Strategy Partner :

00-2Product Overview


Chapter 1  Obtaining the Documentation

Hangzhou H3C Technologies Co., Ltd. (hereafter referred to as H3C) provides various ways for you to obtain product documents and new feature releases in a convenient and timely manner. The documentations are available with:

l           CD-ROMs shipped with the devices

l           H3C website

l           Software release notes

1.1  CD-ROM

H3C delivers a CD-ROM together with each device. The CD-ROM contains a complete set of electronic documents of the product, including operation manuals and command manuals. After installing the reader program provided by the CD-ROM, you can search for the desired contents in a convenient way through the reader interface.

The contents in the manual are subject to update on an irregular basis due to product version upgrade or some other reasons. Therefore, the contents in the CD-ROM may not be the latest version. This manual serves the purpose of user guide only. Unless otherwise noted, all the information in the document set does not claim or imply any warranty. For the latest software documentation, go to the H3C website.

1.2  H3C Website

Perform the following steps to query and download the product documentation from the H3C website.

Table 1-1 Acquire product documentation from the H3C website

How to apply for an account

Access the homepage of H3C at http:// www.h3c.com and click the Registration link at the top right. In the displayed page, provide your information and click Submit.

How to get documentation

Approach 1:

In the homepage of H3C at http:// www.h3c.com, select Technical Support & Document > Technical Documents from the navigation menu at the top. Then select a product for its documents.

Approach 2:

In the homepage of H3C at http:// www.h3c.com, select Support > Technical Documents. Then select a product for its documents.

 

1.3  Software Release Notes

With software upgrade, new software features may be added. You can acquire the information about the newly added software features through software release notes.

 


Chapter 2  Correspondence Between Documentation and Software

2.1  Software Version

H3C S5600 Series Ethernet Switches Operation Manual-Release 1602 and H3C S5600 Series Ethernet Switches Command Manual-Release 1602 are for the software version of Release1602 of the S5600 series products.

l           Compared with Release 1510, many new features are added in Release 1602. For details, refer to Table 2-1.

l           Compared with Release 1510, a feature is removed from Release 1602. For details, refer to Table 2-2.

l           Compared with Release 1510, three features are modified in Release 1602. For details, refer to Table 2-3.

Table 2-1 Added features in Release 1602

Added feature in Release 1602

Manual

Specifying the authentication mode for user level switching

01-CLI

Adopting HWTACACS authentication for user level switching

Copyright information is displayed when a Telnet user logs in

02-Login

Banner information is displayed when a user logs in through Web

Auto-negotiation rate configuration for the current port

08-Port Basic Configuration

The port up/down log output function is removed

Packet traffic threshold configuration for ports

Display of the statistics of discarded packets on ports

Configuration of the delay time of sending state-change traps for the current port

Configuring Combo port state change

Inter-device port isolation

10-Port Isolation

New port security modes: macAddressAndUserLoginSecure and macAddressAndUserLoginSecureExt

11-Port Security-Port Binding

Destination MAC address update

13-MAC Address Table Management

Configuring the MAC address of an Ethernet port

STP maintainability

15-MSTP

802.1d-compliant traps

Configuration of the Type-7 LSAs converter features in an NSSA zone

16-Routing Protocol

Support of unicasting protocol messages in a P2MP network

Multicast data packet cache mechanism

17-Multicast Protocol

Support of multicast source lifetime configuration

Support of IGMPv3 Snooping

Support of IGMPv3 Snooping simulated joining

Support of suppressing flooding of unknown multicast traffic in the VLAN

Support of static member port configuration

Support of static router port configuration

Support of VLAN tag configuration for query messages

Online user handshake

18-802.1x and System-Guard

Support of 802.1x re-authentication configuration

Support of 802.1x re-authentication timeout configuration

Quick deployment of EAD

Support of domain delimiter configuration

19-AAA

Support of HWTACACS scheme configuration for ISP domain user level switching

Setting of MAC address format of the Calling-Station-Id (Type 31) field in RADIUS packets

Web authentication

20-Web Authentication

Support of fixed password configuration when a MAC address is used as a user name

21-MAC Address Authentication

Enhanced MAC authentication functions

Display of detailed backup group information

22-VRRP

ARP attack detection

23-ARP

ARP packet rate limiting

Support of sending gratuitous ARP packets periodically

Proxy ARP

Configuration of the TFTP server address and bootfile name for DHCP clients that support auto-configuration

24-DHCP

Support of option 82 in DHCP snooping

IP filtering

DHCP packet rate limiting

Applying ACLs to VLANs

25-ACL

Configuration of inner VLAN information for Layer 2 ACLs

VLAN mapping

26-QoS-QoS Profile

Configuration of burst traffic for port rate limiting and traffic policing

Configuration of priority remarking in VLANs

Redirecting traffic to an aggregation port group and removing the outer VLAN tag after the traffic is redirected to the uplink port or the aggregation port group

Burst function

Configuration of IRF automatic fabric

28-IRF Fabric

Online upgrade of PSE processing software

30-PoE-PoE Profile

Creating a MIB view with the mask of a MIB subtree

32-SNMP-RMON

Encrypting a plain-text password

Adding interface description and interface type in linkUp/linkDown Trap message

Support of the DSA asymmetric key algorithm

34-SSH

Banner information of the FTP server

36-FTP-SFTP-TFTP

Displaying timestamp with the UTC time zone

37-Information Center

Configuration of real-time monitoring of system running status

38-System Maintenance and Debugging

Hot patching

Viewing and diagnosing hot-pluggable transceivers

Selective QinQ

39-VLAN-VPN

Support of multiple types of protocol packets for BPDU Tunneling

Customizing tunnel packet MAC addresses

Eight test types are added in HWPing, including DHCP test, FTP test, HTTP test, DNS test, SNMP test, Jitter test, TCP test, and UDP test

40-HWping

Maximum number of history records that can be saved

IPv6 management

41-IPv6 Management

Smart Link

43-Smart Link-Monitor Link

Monitor Link

 

Table 2-2 Deleted feature from Release 1602

Deleted feature

Manual

CLI language mode setting

38-System Maintenance and Debugging

 

Table 2-3 Modified features in Release 1602

Modified feature

Manual

Support of up to 128 characters in a domain name, compared with the original 24 characters

19-AAA

Sequence of selecting Web files

35-File System Management

Keywords of five commands

22-VRRP

 

2.2  Manual List

Manual name

H3C S5600 Series Ethernet Switches Installation Manual

H3C S5600 Series Ethernet Switches Operation Manual-Release 1602

H3C S5600 Series Ethernet Switches Command Manual-Release 1602

 


Chapter 3  Product Overview

3.1  Preface

H3C S5600 Series Ethernet Switches (hereinafter referred to as the S5600 series) provide multi-layer switching capabilities, and support rich Layer 3 features and enhanced extended functions. They are intelligent network-manageable switches designed for network environments that require high performance, high port density and easy-to-install characteristics.

3.2  Switch Models

Table 3-1 lists the S5600 series Ethernet Switches models.

Table 3-1 Models in the S5600 series

Model

Power supply

Available ports on front panel

Ports on front panel

Combo ports

Console port

H3C S5600-26C

AC and DC dual input power supply (PSL130-AD)

24

24 x 10/100/1000Base-T electrical ports

4 x 1000 Mbps SFP Combo ports

1

H3C S5600-26C-PWR

AC/DC input external PoE power supply (PSL480-AD24P)

24

24 x 10/100/1000Base-T electrical ports

4 x 1000 Mbps SFP Combo ports

1

H3C S5600-26F

AC and DC dual input power supply (PSL130-AD)

24

24 x 1000 Mbps SFP optical ports

4 x 1000 Mbps RJ45 Combo ports

1

H3C S5600-50C

AC and DC dual input power supply (PSL180-AD)

48

48 x 10/100/1000Base-T electrical ports

4 x 1000 Mbps SFP Combo ports

1

H3C S5600-50C-PWR

AC/DC input external PoE power supply (PSL480-AD48P)

48

48 x 10/100/1000Base-T electrical ports

4 x 1000 Mbps SFP Combo ports

1

 

An S5600 series switch provides one 2-port fabric port and one expansion module slot on its rear panel. The available expansion modules you can select include: 8-port 1000 Mbps SFP module, 1-port 10G XENPAK module, and 2-port 10G XFP module.

3.3  Software Features

S5600 Series Ethernet Switches have abundant software features and can meet the requirements of different applications. Table 3-2 summarizes the features provided by each module.

Table 3-2 Service features of the S5600 series

Part

Features

1 CLI

l      CLI

l      Hierarchically grouped commands

l      CLI online help

2 Login

l      Logging into a switch through the Console port

l      Logging into a switch through an Ethernet port by using Telnet or SSH

l      Logging into a switch through the Console port by using modem

l      Logging into a switch through Web or NMS

l      Controlling user login using ACL

3 Configuration File Management

l      Saving, restoring, and deleting the configuration file

4 VLAN

l      IEEE 802.1Q-compliant VLAN

l      Port-based VLAN

l      Protocol-based VLAN

5 IP Address and Performance Configuration

l      Configuring an IP address for a switch

l      Configuring the TCP attributes for a switch

l      Enabling/disabling the switch to receive directed broadcasts

l      Enabling/disabling the switch to send ICMP error messages

6 Voice VLAN

l      Voice VLAN

7 GVRP

l      GARP VLAN Registration Protocol (GVRP)

8 Port Basic Configuration

l      Configuring port auto-negotiation rate

l      Limiting traffic on a port

l      Setting broadcast storm suppression globally

l      Loopback detection supported

l      Cable test

9 Link Aggregation

l      Link Aggregation Control Protocol (LACP)

10 Port Isolation

l      Port isolation group

11 Port Security-Port Binding

l      Multiple security modes

l      MAC address-to-IP address-to-port binding

12 DLDP

l      Device Link Detection Protocol (DLDP)

13 MAC Address Table

l      Manually configuring dynamic, static, and black hole MAC addresses

l      Configuring the aging time for MAC addresses

l      MAC address learning limit

14 Auto Detect

l      Auto detect

l      Auto detect applications in static routing, VRRP, and VLAN interface backup

15 MSTP

l      STP/RSTP/MSTP

l      The following guard functions are available on an MSTP-enabled switch: BPDU guard, root guard, loop guard, TC-BPDU attack guard, and BPDU drop

l      Digest snooping

l      Rapid transition

l      VLAN-VPN TUNNEL

l       H3C-proprietary MSTP path cost standard

16 Routing Protocols.

l      Static route

l      Routing Information Protocol (RIP) v1/v2

l      Open Shortest Path First (OSPF)

l      Border Gateway Protocol (BGP)

l      Routing policy

l      Route capacity limiting

17 Multicast

l      Internet Group Management Protocol Snooping (IGMP Snooping)

l      Internet Group Management Protocol (IGMP)

l      Protocol Independent Multicast-dense mode (PIM-DM)

l      Protocol Independent Multicast-sparse mode (PIM-SM)

l      MSDP

18 802.1x and System Guard

l      802.1X authentication

l      Guest VLAN

l      Quick deployment of EAD

l      Huawei Authentication Bypass Protocol (HABP)

l      System guard

19 AAA

l      Authentication, Authorization, and Accounting (AAA)

l      Remote Authentication Dial-In User Service (RADIUS)

l      Huawei Terminal Access Controller Access Control System (HWTACACS)

l      Endpoint Admission Defense (EAD)

20 Web Authentication

l      Web authentication

21 MAC Address Authentication

l      MAC address authentication

l      Enhanced MAC address authentication

22 VRRP

l      Virtual Router Redundancy Protocol (VRRP)

23 ARP

l      Gratuitous ARP

l      Sending gratuitous ARP packets periodically

l      Manually configuring ARP entries

l      ARP attack detection

l      ARP packet rate limiting

l      Proxy ARP

l      Resilient ARP

24 DHCP

l      DHCP client/BOOTP client

l      DHCP server

l      DHCP relay

l      DHCP Snooping

l      DHCP accounting

l      Using Option184 in DHCP server

l      Using Option82 in DHCP relay and DHCP Snooping

l      DHCP packet rate limitation

25 ACL

l      Basic ACLs

l      Advanced ACLs

l      Layer 2 ACLs

l      User-defined ACLs

l      Applying ACLs on ports

l      Applying ACLs to VLANs

26 QoS-QoS Profile

l      Quality of Service (QoS)

l      QoS profile

27 Mirroring

l      Traffic mirroring

l      Local port mirroring

l      Remote port mirroring

28 IRF Fabric

l      IRF Fabric

l      Peer end detection for stack ports

29 Cluster

l      Huawei Group Management Protocol (HGMP) v2

l      Neighbor Discovery Protocol (NDP)

l      Neighbor Topology Discovery Protocol (NTDP)

30 PoE-PoE Profile

l      Power over Ethernet (PoE)

l       PoE profile

31 UDP Helper

l      Forwarding UDP broadcast packets by using UDP Helper

32 SNMP-RMON

l      Simple Network Management Protocol (SNMP) v3, compatible with SNMP v1/v2

l      Support of Trap parameters configuration

l      Remote monitoring (RMON)