Presentasjon lastes. Vennligst vent

Presentasjon lastes. Vennligst vent

ZyXEL Communication Anders Opsahl

Liknende presentasjoner


Presentasjon om: "ZyXEL Communication Anders Opsahl"— Utskrift av presentasjonen:

1 ZyXEL Communication Anders Opsahl (ao@zyxel.no)
IES-5000 Introduction ZyXEL Communication Anders Opsahl

2 Agenda - Info om IES * Antall og typer linjekort * User Management * Firmware-upgrade - Config * Backup / restore / save - Port-setup * Åpne / stenge porter * Lage profil, og sette profil på port(er) * Hands on* - VLAN og IP * Sette IP og gateway, samt MGMT-VLAN * Fixed og untagged, samt PVID * PVC-setup * Hands on* - Enkel feilsøking * Hva om det ikke går trafikk på en port? * Linjekort ikke blir active

3 Info om IES-5000

4 IES-5000M Front View 10 Slots Chassis Fan Module -48 VDC Input
MSC module Line card 6.5 U

5 Out-of-band Management
MSC1000G Front View ACO Alarm Console port Here is the front view of MSC1000G. There are one console port, one out-of-band management port, two Gigabit Ethernet SPF slot and two Gigabit Ethernet port/SPF slot pairs. The SPF slot has high priority than Gigabit ports. There are also has one alarm in and alarm out interface to send the alarm signal to alarm lights or alarm bells. ACO: Press alarm cut-off button to cancel an alarm. This can stop the sending of the alarm signal current. SPF modules 1000 Base T Ethernet Out-of-band Management VLAN Unaware

6 Typer linjekort: ALC-1248G-53 SLC-1248G-22 SLC-1348G-22 VLC-1324G-53 VLC-1348G-53 ELC-1220G-55

7 ALC-1248G-53 Typer linjekort: Teknologi Generasjon Porter Backplane
Chipset Annex

8 SLC-1248G-22 Typer linjekort: Teknologi Generasjon Porter Backplane
Chipset Annex

9 Typer linjekort: ALC-1248G-53 SLC-1248G-22 SLC-1348G-22 VLC-1324G-53 VLC-1348G-53 VLC-1424G-56 ELC-1220G-55

10 ALC1248G-51/53 Front View Power LED Telco 50 connecter ALC1248G-51
System LED Console port Alarm LED

11 Out-of-band MGMT-port (default IP: 192.168.0.1)
User Management WEB-GUI Telnet FTP SSH SNMP Console Out-of-band MGMT-port (default IP: ) Management IP og VLAN

12 Support multi-users & multi-privilege - Up to 16 user account
User Management (cnt.) Support multi-users & multi-privilege - Up to 16 user account 3 level user privileges - Low: read only - Middle: read/ write - High: read/ write/ user management Support remote authentication (RADIUS) On-line user information In the IES-5000, it support multi-user based on different privilege level. Total 16 user account could be created on it. 3 level user privileges - Low: for read only - Middle: read/ write rights - High: read/ write/ user management rights If we would like to create more than 16 user account logging to the IES, we may use the external radius server to support remote auth. Meanwhile, we are able to monitor the on-line logging user’s information

13 Up to 3 Web sessions supported
User Management (cnt.) Telnet & SSH session share 4 sessions FTP & SFTP session share 1 session Up to 3 Web sessions supported one session per user account The IES-5000 supports both telnet & SSH. If we use SSH session to access the device, then, the session is encrypted. Up to 4 telnet/SSH to access the device simultaneously. Only 1 FTP/SFTP session is supported. Total 3 Web sessions are supported. We can not use the same user name password to access the IES-5000 Web browser simultaneously.

14 Firmware (fw) Kommer i revisions En revision inneholder siste fw til alle kort ftp://ftp.dsl-partner.no/ V3.95(LU.0)C0 V3.95(LU.1)b1 V3.95(LU.0)_0905

15 Firmware upgrade 3 måter å legge opp firmware på: WEB-GUI FTP Console

16 Firmware upgrade

17 Firmware upgrade

18 Firmware upgrade

19 Port / Profile -setup

20 Profile-setup

21 Profile-setup

22 Port-setup

23 Port-copy

24 Port-setup via telnet IES-5000> port adsl set Usage: set <slot-port> <profile> <mode> <slot-port> : example 3-*, 3-3~5,10~15 <profile> : adsl profile name <mode> : gdmt, etsi, auto, adsl2, adsl2+ IES-5000> port adsl set 4-1~10,15~20 Max auto

25 Port-setup via telnet IES-5000> port enable usage: enable <slot-port> <slot-port> : example *-*, 3-*, 3-1,3~5,10~15 IES-5000> port enable *-* IES-5000> port enable 3-* IES-5000> port enable 3-1,3~5,10~15

26 Config IES-5000> config save

27 Backup ftp> get config-0

28 Hands on Last ned siste fw fra ftp ( ftp://ftp.dsl-partner.no/ ) Oppgrader alle kort til siste fw Lag en ADSL-profil kalt “DSLAM-kurs” Hastighet på profil: 15Mbit ned / 1Mbit opp Sett profilen på port nummer 8 på et ADSL-kort Enable port 8 og sjekk sync Config save

29 VLAN og IP

30

31 802.1Q Processs Forwarding Process Ingress Rule Filtering Database
Packet Receive Egress Rule Packet Transmit According to the VID information in the tag, the switch forwards and filters the frames among ports. The ports with the same VID can communicate with each other. IEEE 802.1Q VLAN function contains the following three tasks, Ingress Process, Forwarding Process and Ingress Rule: Classify the received frames belonging to a VLAN Forwarding Process: Decide to filter or forward the frame Egress Rule: Decide if the frames must be sent tagged or untagged

32 Ingress Rule Tagged frame Tagged frame VID VID Untagged frame
PVID Ingress Process identifies if the incoming frames contain tag, and classifies the incoming frames belonging to a VLAN. Each port has its own Ingress rule. If Ingress rule accepts tagged frames only, the switch port will drop all incoming no If Ingress rule accepts all frame types, the switch port simultaneously allows the incoming tagged and untagged frames : When a tagged frame is received on a port, it carries a tag header that has an explicit VID. Ingress Process directly passes the tagged frame to Forwarding Process. An untagged frame does not carry any VID about where it belongs. When a untagged frame is received, Ingress Process inserts a tag contained in the PVID into the untagged frame. Each PVC /Ethernet port has a default VID called PVID (PVC default/Port VID). PVID is assigned to untagged frames or priority tagged frames (frames with null (0) VID) received on this port. After Ingress Process, all frames have 4-bytes tag and VID information will go to Forwarding Process.

33

34 Opprette et VLAN

35 Sette IP og VLAN

36 Sette IP og VLAN IES5000> ip set
usage: set inband <ip>[/<netmask>] [<inband-vid> <gateway-ip>] set outband <ip>[/<netmask>] [<gateway-ip>] <inband-vid> : inband management vlan id <gateway-ip> : default gateway ip IES5000> IES5000> ip set inband /

37 Sette IP og VLAN med “forsikring”
IES5000> sys reboot 300 telnet-1( ) has initiated reboot, system reboot in 300 seconds! IES5000> sys reboot cancel telnet-1( ) has cancelled system reboot!

38 PVC – Permanent Virtual Circuit

39 Permanent Virtual Circuit
PVC is used to create a logical traffic interface Support various PVC for multiple services PVC Categories: PVC - VLAN Bridging PPVC p Priority to ATM QoS mapping PAEPVC - PPPoA forwarding TLSPVC - Transparent VLAN Service DTPVC – Double tag PVC

40 Bridging PVC Up to 8 PVC per DSL port
Each PVC in IES-5000 is a super PVC (IES-2000/3000) - Can join multiple VLAN Each PVC is able to accept and receive - Tag Frames - Untagged Frames Each PVC has its own - Default VLAN - Default Priority Four Priority queues - Applies in single PVC only - Strict priority On IES-5000, the PVC mechanism has a change. In previous products, like IES-2000/3000, it provided port based VLAN. On single PVC, it can join only 1 VLAN except the supper channel. However, a single PVC on IES-5000 is able to join multiple VLAN. This is the main difference. Meanwhile, a DSL port support up to 8 PVCs configured. Each PVC is able to accept and receive both Tag Frames & Untagged Frames. Since the IES-5000 is a PVC based VLAN, so that each PVC has its own PVID and default 802.1q priority. 802.1p 8 priority levels for each PVC mapped to the 4 physical queues. On DSL port/ PVCs, it supports only Strict Priority Queue only.

41 Bridging PVC with VLAN trunking
One PVID/default priority within this PVC One PVC can join multiple VLANs This PVC joins VLAN 1,2,3 PVID = 1, priority=0 DSLAM Untagged with PVID=1 VLAN 2 VLAN 3 Tagged Frame, VLAN 2, & VLAN3 0/33 Each PVC has its default PVID and Priority. Each PVC needs to configure PVID because IES uses VLAN to provide different services for different PVC , meanwhile, a PVC is able or join multiple VLAN. The limitation is 16 VLAN per port no matter how many PVC configured. CPE

42 PVC Application Internet Untagged frame PVID =1 0/33 Untagged frame
Ethernet Port Internet Access VLAN 1 802.1Q VLAN Switch IES-5000 DSL Port 1 Tagged frame VID=2 Untagged frame PVID =1 0/33 Untagged frame PVID =2 0/34 Video Server VLAN 2 CPE PC TV

43 Configurations- Multiple PVCs
Step 1: Default Virtual (VPI/VCI) Step 2: Add new PVC-info Step 3: Final result

44 Hands on Opprett VLAN 100, sett Fix / Tag på uplink Sett IP: x / Gateway: Sett management VLAN 100 Lag en PVC med VPI/VCI: 8/35, PVID 100 Slett default PVC (0/33)

45 Enkel feilsøking

46 Ikke trafikk på en port Er port active? (Port setup)
Er det sync på port? (Port statistics) Er MAC-addressen til modem i riktig VLAN? (MAC-table, PVID) Brukes riktig VPI/VCI –verdier? (Vises MAC-adresse er dette korrekt)

47 Linjekort Nytt kort blir ikke active? (For gammel firmware på linjekort?) Ny type linjekort satt inn i sentral? (Siste fw på MSC-kort?) Kort som har virket, er ikke lenger active? (Lcman enable)

48 ADSL2+ fall back ADSL2+ fall back Bi-directional AAL5 ATM VCs
PPPoA and IPoA PVC to VLAN mapping The IP DSLAM provides ADSL2+ fall back feature in addition to the VDSL2 PTM (Packet Transmission Mode) Server. With ADSL2+ fall back turned on, the IP DSLAM can detect an ADSL modem connected to a subscriber line. Then the IP DSLAM switches the operation mode of the corresponding port to ADSL2+ and establishes the corresponding connection service. This helps Telco operators to provide differentiating services (ADSL service can coexist with VDSL service on the same subscriber line) using a single DSLAM.

49 DSL operational mode Select the port’s DSL operational mode as “adsl2+”, or “auto” to have the IP DSLAM automatically determine the mode. Select the port’s DSL operational mode. Select the mode that the subscriber’s device uses or select auto to have the IP DSLAM automatically determine the mode to use.

50 VC Setup Defining virtual channels (also called Permanent Virtual Circuits or PVCs) allows you to set priorities for different services or subscribers. You can define up to eight channels on each DSL port and use them for different services or levels of service. You set the PVID that is assigned to untagged frames received on each channel. You also set an IEEE 802.1p priority for each of the PVIDs. In this way, you can assign different priorities to different channels (and consequently the services that get carried on them or the subscribers that use them).

51 Link Up Status The Home screen of the web configurator displays a port statistical summary with links to each port showing statistical details.

52 Lab - ADSL2+ Fallback 10.0.0.1/255.255.255.0 0/33 VID = 14 ADSL2+ CPE
x/24

53 SHDSL ATM g.bond

54 SHDSL g.bond Bundling metoder: 4-wire Mpair4 G.bond

55 SHDSL g.bond

56 Lab – ATM g.bond IES-5000 VID = 100 IES-708

57 Lab – ATM g.bond PC VLAN 200, IP: 192.168.200.1 DHCP-server VLAN 100
IES-5000 VID = 200 Enet2 VID = 100 Enet1 IES-708

58 Spørsmål & svar


Laste ned ppt "ZyXEL Communication Anders Opsahl"

Liknende presentasjoner


Annonser fra Google