Home > Switches > Port and VLAN Configuration > Switch Ports

Switch Ports

Meraki's MS switches allow for the configuration of a single port to thousands of ports through our industry-first Virtual Stacking technology. Virtual Stacking provides centralized management for up to 10,000 switch ports. Unlike traditional stacking, virtually stacked switches do not require a physical connection, can be in different physical locations, and can be of different switch models, thereby simplifying large-scale distributed deployments.

Making Configuration Changes

On the Switches > Monitor > Switch Ports page, administrators can name ports, turn ports on/off, enable spanning tree (RSTP), define port types (access/trunk), and specify VLANs (data and voice).

Editing a port(s)

In order to make changes to a port or port group on an MS switch:

  1. Select the port or ports to be configured by checking their perspective check box(es). 
  2. Choose Edit and make the desired changes. See the "Port configuration" section for all configurable items.
  3. Once the changes have been made, save them by selecting Update ports. This will instantly push the changes to the MS switches in the network.

Port configuration

The following fields are configurable on each switch port.

  • Name: Description of the port.
  • Tags: Labels that can be used to identify this port or a group of ports.
  • Enabled: Enable/Disable the port.
  • Stacking: MS420/MS425 only. Enable flexible stacking on this port.
  • RSTP: Rapid Spanning Tree Protocol can be used to block ports where loops may occur.
    • STP guard: There are two types of STP guard:
      • Root guard: The port will start discarding packets if a BPDU frame is received with a bridge priority lower than that of the current switch.
      • BPDU guard:  The port will start discarding packets if any BPDU frames are received on this port.
  • PoE: Available on PoE switches only.  Enable/Disable Power over Ethernet on this port.
  • Link: Select the desired link speed.

10Mbps Half Duplex is not supported on MS350 series switches.

  • Port Schedule: Apply a port schedule policy.  Learn how to use port scheduling here.
  • Isolation: Enabling this feature prevents any isolated port from communicating with other isolated ports.
  • Type: Switch ports can be configured as one of two types:
    • Trunk: Configuring a trunk port will allow the selected port to accept/pass 802.1Q tagged traffic.  This type is usually used for connections to other switches or access points.
      • Native VLAN: All untagged traffic will be placed on this VLAN.
      • Allowed VLANs: Only these VLANs will be able to traverse this link.
    • Access: Configuring an access port will place all traffic on its defined VLAN and will only pass untagged traffic.  This type is usually used for connections to end-users.
      • Access Policy: Apply a restriction policy to this port.
        • Open: All devices will be able to access this port.
        • MAC Whitelist: Only devices with MAC addresses specified in this list will have access to this port.  Up to 20 MAC addresses can be defined.
        • Sticky MAC: The switch will dynamically learn the MAC addresses of devices connected to the port and place the address in the MAC Whitelist.  The administrator can define the size of this list.  When this list is full, all subsequent devices will be denied access to this port.
        • User defined access policy: Administrators may define a policy for authentication via 802.1x or MAB.  Learn more about access policies here.
      • VLAN: All traffic will be placed on this VLAN.
      • Voice VLAN: CDP/LLDP capable voice devices will be able to use this VLAN.

Searching for ports

The virtual stack allows an administrator to view all switch ports in one easy-to-navigate page. To further simplify switch port management, a dynamic search bar is available at the top to allow for quick searching of ports.

Search terms

  • Enter any value in to the search omnibox for an instant search result
  • Use conditional operators to separate multiple search queries (AND, OR)
  • Use a wildcard to search for more general results ( * )
  • Enter specific search terms to find a particular port:
Search Type
Search Value
Result

Example

Port

port:value

return all specified ports or port ranges port:1-10

Name

name:value

return all ports with the specified switch name

name:"joe's desktop"

Switch switch:value return all ports for the designated switch(es) switch:"1st floor"
Detected Uplink is:uplink return interface(s) detected as uplink to Meraki Cloud

is:uplink

not:uplink

Tags

tag:value

return all ports with the specified tag

tag:"blue 132"

VLAN

vlan:value

vlan:native

vlan:voice

return all ports with the specified vlan

return all ports with a native vlan

return all ports with a voice vlan

vlan:"60"

vlan:"native 60"

vlan:"voice 20"

LLDP lldp:value return all ports containing matching LLDP information lldp:"MR24"

Type

is:value

will return all ports with type "trunk" or type "access"

is:trunk

Link

link:value

return all ports with the link type set to specified speed/duplex

link:"100 mbps"

link:"10 gbps"

Link Aggregate is:aggregated return only link aggregated (LACP) ports is:"aggregated"
Access Policy ap:value return all ports with the specified access policy applied (wildcard supported) ap:*
Port Schedule schedule:value return all ports with the specified port schedule (wildcard supported) schedule:*
Group group:value return all ports belonging to a common group (the virtual stack automatically categorizes the 3 most common configuration types into groups 1,2 and 3)

group:1

group:2

group:3

MAC Whitelist mac_whitelist:* return all ports with a mac-whitelist enabled (you can substitute the * with a mac address value using colons as separators)

mac_whitelist:aa:bb:cc:dd:ee:ff

mac_whitelist:*

The search tool is also capable of intelligently combining multiple search queries. See a few examples below.

 

Search: name:"joe's port" AND switch:"2nd floor POE"

Result: returns all port(s) with the name "joe's port" on the switch named "2nd floor POE"

Search: port:1-15 link:"10 gbps" switch:"2nd floor IDF"

Result: Returns all ports configured for 10gbit from the port range of 1-15 on the switch named "2nd floor IDF"

Link Aggregation

The MS switches supports Link Aggregation (LACP) groups of up to 8 ports. A "Link Aggregate" is a combination of ports that act as one logical link. This is often referred to as Link Bonding, Link Aggregation, or EtherChannel. A link aggregate will load balance across the different physical links for additional performance, and will also give higher reliability because the link aggregate will continue to function as long as at least one of the physical links is working.

 

To configure an aggregate, simply choose the ports to be aggregated by checking their respective boxes and then select the Aggregate option at the top of the page (see video 1 below). 

Doing this will create an LACP port group running mode:active.

 

By default the MS series runs an LACP Passive instance per port. This is to prevent loops when a bond is connected to a switch running default configuration.

 

It is generally recommended that ports are first aggregated and then physically connect the aggregated ports. Be sure to configure the aggregate (or have LACP enabled) on both ends of the link.

 

Selecting Aggregate ports

In the virtual stack, select the ports to be aggregated. Once the ports have been selected, choose Aggregate at the top or bottom of the port list and accept the change notification. 

Splitting Aggregated ports

To split an aggregated link, simply select the aggregated port and choose Split. This will revert the changes and split the group into its own separate ports.

*For more specific configuration and interoperability information, please reference our documentation.

Port Mirroring

It may be necessary to configure a mirrored port or range of ports. This is often useful for network devices that require monitoring of network traffic, such as a VoIP recording solution or an IDS (Intrusion Detection System).

MS switches support one-to-one or many-to-one mirror sessions.   Cross-stack port mirroring is available on our stackable switches.

 

In order to enable and configure a mirrored port or range of ports, navigate to Switch > Monitor > Switch Ports. On this page select the ports that are intended for mirroring and hit the Mirror button:

 

Next, enter the destination port for the mirror session. If the ports are in a switch stack then also select the desired switch in the stack for the mirror destination.

Once the Mirror is configured it can be easily identified using the Mirror column in Dashboard:

  

You must to post a comment.
Last modified
12:05, 2 Dec 2016

Tags

This page has no custom tags.

Classifications

This page has no classifications.

Article ID

ID: 4462

Contact Support

Most questions can be answered by reviewing our documentation, but if you need more help, Cisco Meraki Support is ready to work with you.

Open a Case