background image

User Manual 

 

7ACL service configuration 

78 

 

www.qtech.ru 

 

 

ACL name can be configured with infinite length, but at MIB level only take the first 30 bits. 

Don't

 

configure

 

mutually-exclusive

 

rule

 

like

 

tcp\arp,

 

otherwise

 

it

 

will

 

not

 

hit

 

the

 

rules,

 

action will not 

be

 

effective. 

 

Standard typical configuration: 

OLT (config) # ACL standard 2222 
OLT (config-ACL-std-rule) # rule 22 deny source 192.168.2.22 
255.255.255.255 

Extend 

OLT (config) # ACL extend 3333  
OLT (config-ACL-ext-rule) #rule 33 deny protocol tcp source 
192.168.1.11 ignore source-port equal 33 destination 192.168.2.22 
ignore destination-port equal 33 dscp any

 

Link 

OLT (config) # ACL link 4444 
OLT (config-ACL-link-rule) # rule 44 permit type arp vlan 100 cos 6 
src-mac any dst-mac any 

For multicast MAC address (IP V4 begins with 01005e and IP V6 begins with 3333), global multicast 
should be disabled. 

Hybrid 

OLT (config) # ACL hybrid 5555 
OLT (config-ACL-hybrid-rule) # rule 55 permit protocol tcp source 
any ignore source-port eq 20 destination  
any ignore destination-port lt 23 dscp any type ip vlan 100 cos 6 
src-mac any ignore dst-mac any ignore  

User 

PS    is    Packet    Start,    starting    to    offset    0    from    the    message,    until    hitting    the    string    of 
000001000E00. Only valid for source: 

OLT (config) # ACL user 6666  
OLT (config-ACL-user-rule) #rule 10 permit base ps offset 0 string 
000001000E00 

Ipv6 standard 

OLT (config) # ACL ipv6 standard 7777 
OLT (config-ACL-ipv6-std-rule) # rule 1 permit source fe80 :: 200: 
1ff: fe00: e00 

Ipv6 extend 

OLT (config) # ACL ipv6 extend 8888 
OLT (config-ACL-ipv6-ext-rule) # rule 1 permit protocol ip source 
any ignore destination any ignore flow-label any traffic-class any

 

 

 

Summary of Contents for QSW-9010

Page 1: ...USER MANUAL www qtech ru QSW 9010 CLI Configuration user manual QSW 9010...

Page 2: ...nfiguration 15 1 8 OLT Software Upgrade 15 1 9 Operation User Management 16 1 9 1 Operation user rights description 16 1 9 2 Create Operation User 17 1 9 3 Modify user attributes 17 1 9 4 Delete User...

Page 3: ...ade 31 3 14 ONU manage ip 32 3 15 PON Port Isolation function Disabling 33 4 Unicast service configuration 34 4 1 MAC address management 34 4 1 1 Dynamic MAC aging time 34 4 1 2 Dynamic MAC Learn Numb...

Page 4: ...68 6 5 Simple downlink QoS SchedulingConfiguration 69 6 5 1 PON port configuration 69 6 5 2 Uplink port configuration 69 6 5 3 Optional Configuration 69 6 6 Downlink hierarchical QoS schedulingconfigu...

Page 5: ...Management 93 11 1 Unplug the optical fiber ONU_deregister 93 11 2 Unplug the cable at ONU UNI port lan_los 93 11 3 Power Off dying_gasp 93 11 4 View alarms on the NE 94 12 Port statistics and PM stat...

Page 6: ...igure 7 2 ACL rule configuration 75 Figure 7 3 ACL Action Configuration 78 Figure 11 1 Unplug the optical fiber ONU_deregister 91 Figure 11 2 Unplug the cable at ONU UNI port lan_los 91 Figure 11 3Pow...

Page 7: ...characteristics 1U of the system equipment the typical application scenarios the whole structure and appearance product characteristics and maintenance and management of system parameters for the use...

Page 8: ...tocols ITU T G 984 1 General characteristics mainly about the basic properties and the main GPON technology protection ITU T G 984 2 Physical Media Dependent PMD layer specification mainly about the G...

Page 9: ...nt lambdas where broadcasting in downlink and TDMA in uplink All downlink data will broadcast from the OLT to all the ONUs ONU will choose to receive data according to the ONU ID and discard the addit...

Page 10: ...addition OLT can be managed by Telenet after in band IP configuration In band management system connects to the IP network by using the service channel Uplink port which is usually used for real netw...

Page 11: ...ig xe1 2 no shutdown OLT config xe1 2 speed 1000 OLT config xe1 2 switchport mode trunk OLT config xe1 2 switchport trunk tag 1000 Configure in band management IP address OLT config ip address 10 1 1...

Page 12: ...18 188 24 1 5 Configure NTP system time synchronization NTP Network Time Protocol network time protocol is at application layer which is used to synchronize time between distributed time server and c...

Page 13: ...Total 1 Afterconfiguringthesystemtime theusercanviewthecorrespondingtimeinthecommand line log and the alarm record in order to locate the fault Note The server re connect after interruption in SNTP se...

Page 14: ...le are loaded and when the system is reset After successfully resetting the system the system can resume services and run the newly loaded programs and database files 1 7 3 Resotre Default Configurati...

Page 15: ...nfiguration commands you need to enter the following command in administrator mode The configuration file will be uploaded to the working folder of the TFTP software settings and the file name is main...

Page 16: ...ortforupgrading Whenyouupgradein the above ways make sure that the windows firewall is off otherwise it may cause the upgradetofail 1 9 Operation User Management Operation user means the configuration...

Page 17: ...fault password is admin and the default right level is 15 Example create a user name and password for abc level 10 OLT config username abc password abc privilege 10 Optional View operating user config...

Page 18: ...ersion OLT config snmp server trapsink 192 168 17 117 v1 OLT config snmp server trap2sink 192 168 17 117 v2 SNMP encryption OLT config snmp server user rw username v3 md5 password aes privacy Note The...

Page 19: ...l follow the CTC standard which defaults to ITU rules 1 14 Broadcast storm suppression In order to prevent the broadcast storm unknown unicast and multicast storm by default the OLT uplink port messag...

Page 20: ...ntains the physical port type and quantity configuration of ONU the number of Cardholder and the number of uplink and downlink queues Configuration GPON config gpon GPON config gpon profile onutype on...

Page 21: ...ON config gpon profile bandwidth dba type1 fixed 20000 GPON config gpon profile bandwidth dba type2 assured 100000 GPON config gpon profile bandwidth dba type3 assured 100000 maximum 200000 GPON confi...

Page 22: ...l Max frame size 12284 Ifindex 0x9010001 Port link type access PVID 1 RxPackets 0 RxBytes 0 RxBcast 0 RxMcast 0 RxPause 0 RxInjabber 0 RxErrors 0 RxCRCErrors 0 RxDrops 0 TxPackets 2318952 TxBytes 2539...

Page 23: ...User Manual 2 Basic service configuration 23 www qtech ru...

Page 24: ...escription Added ONUhasbeenaddedbutisoffline Authpass ONU has been authenticated Operational ONU operable Description WhenthePWauthenticationisthesameasthePWpartofSN PWauthentication SNcan notbeshown...

Page 25: ...fig interface gpon olt1 1 Description Automaticdiscoveryonutype willuse the default profile STG 402 andget online withsn authentication method Using automatic discovery of on line ONU it will not be o...

Page 26: ...rnet type user port to enable or disable Enable OLT config interface gpon onu1 1 1 OLT config gpon onu1 1 1 remote uni eth_1 1 enable Disable OLT config gpon onu1 1 1 remote uni eth_1 1 disable Descri...

Page 27: ...queue number Uplink queue number supported by ONU Down priority queue number Downlink queue number supported by ONU Traffic scheduler number The number of traffic scheduler supported by ONU Total Card...

Page 28: ...ig gpon olt1 8 show optical module rxpower onuid 1 OLT rx power 19 02 dbm 3 7 Optical module and ONU threshold configuration for Tx Rx optical power View and configuration of ONU Tx Rx optical power t...

Page 29: ...U restart and restore Remote ONU restore OLT config interface gpon onu1 5 1 OLT config gpon onu1 5 1 remote onu restore Remote ONU reboot OLT config gpon onu1 5 1 remote onu reboot 3 9 Uplink and down...

Page 30: ...max_distance 20 onu range 0 20km 40 onu range 20 40km 60 onu range 40 60km Query OLT config show distance gpon olt1 4 onu 1 3 11 Uplink and downlink FEC configuration Downstream enable OLT config gpon...

Page 31: ...nfig gpon onu1 1 1 remote mac_filter service 1 rule 2 forward sa 0000 0001 0002 Only the the data flow can be through with the destination MAC address 0000 0001 0002 and the rest will be discarded OLT...

Page 32: ...activate gpon olt1 5 onuid 1 When the upgrade is complete the ONU re authenticate and becomes operational and you can see that the version of ONU has been updated OLT show cpe information gpon olt1 5...

Page 33: ...ort can be forwarded to PC thus switching to the EOC configuration management 3 15 PON Port Isolation function Disabling This function closes the isolation function so that interworking between the sa...

Page 34: ...not learn multicast and broadcast MAC addresses MAC address table the MAC address table saves in the system cache whose table entries contain the MAC address of the equipment connected to the system t...

Page 35: ...ordance with the actual plan before proceeding with the VLAN configuration Note The VLAN is 1 by default and can not be deleted Multicast downlink VLAN 4095 4 2 1 Configure the uplink port and VLAN pl...

Page 36: ...2000 egress speed up OLT config xe1 1 rate limit 1000 2000 ingress speed downlink Note The first value is the limited rate in kbps the second is peak Burst value in kbit When the two value is configur...

Page 37: ...rm control multicast pps 10000 OLT config xe1 1 storm control unicast pps 10000 OLT config xe1 1 storm control broadcast kbps 10000 OLT config xe1 1 storm control multicast kbps 10000 OLT config xe1 1...

Page 38: ...nfigure different service types 4 4 1 Passthrough service QTECH OLT supports full Passthrough and VLAN passthrough mode the full passthrough includes all the packets while VLAN passthrough refers to s...

Page 39: ...config gpon onu1 1 1 remote service 1 gem 1 vlan 100 OLT config gpon onu1 1 1 remote uni eth_1 1 vlan mode trunk tag 100 Note When using VLAN passthrough all VLAN should have the same GEM 4 4 1 3 VLAN...

Page 40: ...fig xe1 1 switchport trunk tag 300 Add t tcont and bind gem port OLT config interface gpon onu1 1 1 OLT config gpon onu1 1 1 tcont 1 profile 100 OLT config gpon onu1 1 1 gemport 1 tcont 1 OLT config g...

Page 41: ...igure service OLT config gpon onu1 1 1 service port 1 gemport 1 user vlan 2002 vlan 2002 svlan 202 priority copy Configure the remote ONU OLT config gpon onu1 1 1 remote service 1 gem 1 OLT config gpo...

Page 42: ...u1 1 1 gemport 1 tcont 1 Configue service OLT config gpon onu1 1 1 service port 1 gemport 1 user vlan tagged vlan add 100 priority 2 Configure the remote ONU OLT config gpon onu1 1 1 remote service 1...

Page 43: ...ote ONU 4 5 1 Remote service configuration The remote ONU service is based on the ONU configuration and is related to the service VLAN OLT supports service port passthrough for remote ONU VLAN VLAN pr...

Page 44: ...vicecan tbemixed 4 5 2 Remote UNI Configuration OLT support 5 modes access hybrid transparent trunk xlate Access mode OLT config gpon onu1 1 1 remote uni eth_1 1 vlan mode access pvlan 100 Hybrid mode...

Page 45: ...ble multicast the multicast users will be able to be managed and controlled on the network equipment which can meet the requirements of broadband video services provided by operators and enable multic...

Page 46: ...onfiguration Table 5 1 General Multicast Configuration Configuration Item data Multicast service VLAN ID 510 Service priority 0 Uplink port XE1 2 Service port ONU Interface gpon onu1 4 3 Service port...

Page 47: ...mp robustness 3 robustness parameters OLT config igmp snooping aging time 200 snooping aging time OLT config igmp unsolicited report interval 2 active reporting interval Note Proxy Member Aging Time r...

Page 48: ...st drop default unknown multicast is Hong Fan 5 1 2 IGMP Span vlan multicast Table 5 2 IGMP Span vlan multicast OLT configuration OLT config igmp enable OLT config igmp span vlan enable OLT config igm...

Page 49: ...able Multicast Controllable multicast can control the user access to channels including permit deny and preview Under preview permissions you can control the number duration and interval ofthe user s...

Page 50: ...t when report packet is received Proxy Member Aging Time The aging time of the proxy model is calculated General Query Interval Robustness Query Max Resp Time resets the received packet report time Th...

Page 51: ...to the specified port if the fast leave function on the port is disabled The number is Last Member Query Number Unsolicited Report Interval Active interval report under proxy mode in order to prevent...

Page 52: ...CAC Configuration Group Address 224 1 1 1 Authorization PREVIEW Current State IDLE Preview Max Count 3 Preview Period s 30 Preview Blackout s 30 Interpretation of the relevant parameters Group Address...

Page 53: ...1 OLT config gpon onu1 4 1 service port 1 gemport 1 user vlan 410 vlan 410 OLT config gpon onu1 4 1 remote service 1 gem 1 vlan 410 OLT config gpon onu1 4 1 remote uni eth_1 1 vlan mode trunk tag 410...

Page 54: ...onu1 4 1 View MLD current configuration GPON config show mld MLD Global Configuration Global Enable WorkMode Proxy Span Vlan Disable CDR Disable Robustness 2 Snooping Aging Time 300 Proxy Member Aging...

Page 55: ...ource port xe1 2 OLT config mld mvlan 410 receive port gpon onu1 4 1 OLT config mld interface gpon onu1 4 1 version 1 Configuration Item data Multicast service VLAN ID 410 Business priorities 0 Uplink...

Page 56: ...l be possibility of failureto access multicast group 5 2 3 MLD Controllable Multicast Cac mode is controllable multicast in a multicast group the period blackout and maxnbr can be limited OLT config m...

Page 57: ...nclude It is include with source and exclude without source Type4 change to exclude t is include without source and exclude with source Maximumly 16 table entries is supported at present IGMP Run vers...

Page 58: ...eduling support uplink downlink packet scheduling according to the principle queue the incoming message schedule the outgoing message Figure 6 1 Simple scheduling model For uplink traffic packets will...

Page 59: ...t of PON including SP strict priority scheduling strategy WRR weighted round robin scheduling strategy and SP WRR hybrid scheduling strategy At PON port it s optional to configure the maximum minimum...

Page 60: ...is used to configure the mapping between the internal priority and the queue used for message scheduling Use this command when you need to modify the mapping between the internal priority and the que...

Page 61: ...OLT config gpon olt1 1 cos queue map 1 Downlink message profile binding on uplink port OLT config interface xe1 1 OLT config xe1 1 cos queue map 1 Description When the PON port is a hierarchical sched...

Page 62: ...s networkcongestion After successfully configuring the queue scheduling policy the system forwards the message in the queue in accordance with the new scheduling mode OLT supports three QoS scheduling...

Page 63: ...e0 0 queue1 0 queue2 0 queue3 0 queue4 0 queue5 0 queue6 0 queue7 0 profile qos queue scheduler 3 name wrr policy wrr queue0 1 queue1 1 queue2 1 queue3 1 queue4 1 queue5 1 queue6 1 queue7 1 profile qo...

Page 64: ...default queue scheduling policy OLT config interface xe1 1 OLT config xe1 1 qos queue scheduler default OLT config interface gpon olt 1 1 OLT config gpon olt1 1 qos queue scheduler default Note PONpo...

Page 65: ...000 queue4 10 500 queue5 1 250 queue6 10 200 queue7 10 100 OLT config gpon profile qos queue traffic 4 name 4 queue0 10 1000000 queue1 10 100000 queue2 10 10000 queue3 1 1000 queue4 10 500 queue5 10 2...

Page 66: ...ic 2 name 2 queue0 10 1000000 queue1 10 100000 queue2 10 10000 queue3 10 1000 queue4 10 100 queue5 10 10 queue6 0 1 queue7 0 0 profile qos queue traffic 3 name 3 queue0 0 1000000 queue1 0 100000 queue...

Page 67: ...port is simple scheduling mode the property is not valid and can not be modified Query the queue scheduling policy that message use at the port this command is used to view the effective qos queue tr...

Page 68: ...U weight is 1 6 4 Uplink QoS configuration 6 4 1 PON port configuration Before the uplink queue is scheduled the operation of the data packet into the queue should be configured at the entrance i e th...

Page 69: ...sable the PON port firstly port rate limitation need to be reconfigured 6 5 1 PON port configuration When the PON port is in simple scheduling mode the queue scheduling policy should be configured at...

Page 70: ...LT config interface gpon olt 1 1 OLT config gpon olt1 1 qos queue scheduler model hierarchy Note After modifying the QoS scheduling profile OLT needs to be restarted Modify the scheduling to hierarchi...

Page 71: ...User Manual 6 QoS service configuration 71 www qtech ru...

Page 72: ...nstream queues allocated by the registered ONU Configure the queue scheduling in ONU OLT config gpon onu1 1 1 qos queue scheduler 1 OLT config gpon onu1 1 1 qos queue scheduler default View the queue...

Page 73: ...multicast data streams is required the PON port speed limit can be configured in kbps OLT config gpon olt1 1 rate limit 1000 2000 egress speed downlink When it is necessary to limit the downlink multi...

Page 74: ...wed or prohibited in accordance with a predetermined policy The system supports IP V4 and V6 ACL that is ACL V4 and ACL V6 and ACL is divided into 5 types Standard ACL extended ACL mixed ACL link laye...

Page 75: ...thernet type code ip ipv6 arp rarp pppoe conurol p ppoe data etc VLAN ID cos 0 7 source MAC and destination MAC fields rules are formulated to analyze and process the data packets accordingly ACL user...

Page 76: ...the protocol type code ip tcp udp gre ipinip icmp v6 source IP and prefix source port destination IP and prefix the destination port number flow label 0 1048575 traffic class 0 255 field analyze the d...

Page 77: ...number link ACL number hybrid ACL number no ACL all standard ACL number extend ACL number link ACL number hybrid ACL number Each ACL can create up to 128 rules OLT config ACL hybrid 5555 name iiiiiiii...

Page 78: ...mac any dst mac any For multicast MAC address IP V4 begins with 01005e and IP V6 begins with 3333 global multicast should be disabled Hybrid OLT config ACL hybrid 5555 OLT config ACL hybrid rule rule...

Page 79: ...r to be visited does not exist create a new access control list and enter the corresponding ACL configuration mode When the serial number already exists go directly to the corresponding ACL configurat...

Page 80: ...The no packet filter command is used to cancel the ACL filter rule for the specified port Use this command when you need to delete the ACL filter rule for the specifiedport OLT config no packet filter...

Page 81: ...nd is used to configure priority tags for messages that are filtered by the ACL rule on the specified port Use this command when you need to configure priority tags for traffic over a specified port A...

Page 82: ...d port OLT config no traffic redirect ingress ACL 2222 rule 1 port gpon olt1 11 7 4 6 Traffic Statistic The traffic statistic command is used to have statistics of the flow that match ACL rule under s...

Page 83: ...e state for each port that is the port is in the same state of forwarding in different VLAN In MSTP mode there can be multiple spanning tree samples and the forwarding status of ports under different...

Page 84: ...ecific bridge Max Age time in seconds OLT config spanning tree max age 20 Configure the maximum hops of the MST region OLT config spanning tree max hop 20 Configure specific bridge Forward Delay time...

Page 85: ...stp 0 port priority 16 Set the port is an edge port OLT config xe1 1 spanning tree mstp edge auto Set whether backward compatible with STP version OLT config xe1 1 spanning tree mstp migration check S...

Page 86: ...onnected by the DHCP v4 client the VLAN that belongs to and the MAC address of the DHCP v4 relay equipment itself When the DHCP v4 server receives DHCP v4 request message forwarded by DHCP V4 relay eq...

Page 87: ...bling OLT adds the option37 in DHCPv6 message including the ONU information that is connected to the DHCPv6 client and the OLT MAC address information Configure the ONU RID in option37 OLT config inte...

Page 88: ...interface vlanif102 OLT config vlanif102 ip address 12 0 0 1 24 Configure DHCP Relay layer three function OLT config vlanif102 ip dhcp relay agent OLT config vlanif102 ip dhcp relay server address 22...

Page 89: ...ple but it is not good for observing the state of the trunk port The dynamic aggregation mode dynamically trunk multiple physical ports into a Trunk group to form a logical port to realize load sharin...

Page 90: ...x full OLT config xe1 2 switchport mode trunk OLT config xe1 2 switchport trunk tag 200 View trunk state OLT config show trunk verbose Flags A LACP_Activity B LACP_timeout C Aggregation D Synchronizat...

Page 91: ...nk 1 OLT config interface xe1 2 OLT config xe1 2 trunk 1 Configure trunk VLAN and rate OLT config interface xe1 1 OLT config xe1 1 no shutdown OLT config xe1 1 speed 1000 OLT config xe1 1 switchport m...

Page 92: ...ways based on source MAC destination MAC and both source destination MAC The default value is based on both source and destination MAC OLT configuration take source MAC as an example OLT config interf...

Page 93: ...the alarm of uplink port PON port fiber broken ONU power failure UNI offline etc Use the QNMS network management software to view alarms 11 1 Unplug the optical fiber ONU_deregister Figure 11 1 Unplu...

Page 94: ...the NE The current alarm information can be viewed by following commands History alarm information can only be viewed by NMS network management software OLT config show current alarm xe1 1 OLT_ETH_LO...

Page 95: ...atistics does not support manual remove currently It will automatically report to the network management every 15 minutes when connected to NMS For each port statistics and PM management is as follows...

Page 96: ...User Manual 12 Port statistics and PM statistics 96 www qtech ru...

Page 97: ...d by hybrid type port loopback Loopback or not RxPackets The number of packets received by the port Autonegotiation Self adaptiveon Do not support currently RxBytes The number of bytes received by the...

Page 98: ...ors The number of error frames received by the port RxCRCErrors The CRC error frames received by current port TxMcast Number of group broadcasts sent by port RxDrops Number of packets dropped by port...

Page 99: ...or the port has no traffic currently 12 2 PM Statistics This command is used to query performance statistics of ports ONU and gem 12 2 1 PM statistics of PON port Enable data packets and protocol pack...

Page 100: ...tatistics 100 www qtech ru View protocol message OLT config show statistic gpon olt7 6 protocol 12 2 2 PM statistics of ONU Enable QSW 9010 config gpon onu7 6 2 pm enable View QSW 9010 config gpon onu...

Page 101: ...1 pm enable View QSW 9010 config gpon onu7 6 2 show statistic gpon olt7 6 onu 2 gem 1 12 2 4 PM statistics of uni Enable QSW 9010 config gpon onu7 6 2 show onu remote uni eth_1 1 pm View QSW 9010 con...

Reviews: