X function enabled and Guest VLAN configured, after the switch sends a request packet to install 802.1X client program or upgrade their link types. Choose the menu Network Security→802.1X→Global Config to access the other resources. When a supplicant system fails to... to access the specific network resource. In PAP mode, the switch encrypts the password and sends the user name, the randomly-generated key, and the supplicant system-encrypted password to a VLAN, i.e. By default, all the ports connected to the supplicants belong to the RADIUS server for the...
....1X function enabled and Guest VLAN configured, after the switch sends a request packet to install 802.1X client program or upgrade their link types. Choose the menu Network Security→802.1X→Global Config to access the other resources. When a supplicant system fails to... to access the specific network resource. In PAP mode, the switch encrypts the password and sends the user name, the randomly-generated key, and the supplicant system-encrypted password to a VLAN, i.e. By default, all the ports connected to the supplicants belong to the RADIUS server for the...
TL-SG3210 V1 User Guide
Page 169
... port can access the network on this screen: ¾ Authentication Config Primary IP: Enter the IP address of the clients. The default port is forbidden working for its fixed unauthorized status. On this page, you can configure the parameters of authentication server(s). Authentication Port:... Dial-In User Service) server provides the authentication service for the switch via the stored client information, such as the user name, password, etc, with the purpose to control the authentication and accounting status of the authentication server. Figure 11-22 Radius Server The following...
... port can access the network on this screen: ¾ Authentication Config Primary IP: Enter the IP address of the clients. The default port is forbidden working for its fixed unauthorized status. On this page, you can configure the parameters of authentication server(s). Authentication Port:... Dial-In User Service) server provides the authentication service for the switch via the stored client information, such as the user name, password, etc, with the purpose to control the authentication and accounting status of the authentication server. Figure 11-22 Radius Server The following...
TL-SG3210 V1 User Guide
Page 170
....1X Required. Enable/Disable the accounting feature. Enter the IP address of Required. The default port is enabled globally on the switch and for LAG member ports. Set the shared password for the client. 2 Install the 802.1X client Required. The 802.1X function can...to exchange messages. Authentication KEY: ¾ Accounting Config Accounting: Primary IP: Secondary IP: Accounting Port: Accounting Key: Set the shared password for the port of the switch based on the actual network. For the installation guide, please refer to the LAG. 3. Configuration Procedure:...
....1X Required. Enable/Disable the accounting feature. Enter the IP address of Required. The default port is enabled globally on the switch and for LAG member ports. Set the shared password for the client. 2 Install the 802.1X client Required. The 802.1X function can...to exchange messages. Authentication KEY: ¾ Accounting Config Accounting: Primary IP: Secondary IP: Accounting Port: Accounting Key: Set the shared password for the port of the switch based on the actual network. For the installation guide, please refer to the LAG. 3. Configuration Procedure:...
TL-SG3210 V1 User Guide
Page 179
...On the SNMP→SNMP Config→SNMP User page, create SNMP User in the Group and configure the auth/privacy mode and auth/privacy password for the community to access. Click the Edit button to modify the MIB View and the Access right of the Community, and then click the... Step Operation 1 Enable SNMP function globally. 2 Create SNMP View. 3 Create SNMP Group. 4 Create SNMP User. Select the MIB View for the User. Note: The default MIB View of SNMP Community is 1. On the SNMP→SNMP Config→SNMP Group page, create SNMP Group for SNMPv3 and specify SNMP Views...
...On the SNMP→SNMP Config→SNMP User page, create SNMP User in the Group and configure the auth/privacy mode and auth/privacy password for the community to access. Click the Edit button to modify the MIB View and the Access right of the Community, and then click the... Step Operation 1 Enable SNMP function globally. 2 Create SNMP View. 3 Create SNMP Group. 4 Create SNMP User. Select the MIB View for the User. Note: The default MIB View of SNMP Community is 1. On the SNMP→SNMP Config→SNMP Group page, create SNMP Group for SNMPv3 and specify SNMP Views...
TL-SG3210 V1 User Guide
Page 218
.... [TP-LINK] : ifconfig ip 172.31.70.22 mask 255.255.255.0 gateway 172.31.70.1 4) Configure the parameters of the switch. After a while, the prompt "You can only use the port 1 to upgrade" will display. Enter the user name and password (the default user name and password are ... After entering into bootUtil menu, please firstly configure the IP parameters of the FTP server which keeps the upgrade firmware. After upgrading, the [TP-LINK] command will display in the hyper terminal shown as the following figure. Figure C-6 bootUtil Menu As the prompt is displayed for login to the...
.... [TP-LINK] : ifconfig ip 172.31.70.22 mask 255.255.255.0 gateway 172.31.70.1 4) Configure the parameters of the switch. After a while, the prompt "You can only use the port 1 to upgrade" will display. Enter the user name and password (the default user name and password are ... After entering into bootUtil menu, please firstly configure the IP parameters of the FTP server which keeps the upgrade firmware. After upgrading, the [TP-LINK] command will display in the hyper terminal shown as the following figure. Figure C-6 bootUtil Menu As the prompt is displayed for login to the...
TL-SG3210 V1 User Guide
Page 228
... by the switch, and then passed to an authentication server (e.g., RADIUS) for up to 64 different forwarding behaviors. A user name and password is based on the required level of the boot file. The definition of the attribute types, the values that they can carry, and the...Extensible Authentication Protocol over a Spanning Tree network. Boot Protocol (BOOTP) BOOTP is implemented as part of traffic can be set according to the port default, the packet's priority bit (in the appropriate output queue. Data is used to provide bootup information for certain IP or MAC (i.e., Layer 2) ...
... by the switch, and then passed to an authentication server (e.g., RADIUS) for up to 64 different forwarding behaviors. A user name and password is based on the required level of the boot file. The definition of the attribute types, the values that they can carry, and the...Extensible Authentication Protocol over a Spanning Tree network. Boot Protocol (BOOTP) BOOTP is implemented as part of traffic can be set according to the port default, the packet's priority bit (in the appropriate output queue. Data is used to provide bootup information for certain IP or MAC (i.e., Layer 2) ...
TL-SG3210 V1 CLI Reference Guide
Page 18
Make sure the switch and the PC are in the Hyper Terminal window, the factory default value for both of them is admin. Figure 1-5 Log in the Switch 1.1.2 Logon by Telnet To log on to open the Run window. 6 Type the User name and Password in the same LAN. 2. It indicates that you can use the CLI now. The DOS prompt" TP-LINK>" will appear after pressing the Enter button as figure1-5 shown. Click Start → Run to the switch by a Telnet connection, please take the following steps: 1. Figure 1-4 Port Settings 6.
Make sure the switch and the PC are in the Hyper Terminal window, the factory default value for both of them is admin. Figure 1-5 Log in the Switch 1.1.2 Logon by Telnet To log on to open the Run window. 6 Type the User name and Password in the same LAN. 2. It indicates that you can use the CLI now. The DOS prompt" TP-LINK>" will appear after pressing the Enter button as figure1-5 shown. Click Start → Run to the switch by a Telnet connection, please take the following steps: 1. Figure 1-4 Port Settings 6.
TL-SG3210 V1 CLI Reference Guide
Page 20
... Accessing path, Prompt of them is admin) and press the Enter button, then you can also be divided into Interface Ethernet, Interface link-aggregation and some other modes, which is divided into different command modes: User EXEC Mode, Privileged EXEC Mode, Global Configuration Mode, Interface... Configuration Mode and VLAN Database (VLAN Configuration Mode). Type the User name and Password (the factory default value for both of each mode and how to exit the current mode and access the next mode. Mode Accessing Path Prompt Logout...
... Accessing path, Prompt of them is admin) and press the Enter button, then you can also be divided into Interface Ethernet, Interface link-aggregation and some other modes, which is divided into different command modes: User EXEC Mode, Privileged EXEC Mode, Global Configuration Mode, Interface... Configuration Mode and VLAN Database (VLAN Configuration Mode). Type the User name and Password (the factory default value for both of each mode and how to exit the current mode and access the next mode. Mode Accessing Path Prompt Logout...
TL-SG3210 V1 CLI Reference Guide
Page 22
... This switch's security is needed. Admin level allows you are the same as that means they can configure password for a link-aggregation, such as the Spanning Tree, Schedule Mode and so on. In default case, no password is divided into two levels: User level and Admin level. In Global Configuration Mode, you should access...
... This switch's security is needed. Admin level allows you are the same as that means they can configure password for a link-aggregation, such as the Spanning Tree, Schedule Mode and so on. In default case, no password is divided into two levels: User level and Admin level. In Global Configuration Mode, you should access...
TL-SG3210 V1 CLI Reference Guide
Page 24
... Mode from User EXEC Mode. Syntax enable password password no enable password command. Command Mode Global Configuration Mode Example Set the super password as admin to access Privileged EXEC Mode from User EXEC Mode: TP-LINK(config)# enable password admin 12 To return to the default configuration, please use no enable password Parameter password -- Chapter 2 User Interface enable Description The...
... Mode from User EXEC Mode. Syntax enable password password no enable password command. Command Mode Global Configuration Mode Example Set the super password as admin to access Privileged EXEC Mode from User EXEC Mode: TP-LINK(config)# enable password admin 12 To return to the default configuration, please use no enable password Parameter password -- Chapter 2 User Interface enable Description The...
TL-SG3210 V1 CLI Reference Guide
Page 84
... primary-ip ip-addr Parameter ip-addr -- To restore to the default configuration, please use no radius authentication secondary-ip command. The IP ... alternate authentication server. Authentication server provides the authentication service for port 5 as port-based: TP-LINK(config)# interface ethernet 5 TP-LINK(config-if)# dot1x port-method port-based radius authentication primary-ip Description The radius authentication primary...via the stored client information, such as the user name, password, etc, with the purpose to control the authentication and accounting status of the clients.
... primary-ip ip-addr Parameter ip-addr -- To restore to the default configuration, please use no radius authentication secondary-ip command. The IP ... alternate authentication server. Authentication server provides the authentication service for port 5 as port-based: TP-LINK(config)# interface ethernet 5 TP-LINK(config-if)# dot1x port-method port-based radius authentication primary-ip Description The radius authentication primary...via the stored client information, such as the user name, password, etc, with the purpose to control the authentication and accounting status of the clients.
TL-SG3210 V1 CLI Reference Guide
Page 88
... radius accounting key command is used to the default value, please use no radius accounting port. The default port is 1813. TP-LINK(config)# radius accounting secondary-ip 10.20.1.101 radius accounting port Description The radius accounting port command is used to configure the shared password for the switch and the accounting servers to...
... radius accounting key command is used to the default value, please use no radius accounting port. The default port is 1813. TP-LINK(config)# radius accounting secondary-ip 10.20.1.101 radius accounting port Description The radius accounting port command is used to configure the shared password for the switch and the accounting servers to...
TL-SG3210 V1 CLI Reference Guide
Page 89
... response-timeout time no radius response-timeout command. Command Mode Global Configuration Mode Example Configure the shared password for the switch and the accounting servers as 5 seconds: TP-LINK(config)# radius response-timeout 5 show dot1x global Description The show dot1x global command is used to ...restore to the default value, please use no radius response-timeout Parameter time --The maximum time for the switch to wait for the response before resending a request to the supplicant., ranging from the RADIUS authentication and the accounting server as tplink: TP-LINK(config)# radius...
... response-timeout time no radius response-timeout command. Command Mode Global Configuration Mode Example Configure the shared password for the switch and the accounting servers as 5 seconds: TP-LINK(config)# radius response-timeout 5 show dot1x global Description The show dot1x global command is used to ...restore to the default value, please use no radius response-timeout Parameter time --The maximum time for the switch to wait for the response before resending a request to the supplicant., ranging from the RADIUS authentication and the accounting server as tplink: TP-LINK(config)# radius...
TL-SG3210 V1 CLI Reference Guide
Page 178
... is used to add User. User Type, with none and DES options. By default, the option is noAuthNoPriv. By default, the option is v1. SHA authentication mode has a higher security than MD5 mode. By default, the Authentication Mode is used, and DES indicates DES 166 The User in a... Group. The User is connected to . The Security Level of the Group which the User belongs to a remote SNMP engine. cmode -- Authentication Password, ranging from 1 to its Group have the same security level and access right. The User and its Group Name, Security Model and Security Level...
... is used to add User. User Type, with none and DES options. By default, the option is noAuthNoPriv. By default, the option is v1. SHA authentication mode has a higher security than MD5 mode. By default, the Authentication Mode is used, and DES indicates DES 166 The User in a... Group. The User is connected to . The Security Level of the Group which the User belongs to a remote SNMP engine. cmode -- Authentication Password, ranging from 1 to its Group have the same security level and access right. The User and its Group Name, Security Model and Security Level...
TL-SG3210 V1 CLI Reference Guide
Page 179
...SNMP v1 and SNMP v2c adopt community name authentication. The access rights of the user as MD5, the Authentication Password as 11111, the Privacy Mode as DES, and the Privacy Password as authPriv, the Authentication Mode of the community, with read-only and read -write } {mib-view} ...-add command is used . Community Name, ranging from 1 to access. read-only | read -write view1 167 By default, the Privacy Mode is used to View view1: TP-LINK(config)# snmp community-add community1 read -write -- Command Mode Global Configuration Mode Example Add Community community1, and the community ...
...SNMP v1 and SNMP v2c adopt community name authentication. The access rights of the user as MD5, the Authentication Password as 11111, the Privacy Mode as DES, and the Privacy Password as authPriv, the Authentication Mode of the community, with read-only and read -write } {mib-view} ...-add command is used . Community Name, ranging from 1 to access. read-only | read -write view1 167 By default, the Privacy Mode is used to View view1: TP-LINK(config)# snmp community-add community1 read -write -- Command Mode Global Configuration Mode Example Add Community community1, and the community ...