User Manual
Table Of Contents
- 8-Port Gigabit (PoE+) Ethernet Smart Managed Pro Switch with (2 SFP or 2 Copper Ports and) Cloud Management
- Contents
- 1 Get Started- Available publications
- Model descriptions
- Switch management options and default management mode
- Manage the switch by using the device UI
- About on-network and off-network access
- Access the switch on-network and connected to the Internet- Use a Windows-based computer to access the switch on-network and connected to the Internet
- Use the NETGEAR Insight mobile app to only discover the IP address of the switch
- Use the NETGEAR Switch Discovery Tool to discover the IP address of the switch when it is connected to the Internet
- Discover the switch in a network with a DHCP server using the Smart Control Center
- Use other options to discover the switch IP address
- Access the switch on-network and connected to the Internet when you know the switch IP address
 
- Access the switch off-network and not connected to the Internet
- Credentials for the device UI
- Register the switch
- Change the language of the device UI
- Change the management mode of the switch
- Use the Device View of the device UI
- Configure interface settings
- Access the NETGEAR support website
- Access the user manual online
 
- 2 Configure System Information- View or define system information
- Configure the IP network settings for management access
- Configure the time settings
- Configure denial of service settings
- Configure DNS settings
- Configure green Ethernet settings
- Use the Device View
- Configure Power over Ethernet
- Configure SNMP
- Configure Link Layer Discovery Protocol
- Configure DHCP snooping
- Set up PoE timer schedules
 
- 3 Configure Switching- Configure the port settings and maximum frame size
- Configure link aggregation groups
- Configure VLANs
- Configure Auto-VoIP
- Configure Spanning Tree Protocol
- Configure multicast
- Manage IGMP snooping- Configure IGMP snooping
- Configure IGMP snooping for interfaces
- View, search, or clear the IGMP snooping table
- Configure IGMP snooping for VLANs
- Modify IGMP snooping settings for a VLAN
- Disable IGMP snooping on a VLAN
- Configure one or more IGMP multicast router interfaces
- Configure an IGMP multicast router VLAN
- IGMP snooping querier overview
- Configure an IGMP snooping querier
- Configure an IGMP snooping querier for a VLAN
- Display the status of the IGMP snooping querier for VLANs
 
- Manage MLD snooping- Enable MLD snooping
- Configure MLD snooping for interfaces
- Configure the MLD VLAN settings
- Modify the MLD snooping settings for a VLAN
- Remove MLD snooping from a VLAN
- Configure one or more MLD multicast router interfaces
- Configure an MLD multicast router VLAN
- Configure an MLD snooping querier
- Configure the MLD snooping querier VLAN settings
 
- View, search, and manage the MAC address table
- Configure Layer 2 loop protection
 
- 4 Configure Routing
- 5 Configure Quality of Service
- 6 Manage Device Security- Change the device admin password for the device UI
- Manage the RADIUS settings
- Configure the TACACS+ settings
- Configure authentication lists
- Manage the Smart Control Center
- Configure management access
- Control access with profiles and rules
- Configure port authentication
- Set up traffic control
- Configure access control lists- Use the ACL Wizard to create a simple ACL
- Configure a MAC ACL
- Configure MAC ACL rules
- Configure MAC bindings
- View or delete MAC ACL bindings in the MAC binding table
- Configure a basic or extended IPv4 ACL
- Configure rules for a basic IPv4 ACL
- Configure rules for an extended IPv4 ACL
- Configure an IPv6 ACL
- Configure rules for an IPv6 ACL
- Configure IP ACL interface bindings
- View or delete IP ACL bindings in the IP ACL binding table
- Configure VLAN ACL bindings
 
 
- 7 Monitor the Switch and the Traffic
- 8 Maintain or Troubleshoot the Switch
- A Configuration Examples
- B Specifications and Default Settings
8-Port Gigabit (PoE+) Ethernet Smart Managed Pro Switch with (2 SFP or 2 Copper Ports and) 
Cloud Management 
 Configuration Examples User Manual473
6.  On the RADIUS Server Configuration page, configure a RADIUS server with the following 
settings:
• Server Address. 192.168.10.23
• Secret Configured. Y
es
• Secret. secret123
• Active. Primary
For more information, see 
Manage the RADIUS settings on page  296.
7.  Click the Add
 button.
8.  On the Authentication List page, configure the default list to use RADIUS as the first 
authentication 
method. (See 
Configure authentication lists on page  310.)
This example enables 802.1X-based port security on the switch and prompts the hosts 
connected on ports g5-g8 for an 802.1X-based authentication. Th
e switch passes the 
authentication information to the configured RADIUS server.
Multiple Spanning Tree Protocol
Spanning Tree Protocol (STP) runs on bridged networks to help eliminate loops. If a bridge 
loop occurs, the network can become flooded with traffic. IEEE 802.1s Multiple Spanning 
Tree Protocol (MSTP) supports multiple instances of spanning tree to efficiently channel 
VLAN traffic over different interfaces. Each instance of the spanning tree behaves in the 
manner specified in IEEE 802.1w, Rapid Spanning Tree, with slight modifications in the 
working but not the end effect (chief among the effects is the rapid transitioning of the port to 
the forwarding state). 
The difference between the RSTP and the traditional STP (IEEE 802.1D) is the ability to 
configure 
and 
recognize full-duplex connectivity and ports that are connected to end stations, 
resulting in rapid transitioning of the port to the Forwarding state and the suppression of 
Topology Change Notification. These features are represented by the parameters 
pointtopoint and edgeport. MSTP is compatible to both RSTP and STP. It behaves in a way 
that is appropriate for STP and RSTP bridges. 
An MSTP bridge can be configured to behave entirely as a RSTP bridge or an STP bridge. 
So, an IEEE 802.1s bridge inherently also supports IEEE 802.1w and IEEE 802.1D.
The MSTP algorithm and protocol provide simple and full connectivity 
for 
frames assigned to 
any VLAN throughout a bridged LAN comprising arbitrarily interconnected networking 
devices, each operating MSTP, STP, or RSTP. MSTP allows frames assigned to different 
VLANs to follow separate paths, each based on an independent Multiple Spanning Tree 
Instance (MSTI), within Multiple Spanning Tree (MST) regions composed of LANs and or 
MSTP bridges. These regions and the other bridges and LANs are connected into a single 
Common Spanning Tree (CST). (IEEE DRAFT P802.1s/D13)
MSTP connects all bridges and LANs with a single Common and Internal Spanning 
T
ree 
(CIST). The CIST supports the automatic determination of each MST region, choosing its 
maximum possible extent. The connectivity calculated for the CIST provides the CST for 
interconnecting these regions, and an Internal Spanning Tree (IST) within each region. 










