Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation
Guide That Contains This Content
[+] Expand All
[-] Collapse All

    Understanding Port Profiles

    Port profiles provide a convenient way of provisioning interfaces on switches. You can either use predefined port profiles, or you can define your own custom port profile.

    After you create a Port profile, you can assign it to interfaces on one or more switches, including aggregated interfaces. For the configuration created by the profile to take effect on the devices, you must use Deploy mode to deploy the configuration on the devices.

    This topic describes:

    Interface Settings Configured in the Port Profile

    You can configure the following interfaces settings in a Port profile:

    • Interface protocol family—You can configure an interface to be either an Ethernet switching interface, an IPv4 routing interface, or an IPv6 routing interface.
    • Port mode—You can configure a switching interface port mode to be an access, trunk, or tagged-access interface for EX Series switches. Campus Switching ELS supports access mode and trunk mode. For more information about port modes, see Ethernet Switching.
    • PoE settings—The factory-default configuration of switches enables PoE on all interfaces that support PoE. For many implementations, no further configuration is necessary. You can, however, override the default settings for PoE interfaces in the Port profile. Most switch models have interfaces that support Power over Ethernet (PoE), but the EX9200 does not support PoE. For more information about PoE, see Power over Ethernet (PoE).

      If you do not explicitly configure PoE in the Port profile, the existing PoE interface settings on the switch remain in effect. Device-wide PoE settings are configured in the Device Common Settings profile.

      Note: PoE settings are not available for Data Center devices.

    • Physical link settings—On switches, the autonegotiation of port speed and duplex mode is enabled by default. You can disable autonegotiation and set port speed and duplex mode in the Port profile. Other link settings you can configure include flow control, which is disabled by default, and maximum transmission unit (MTU).
    • Storm control settings—You can optionally enable storm control settings on switches. Storm control monitors traffic levels drops broadcast, multicast, and unknown unicast packets when a specified traffic level—called the storm control level.
    • RSTP settings—You can optionally enable RSTP settings on switches. RSTP this feature enables you to fine-tune STP by setting interfaces into edge, disable, or no-root-port states.
    • Port security settings—You can optionally enable port security on switched access ports. Port security features help protect the access ports on your switch against address spoofing (forging) and Layer 2 denial-of-service (DoS) attacks. For more information about port security on switches, see Port Security.

      Note: For campus switching ELS devices, disabling port security settings option is not available.

    Interface Settings Configured by Referencing Other Profiles

    You can optionally configure other interface-related settings in the Port profile by referencing other profiles. These profiles are:

    • CoS profile—Configures class-of-service settings on the interface. You can either select or create an in-line CoS profile while creating a port profile.
    • Filter profile—Configures firewall filters (often called ACLs) on the interface.
    • Authentication profile—(Switching interfaces only) Configures 802.1X authentication on an interface and configures related settings, such as captive portal authentication. You can either select or create an in-line authentication profile while creating a port profile.
    • Access profile—Configures the access server settings used by all 802.1X authenticator interfaces on a switch. This profile is not included in the Port profile. Instead, you assign it to a device as part of the process of assigning a Port profile to the interfaces on the device.
    • VLAN profile for Campus Switching ELS is mandatory. You can either select or create an in-line VLAN profile while creating a port profile.

    If you want to use one or more of these profiles with the Port profile, be sure to create them before you create and assign the Port profile.

    Data Center Device Port Profile Settings

    Port profiles for data center switching devices include settings for the following features:

    • Configuring Fibre Channel (FC) ports.
    • Configuring Data Center Bridging Capability Exchange (DCBX) protocol for Ethernet interfaces.

    Default Port Profiles

    To help with the rapid provisioning of interfaces on switches, Network Director provides default Port profiles that contain settings for common uses of switch interfaces. You can modify or assign these default profiles to interfaces using the same method used for user-created profiles. Table 1 describes the default Port profiles.

    Table 1: Default Port Profiles

    Profile Name

    Description

    Summary of Settings

    Desktop_Port

    Configures an untagged port that connects to desktop computer.

    • Family Type—switching
    • Port Mode—access
    • Auto Negotiation—disabled
    • Flow Control—disabled
    • Maximum Bytes—disabled
    • Speed—no default provided
    • Link Mode—no default provided
    • Trust DHCP—no
    • MAC Limit—1
    • MAC Limit Action—drop
    • CoS Profile—no default provided

    Desktop_ Phone_Port

    Configures an untagged port that connects to a combined desktop and phone port.

    • Family Type—switching
    • Port Mode—access
    • Auto Negotiation—disabled
    • Flow Control—disabled
    • Maximum Bytes—disabled
    • Speed—no default provided
    • Link Mode—no default provided
    • Trust DHCP—no
    • MAC Limit—2
    • MAC Limit Action—drop
    • CoS Profile—juniper_CoS_template

    Fibre_Channel_Port

    Configures a Fibre Channel (FC) port. Available for data center switching profiles only.

    • Port Type—Fibre Channel Port
    • Speed—4Gbps
    • Buffer to Buffer State Change Number—no default provided
    • Loopback Setting—no default provided

    FCoE_Transit_Port

    Configures an Ethernet port for an FCoE transit switch. Available for data center switching profiles only.

    • Port Type—Ethernet Port
    • CoS Profile—juniper_DC_Hier_CoS
    • Family Type—switching
    • Port Mode—trunk
    • Filters—no default provided
    • VLAN Options—no default provided
    • DCBX Version—Auto
    • Disable DCBX—disabled
    • Disable Priority Flow Control—disabled
    • ETS No Auto Negotiation—disabled
    • Recommendation TVL—no default provided
    • Auto Negotiation—disabled
    • Flow Control—disabled
    • Maximum Size—2500
    • Speed—no default provided
    • Link Mode—no default provided
    • Port Security—enabled
    • Trust DHCP—disabled
    • FCoE Trusted—enabled
    • MAC Limit—no default provided
    • MAC Limit Action—no default provided
    • Allowed MAC List—no default provided

    Server_Port

    Configures a tagged port that connects to a server.

    • References the default CoS profile, juniper_CoS_template
    • Sets protocol family to Ethernet switching
    • Sets port mode to trunk
    • Enables port security with trust DHCP enabled

    Switched_Downlink

    Configures a tagged port that connects to endpoint devices in a branch environment or servers in a data center environment.

    • Family Type—switching
    • Port Mode—trunk
    • Auto Negotiation—disabled
    • Flow Control—disabled
    • Maximum Bytes—no default provided
    • Speed—no default provided
    • Link Mode—no default provided
    • Trust DHCP—yes
    • MAC Limit—no default provided
    • MAC Limit Action—no default provided
    • CoS Profile—juniper_CoS_template

    Switched_Uplink

    Configures a tagged port that connects a switch to another switch or larger network. For example, a port that connects an access switch to an aggregation switch.

    • Family Type—switching
    • Port Mode—trunk
    • Auto Negotiation—disabled
    • Flow Control—disabled
    • Maximum Bytes—no default provided
    • Speed—no default provided
    • Link Mode—no default provided
    • Trust DHCP—yes
    • MAC Limit—no default provided
    • MAC Limit Action—no default provided
    • CoS Profile—juniper_CoS_template

    Wireless_ Access_Port

    Configures an untagged port that connects to a wireless access point.

    • Family Type—switching
    • Port Mode—access
    • Auto Negotiation—disabled
    • Flow Control—disabled
    • Maximum Bytes—no default provided
    • Speed—no default provided
    • Link Mode—no default provided
    • Trust DHCP—no default provided
    • MAC Limit—no default provided
    • MAC Limit Action—no default provided
    • CoS Profile—no default provided

    Modified: 2016-12-01