RUCKUS | PLUME | IGNITENET | VAD | WI-FI EXPERTS | EVENT INTERNET | 25 YEARS OF EXPERINCE

Ruckus ICX switch setup.
Ruckus ICX switch setup.
  sildid:
  09/04/2020

Creating access

First, we connect to the ICX switch through the console. We make the physical connection with a standard USB cable with a USB-C connector on the switch side, the same cable used to charge newer phones.

The first setting is to assign a management IP to the switch and activate the web interface. Mgmt IP becomes 192.168.3.19, subnet /24, gateway 192.168.3.1 and we create a certificate.

ICX7150-C12 Switch>enable
No password has been assigned yet…
ICX7150-C12 Switch#configure terminal
ICX7150-C12 Switch(config)#ip address 192.168.3.19/24
ICX7150-C12 Switch(config)#ip default-gateway 192.168.3.1
ICX7150-C12 Switch(config)#crypto-ssl certificate generate
Creating certificate, please wait…

ICX7150-C12 Switch(config)#
ssl-certificate creation is successful
crypto-ssl certificate generate secret_data

Loome kasutaja 'ruckus' parooliga 'ruckus'. Switchi nimeks saab '3K_ICX' ning käsuga 'write mem' kirjutame seaded mällu.

ICX7150-C12 Switch(config)#username ruckus password ruckus
ICX7150-C12 Switch(config)#aaa authentication login default local
ICX7150-C12 Switch(config)#aaa authentication web-server default local
ICX7150-C12 Switch(config)#web-management https

ICX7150-C12 Switch(config)#hostname 3K_ICX
3K_ICX(config)#enable telnet authentication
3K_ICX(config)#enable aaa console
3K_ICX(config)#write mem
There is no startup config file, unable to save legacy config
Flash Memory Write (8192 bytes per dot)
.
Write startup-config done.
Copy Done.
3K_ICX(config)#

Now you can access the switch through web-interface.

To activate ssh access over a mgmt link, a key pair must be created:

3K_ICX(config)#crypto key generate rsa modulus 2048
3K_ICX(config)#
Creating RSA key pair, please wait…
RSA Key pair is successfully created
3K_ICX(config)#

Creating VLANs.

Vlans can be added in bulk, ie vlans with similar settings do not have to be created and configured one by one. This option saves a lot of time and effort.
We add VLANs between 21-40 and assign them to port 1/1/3

SSH@3K_ICX>enable
No password has been assigned yet...
SSH@3K_ICX#conf t
SSH@3K_ICX(config)#vlan 21 to 40 #Siin lisame vlanid 21-40
SSH@3K_ICX(config-mvlan-21-40)#tag
tagged 802.1Q tagged port
SSH@3K_ICX(config-mvlan-21-40)#tagged ethernet 1/1/3 #Siin lisame vlani'd switchi pordile 1/1/3
SSH@3K_ICX(config-mvlan-21-40)#Added tagged port(s) ethe 1/1/3 to port-vlan 21.
Added tagged port(s) ethe 1/1/3 to port-vlan 22.
Added tagged port(s) ethe 1/1/3 to port-vlan 23.
Added tagged port(s) ethe 1/1/3 to port-vlan 24.
Added tagged port(s) ethe 1/1/3 to port-vlan 25.
Added tagged port(s) ethe 1/1/3 to port-vlan 26.
Added tagged port(s) ethe 1/1/3 to port-vlan 27.
Added tagged port(s) ethe 1/1/3 to port-vlan 28.
Added tagged port(s) ethe 1/1/3 to port-vlan 29.
Added tagged port(s) ethe 1/1/3 to port-vlan 30.
Added tagged port(s) ethe 1/1/3 to port-vlan 31.
Added tagged port(s) ethe 1/1/3 to port-vlan 32.
Added tagged port(s) ethe 1/1/3 to port-vlan 33.
Added tagged port(s) ethe 1/1/3 to port-vlan 34.
Added tagged port(s) ethe 1/1/3 to port-vlan 35.
Added tagged port(s) ethe 1/1/3 to port-vlan 36.
Added tagged port(s) ethe 1/1/3 to port-vlan 37.
Added tagged port(s) ethe 1/1/3 to port-vlan 38.
Added tagged port(s) ethe 1/1/3 to port-vlan 39.
Added tagged port(s) ethe 1/1/3 to port-vlan 40.
SSH@3K_ICX(config-mvlan-21-40)#spanning-tree 802-1w # Käivitame Spanning Tree Protocol'i protsessi switchis
SSH@3K_ICX(config-mvlan-21-40)#
SSH@3K_ICX(config-mvlan-21-40)#spanning-tree 802-1w ethernet 1/1/3 admin-pt2pt-mac # Määrame pordi 1/1/3 admin point-to-point lingiks, pordil on Rapid STP

The same, but using different syntax. We add VLAN 2, 4, 6, 8 and 10.

SSH@3K_ICX#conf t
SSH@3K_ICX(config)#vlan 2 4 6 8 10
SSH@3K_ICX(config-mvlan-2*10)#tagg
tagged 802.1Q tagged port
SSH@3K_ICX(config-mvlan-2*10)#tagged ethernet 1/1/4
SSH@3K_ICX(config-mvlan-2*10)#Added tagged port(s) ethe 1/1/4 to port-vlan 2.
Added tagged port(s) ethe 1/1/4 to port-vlan 4.
Added tagged port(s) ethe 1/1/4 to port-vlan 6.
Added tagged port(s) ethe 1/1/4 to port-vlan 8.
Added tagged port(s) ethe 1/1/4 to port-vlan 10.
SSH@3K_ICX(config-mvlan-2*10)#

You can check the settings:

System-max vlan Params: Max(4095) Default(64) Current(64)
Default vlan Id :1
Total Number of Vlan Configured :26
VLANs Configured :1 to 2 4 6 8 10 21 to 40
SSH@3K_ICX#
SSH@3K_ICX#show interfaces ethernet 1/1/4
GigabitEthernet1/1/4 is down, line protocol is down
Port down for 20 minute(s) 9 second(s)
Hardware is GigabitEthernet, address is d4c1.9e94.1617 (bia d4c1.9e94.1617)
Configured speed auto, actual unknown, configured duplex fdx, actual unknown
Configured mdi mode AUTO, actual unknown
Member of 5 L2 VLANs, port is tagged, port state is BLOCKING
BPDU guard is Disabled, ROOT protect is Disabled, Designated protect is Disabled
Link Error Dampening is Disabled
STP configured to ON, priority is level0, mac-learning is enabled

Here we see that in addition to the default VLAN 1, VLANs 2, 4, 6, 8, 10, 21 to 40 are created, of which 5 VLANs are assigned to port 1/1/4.


Autor: Support
LOE EDASI
support@3kgroup.ee