<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://docs.delftsolutions.nl/index.php?action=history&amp;feed=atom&amp;title=Dfz_switch_setup</id>
	<title>Dfz switch setup - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://docs.delftsolutions.nl/index.php?action=history&amp;feed=atom&amp;title=Dfz_switch_setup"/>
	<link rel="alternate" type="text/html" href="https://docs.delftsolutions.nl/index.php?title=Dfz_switch_setup&amp;action=history"/>
	<updated>2026-04-03T20:31:56Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.39.3</generator>
	<entry>
		<id>https://docs.delftsolutions.nl/index.php?title=Dfz_switch_setup&amp;diff=634&amp;oldid=prev</id>
		<title>Vincent at 20:39, 3 September 2025</title>
		<link rel="alternate" type="text/html" href="https://docs.delftsolutions.nl/index.php?title=Dfz_switch_setup&amp;diff=634&amp;oldid=prev"/>
		<updated>2025-09-03T20:39:51Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;table style=&quot;background-color: #fff; color: #202122;&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;en&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Older revision&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Revision as of 13:39, 3 September 2025&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l87&quot;&gt;Line 87:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 87:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* login&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* login&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* save configuration&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* save configuration&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;==== When overwriting certs and/or keys ====&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;Generated Key+CSR with OpenSSL in RSA 2048Bit SHA-256.The naming of the key on the switch is sslt_key1.pem and the cert is sslt_cert1.pem. Copy these files to flash:// and they override the existing ones, reload the website and it&#039;s working.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;</summary>
		<author><name>Vincent</name></author>
	</entry>
	<entry>
		<id>https://docs.delftsolutions.nl/index.php?title=Dfz_switch_setup&amp;diff=633&amp;oldid=prev</id>
		<title>Vincent: Created page with &quot;== Dell PowerConnect 8132 == This is currently dfz2  === Prerequisites === * Physicial access to the switch * Ethernet cable * Serial to x cable * Computer with x port and ethernet port * Host entry in IPA for the switch with the exact hostname * Ask Max in advance to make time to create a signed certificate from a certificate signing request (last time took multiple hours)  === Initial setup ===  &lt;START SERIAL CONNECTION TO SWITCH&gt; Prefer to use another serial emulator...&quot;</title>
		<link rel="alternate" type="text/html" href="https://docs.delftsolutions.nl/index.php?title=Dfz_switch_setup&amp;diff=633&amp;oldid=prev"/>
		<updated>2025-09-03T16:05:46Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;== Dell PowerConnect 8132 == This is currently dfz2  === Prerequisites === * Physicial access to the switch * Ethernet cable * Serial to x cable * Computer with x port and ethernet port * Host entry in IPA for the switch with the exact hostname * Ask Max in advance to make time to create a signed certificate from a certificate signing request (last time took multiple hours)  === Initial setup ===  &amp;lt;START SERIAL CONNECTION TO SWITCH&amp;gt; Prefer to use another serial emulator...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;== Dell PowerConnect 8132 ==&lt;br /&gt;
This is currently dfz2&lt;br /&gt;
&lt;br /&gt;
=== Prerequisites ===&lt;br /&gt;
* Physicial access to the switch&lt;br /&gt;
* Ethernet cable&lt;br /&gt;
* Serial to x cable&lt;br /&gt;
* Computer with x port and ethernet port&lt;br /&gt;
* Host entry in IPA for the switch with the exact hostname&lt;br /&gt;
* Ask Max in advance to make time to create a signed certificate from a certificate signing request (last time took multiple hours)&lt;br /&gt;
&lt;br /&gt;
=== Initial setup ===&lt;br /&gt;
&lt;br /&gt;
&amp;lt;START SERIAL CONNECTION TO SWITCH&amp;gt;&lt;br /&gt;
Prefer to use another serial emulator (e.g. minicom) but this is what we know for now&lt;br /&gt;
* screen /dev/tty.usbserial-AB87E34V 9600 # /dev/&amp;lt;device&amp;gt; may be different on your machine, 9600 is the baud/data-rate and is default for the switch&lt;br /&gt;
* enable&lt;br /&gt;
&lt;br /&gt;
SKIP NEXT STEP WHEN IN BROKEN STATE&lt;br /&gt;
* copy startup-config backup-config &lt;br /&gt;
&lt;br /&gt;
* configure&lt;br /&gt;
* interface vlan 1&lt;br /&gt;
* ip address 192.168.0.10 255.255.0.0&lt;br /&gt;
* exit&lt;br /&gt;
* exit&lt;br /&gt;
* show ip interface vlan 1&lt;br /&gt;
&lt;br /&gt;
&amp;lt;END SERIAL CONNECTION TO SWITCH&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;START WEBGUI CONFIGURE VLAN ADMIN ON PORT 1&amp;gt;&lt;br /&gt;
* connect ethernet cable to switch&lt;br /&gt;
* set your local ip address to e.g. 192.168.0.9/16&lt;br /&gt;
* navigate to (http://)192.168.0.10&lt;br /&gt;
* login&lt;br /&gt;
* Switching &amp;gt; VLAN &amp;gt; VLAN Membership&lt;br /&gt;
* Add (VLAN ID &amp;lt;ADMIN_VLAN_ID&amp;gt;; VLAN NAME &amp;quot;admin&amp;quot;)&lt;br /&gt;
* Add (VLAN ID &amp;lt;DFZ_VLAN_ID&amp;gt;; VLAN NAME &amp;quot;dfz&amp;quot;)&lt;br /&gt;
* Detail&lt;br /&gt;
* Show VLAN &amp;lt;DFZ_VLAN_ID&amp;gt;-dfz&lt;br /&gt;
* Select all ports which should be part of this VLAN&lt;br /&gt;
* Click &amp;quot;Apply&amp;quot;&lt;br /&gt;
* repeat for VLAN &amp;lt;ADMIN_VLAN_ID&amp;gt;-admin with port 1 (and possibly 2 or more) # Once you hit Apply you will lose connection to the webgui as there is no ip address set for interface vlan &amp;lt;ADMIN_VLAN_ID&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;END WEBGUI CONFIGURE VLAN ADMIN ON PORT 1&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;START SERIAL CONNECTION TO SWITCH&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* enable&lt;br /&gt;
* configure&lt;br /&gt;
* interface vlan &amp;lt;ADMIN_VLAN_ID&amp;gt;&lt;br /&gt;
* ipv6 address &amp;lt;IPV6_ADDRESS&amp;gt;&lt;br /&gt;
* ipv6 enable&lt;br /&gt;
* exit&lt;br /&gt;
* exit&lt;br /&gt;
* show ipv6 interface vlan &amp;lt;ADMIN_VLAN_ID&amp;gt;&lt;br /&gt;
* configure&lt;br /&gt;
* interface vlan 1&lt;br /&gt;
* no ip address&lt;br /&gt;
* exit&lt;br /&gt;
* exit&lt;br /&gt;
* show ip interface vlan 1&lt;br /&gt;
&lt;br /&gt;
# PERSIST CONFIG&lt;br /&gt;
* copy running-config startup-config&lt;br /&gt;
&lt;br /&gt;
=== SSL Certificate ===&lt;br /&gt;
&lt;br /&gt;
* Connect your computer to ethernet port 1 (or any other port on the admin vlan).&lt;br /&gt;
* Navigate to switch webinterface.&lt;br /&gt;
* Navigate to System &amp;gt; Management Security &amp;gt; HTTPS (Unsure about exact menu headings)&lt;br /&gt;
* Here fill in hostname (SAME AS HOST CREATED IN IPA) for the switch as name, country: &amp;quot;NL&amp;quot;, organization-name: &amp;quot;Delft Solutions&amp;quot;, key length: 2048, duration: 365&lt;br /&gt;
* Click Generate certificate&lt;br /&gt;
* Navigate to System &amp;gt; File management &amp;gt; Upload files&lt;br /&gt;
* From this view, using the HTTP method, downloa the relevant certificate and key files&lt;br /&gt;
* In your terminal, generate a Certificate Signing Request (CSR) with &amp;lt;code&amp;gt;openssl x509 -in sslt_cert1.pem -signkey sslt_key1.pem -x509toreq -out domain.csr&amp;lt;/code&amp;gt;&lt;br /&gt;
* Give Max the resulting CSR and ask him to create the signed certificate for the host&lt;br /&gt;
* When certificate has been generated successfully, download it from IPA&lt;br /&gt;
* Establish serial connection to switch&lt;br /&gt;
* &amp;lt;code&amp;gt;enable&amp;lt;/code&amp;gt;&lt;br /&gt;
* &amp;lt;code&amp;gt;configure&amp;lt;/code&amp;gt;&lt;br /&gt;
* &amp;lt;code&amp;gt;crypto certificate &amp;lt;CERT_NUMBER&amp;gt; import&amp;lt;/code&amp;gt;&lt;br /&gt;
* paste signed certificate&lt;br /&gt;
* In webinterface, verify the newly signed certificate is now present&lt;br /&gt;
* In webinterface, enable HTTPS admin mode&lt;br /&gt;
* Navigate to https://&amp;lt;SWITCH_URL&amp;gt; in order to confirm HTTPS is enabled and the certificate is valid&lt;br /&gt;
* login&lt;br /&gt;
* save configuration&lt;/div&gt;</summary>
		<author><name>Vincent</name></author>
	</entry>
</feed>