ICX Switches - Sample Config
ICX Switches - Sample Config
1. Stack configuration
ICX7750
stack unit 1
module 1 icx7750-48-xgf-port-management-module
module 2 icx7750-qsfp-6port-qsfp-240g-module
priority 128
stack-port 1/2/1 1/2/4
stack unit 2
module 1 icx7750-48-xgf-port-management-module
module 2 icx7750-qsfp-6port-qsfp-240g-module
priority 128
stack-port 2/2/1 2/2/4
stack enable
ICX6450
stack unit 1
module 1 icx6450-24-port-management-module
module 2 icx6450-sfp-plus-4port-40g-module
priority 128
stack-port 1/2/1 1/2/3
stack unit 2
module 1 icx6450-24-port-management-module
module 2 icx6450-sfp-plus-4port-40g-module
stack-port 2/2/1 2/2/3
stack unit 3
module 1 icx6450-24-port-management-module
module 2 icx6450-sfp-plus-4port-40g-module
stack-port 3/2/1 3/2/3
stack enable
2. Loopback interface
interface Loopback 1
ip ospf area 0
ip ospf active
ip address 192.168.2.253/32
3.
OSPF
a.
Global
router ospf
area 0
b.
ip ospf active
ip address 192.168.1.6/30
c.
4.
VLAN
a.
b.
5.
VRRP-E (Optional)
a. Global
Rouetr vrrp-extended
b.
Interface configuration
interface Ve 60 (switch 1)
ip address 10.200.60.2/24
ip vrrp-extended vrid 60
backup priority 200
ip-address 10.200.60.1
advertise backup
activate
!
interface Ve 60 (switch 2)
ip address 10.200.60.3/24
ip vrrp-extended vrid 60
backup
ip-address 10.200.60.1
advertise backup
activate
6.
Static Route
ip route 0.0.0.0/0 10.200.85.78
(untagged/Access Port)
(tagged/Trunk Port)
7.
LACP
a.
Configure LAG
lag "sw-1" static id 1
ports ethernet 1/21 to 1/22
primary-port 1/21
deploy
!
8.
Software upgrade
Use TFTP server to upgrade images in the device. Assign IP address to management port and connect
tftp server machine on management port
a.
Application Image
i. Switch Image
Boot roM
Then the write-memory command is issued, followed by the reload command, to successfully
configure the port for breakout.
The four 10 Gbps sub-ports for port 1/2/1 can be represented as 1/2/1:1, 1/2/1:2, 1/2/1:3, and
1/2/1:4.
Global Configuration
authentication
auth-default-vlan 78
restricted-vlan 999
auth-fail-action restricted-vlan
dot1x enable
dot1x enable ethe 1/1/45
mac-authentication enable
mac-authentication enable ethe 1/1/45
mac-authentication password-format xx-xx-xx-xx-xx-xx
aaa authentication dot1x default radius
radius-server host 10.126.10.186
radius-server host 10.100.11.176
radius-server host 10.212.1.176
radius-server key abcd
b.
interface Configuration
interface ethernet 1/1/45
dot1x port-control auto
inline power
voice-vlan 86