dahua CS40 Ethernet Cloud Managed Switch User Guide
- June 17, 2024
- Dahua
Table of Contents
dahua CS40 Ethernet Cloud Managed Switch
Specifications
- Product: Ethernet Switch (Cloud Managed Switch)
- Manufacturer: ZHEJIANG DAHUA VISION TECHNOLOGY CO., LTD.
- Version: V1.0.1
Product Information
This manual introduces the installation, functions, and operations of the cloud managed switch (referred to as the switch). It is essential to read carefully before using the device and keep the manual safe for future reference.
Product Usage Instructions
Safety Instructions
- Signal Words: Provides information on potential hazards and problem-solving methods.
- Privacy Protection Notice: Users must comply with local privacy protection laws when handling personal data.
Installation Requirements
- Transportation: Follow allowed humidity and temperature conditions during transportation.
- Storage: Keep the device stored under specified humidity and temperature conditions.
- Installation: Ensure compliance with local electrical safety codes, stable ambient voltage, and power supply requirements. Avoid exposure to sunlight, heat sources, dampness, and dust. Maintain proper ventilation and use manufacturer-provided power supply.
Important Safeguards and Warnings
- Handle the device properly to prevent hazards and property damage.
- Comply with guidelines for transporting, storing, and installing the device.
- Personnel working at heights must take necessary safety measures.
FAQ
Q: What should I do if I encounter a potential hazard while using the switch?
A: Refer to the signal words in the manual for guidance on mitigating hazards and solving problems efficiently.
Q: How can I ensure compliance with privacy protection laws when handling personal data?
A: Follow the Privacy Protection Notice guidelines provided in the manual to protect personal data and comply with local regulations.
Foreword
General
This manual introduces the installation, functions and operations of the cloud-managed switch (hereinafter referred to as “the switch”). Read carefully before using the device, and keep the manual safe for future reference.
Safety Instructions
The following signal words might appear in the manual
Revision History
Version | Revision Content | Release Time |
---|---|---|
V1.0.1 | Updated the description of the front panel. | September 2023 |
V1.0.0 | First release. | June 2023 |
Privacy Protection Notice
As the device user or data controller, you might collect the personal data of others such as their face, fingerprints, and license plate number. You need to be in compliance with your local privacy protection laws and regulations to protect the legitimate rights and interests of other people by implementing measures which include but are not limited: Providing clear and visible identification to inform people of the existence of the surveillance area and provide required contact information.
About the Manual
- The manual is for reference only. Slight differences might be found between the manual and the product.
- We are not liable for losses incurred due to operating the product in ways that are not in compliance with the manual.
- The manual will be updated according to the latest laws and regulations of related jurisdictions. For detailed information, see the paper user’s manual, use our CD-ROM, scan the QR code or visit our official website. The manual is for reference only. Slight differences might be found between the electronic version and the paper version.
- All designs and software are subject to change without prior written notice. Product updates might result in some differences appearing between the actual product and the manual. Please contact customer service for the latest program and supplementary documentation.
- There might be errors in the print or deviations in the description of the functions, operations and technical data. If there is any doubt or dispute, we reserve the right of final explanation.
- Upgrade the reader software or try other mainstream reader software if the manual (in PDF format) cannot be opened.
- All trademarks, registered trademarks and company names in the manual are properties of their respective owners.
- Please visit our website, contact the supplier or customer service if any problems occur while using the device.
- If there is any uncertainty or controversy, we reserve the right of final explanation
Important Safeguards and Warnings
This section introduces content covering the proper handling of the device, hazard prevention, and prevention of property damage. Read carefully before using the device, and comply with the guidelines when using it.
Transportation Requirements
- Transport the device under allowed humidity and temperature conditions.
Storage Requirements
- Store the device under allowed humidity and temperature conditions.
Installation Requirements
warning
- Do not connect the power adapter to the device while the adapter is powered on.
- Strictly comply with the local electrical safety code and standards. Make sure that the ambient voltage is stable and meets the power supply requirements of the device.
- Personnel working at heights must take all necessary measures to ensure personal safety including wearing a helmet and safety belts.
- Do not place the device in a place exposed to sunlight or near heat sources.
- Keep the device away from dampness, dust, and soot.
- Put the device in a well-ventilated place, and do not block its ventilation.
- Use an adapter or cabinet power supply provided by the manufacturer.
- The power supply must conform to the requirements of ES1 in IEC 62368-1 standard and be no higher than PS2. Please note that the power supply requirements are subject to the device label.
- Do not connect the device to two or more kinds of power supplies, to avoid damage to the device.
- The device is a class I electrical appliance. Make sure that the power supply of the device is connected to a power socket with protective earthing.
- The device must be grounded by a copper wire with a cross-sectional area of 2.5 mm2and a ground resistance no more than 4 Ω.
- Voltage stabilizer and lightning surge protector are optional depending on the actual power supply on site and the ambient environment.
- To ensure heat dissipation, the gap between the device and the surrounding area should not be less than 10 cm on the sides and 10 cm on top of the device.
- When installing the device, make sure that the power plug and appliance coupler can be easily reached to cut off power.
Operation Requirements
warning
- Do not disassemble the device without professional instruction.
- Operate the device within the rated range of power input and output.
- Make sure that the power supply is correct before use.
- Make sure the device is powered off before disassembling wires to avoid personal injury.
- Do not unplug the power cord on the side of the device while the adapter is powered on.
- Use the device under allowed humidity and temperature conditions.
- Do not drop or splash liquid onto the device, and make sure that there is no object filled with liquid on the device to prevent liquid from flowing into it.
- Operating temperature:–10 °C to +55 °C (+14 °F to +131 °F).
- This is a class A product. In a domestic environment this may cause radio interference in which case you may be required to take adequate measures.
- Do not block the ventilator of the device with objects, such as a newspaper, table cloth or curtain.
- Do not place an open flame on the device, such as a lit candle
Maintenance Requirements
Warning
- Power off the device before maintenance.
- Mark key components on the maintenance circuit diagram with warning signs.
Overview
Introduction
The cloud-managed switch is a layer-2 commercial switch. With its long- distance PoE function, it can supply power to devices up to 250 meters away. The 4-port switch has PoE orange port functions with the PoE power supply as high as 60 W, the 8-port and 16/24-port switch has PoE red port functions with the PoE power supply as high as 90 W. With a full-metal design, the switch has great heat dissipation capabilities on its shell surface, and is able to work in environments that range from –10 °C to +55 °C (+14 °F to +131 °F). In addition, based on the DoLynk Care Cloud Server, this switch can be managed through the DoLynk Care app, the network topology diagram function can be used to quickly locate the problem. The switch is applicable for uses in different scenarios, including homes, factories and offices.
Features
- 10/100 Mbps or 10/100/1000 Mbps PoE Ethernet ports, uplink ports support gigabit optical ports or Ethernet ports.
- The gray ports conform with IEEE802.3af and IEEE802.3at standards, the orange ports conform with Hi-PoE standard and the red ports conform with IEEE802.3bt standards.
- Supports network topology visualization.
- Supports 250 m long-distance power supply. In Extend Mode, the transmission distance of the PoE port is up to 250 meters but the transmission rate drops to 10 Mbps. The actual transmission distance might vary due to power consumption of connected devices or the cable type and status.
- Features mobile management by app.
- Supports LLDP (Link Layer Discovery Protocol).
- Supports DHCP (Dynamic Host Configuration Protocol) Client.
- Supports VLAN configuration based on IEEE802.1Q.
- STP/RSTP is supported on select models.
- Manual link aggregation and LACP link aggregation are supported on selected models.
- Desktop mount and rack mount for 16/24-port. Desktop mount and wall mount for 4/8-port.
Port and Indicator
Front Panel
Front Panel (4/8-port)
The following figure uses an 8-port 100 Mbps cloud-managed switch as an example, and might differ from the actual product.
No. | Name | Description |
---|
1
|
Reset button
| Press and hold it for more than 5 seconds, and release after the panel
status indicators all turn on to restore the switch to default settings.
2| PoE ports| 4/8 × 10/100 Mbps or 10/100/1000 Mbps self-adaptive PoE Ethernet
ports.
3
|
Uplink ports
| 10/100/1000 Mbps self-adaptive Ethernet ports.
● The number of the uplink ports might differ from different models. Please refer to the actual product.
● Some models support 1000 Mbps optical ports. Please refer to the actual product.
4
|
Power indicator
| ● On: Power on.
● Off: Power off.
5| System status indicator (SYS)| Flashes: The system works normally.
6
|
Uplink port status indicators
| Link indicator.
● On: Connected to device.
● Off: Not connected to device.
No. | Name | Description |
---|---|---|
Activity indicator. |
● Flashing: Transmitting data.
● Off: Not transmitting data.
7
|
PoE port status indicators
| PoE port status indicator.
● On: Powered by PoE.
● Off: Not powered by PoE.
Link/Act indicator
| Link/Act indicator.
● On: Connected to device.
● Off: Not connected to device.
● Flashing: Transmitting data.
Front Panel (16/24-port)
The following figure uses a 16-port 100 Mbps cloud-managed switch as an example, and might differ from the actual product.
Table 2-2 Description of front panel (16/24-port)
No. | Name | Description |
---|---|---|
1 | PoE ports | 16/24 × 10/100 Mbps or 10/100/1000 Mbps self-adaptive Ethernet |
ports.
2
|
Uplink ports
| 10/100/1000 Mbps self-adaptive Ethernet ports and 1000 Mbps optical ports.
The uplink ports are combo ports on select models.
3
|
Reset button
| Press and hold it for more than 5 seconds, and release after the panel status indicators all turn on to restore the switch to default settings.
4
|
Console serial port
| Device debugging port.
Only supported by select models.
No. | Name | Description |
---|
5
|
PoE output power indicator
| ● Only solid green: PoE output power ≤ 50%.
● Solid green and yellow: 50% < PoE output power ≤ 80%.
● Solid green, yellow and red: 80% < PoE output power.
6
|
Link/Act indicator
| ● On: Connected to device.
● Off: Not connected to device.
● Flashing: Transmitting data.
7
| PoE port status indicators| ● On: Powered by PoE.
● Off: Not powered by PoE.
8
| Uplink port status (Link) indicators| ● On: Connected to device.
● Off: Not connected to device.
9
|
Power indicator
| ● On: Power on.
● Off: Power off.
10| System status indicator (SYS)| Flashes: The system works normally.
Rear Panel
Rear Panel (4/8-port)
The figures might differ from different models. Please refer to the actual product
Table 2-3 Description of rear panel (4/8 port)
No. | Name | Description |
---|
1
|
Ground terminal
| Connecting GND.
● Normal GND connection of the Switch guarantees device lightning protection and anti-interference. You must connect the GND cable before powering on the Switch and power off the Switch before disconnecting the GND cable.
● The sectional area of the GND cable must be more than 2.5 mm2, and the GND resistance must to be less than 4 Ω.
2| Power port| Supports 53 VDC or 54 VDC.
Rear Panel (16/24-port)
The figures might differ from different models. Please refer to the actual product
Figure 2-4 Rear panel (16/24 port)
Table 2-4 Description of rear panel (16/24 port)
No. | Name | Description |
---|---|---|
1 | DIP switch | Supported by select models. |
2 | Power port | Supports 100–240 VAC. |
3
|
Ground terminal
| Connecting GND.
● Normal GND connection of the Switch guarantees device lightning protection and anti-interference. You must connect the GND cable before powering on the Switch and power off the Switch before disconnecting the GND cable.
● The sectional area of the GND cable must be more than 2.5 mm2, and the GND resistance must to be less than 4 Ω.
Installation
Different installation methods suit for different models. Please select appropriate methods as needed.
Preparation
- Select an appropriate installation method as needed.
- Install the Switch on a solid and flat surface.
- Leave around 10 cm of open space around the Switch for heat dissipation and to ensure good ventilation.
Desktop Mount
The Switch supports desktop mount. You can directly place it on a solid and flat desktop.
Rack Mount
The switch supports rack mount.
Procedure
- Step 1 Attach the mounting brackets to the switch (one on each side), and fix them with the provided screws.
- Step 2 Fix the switch onto the rack.
Wall Mount
Procedure
- Step 1 Drill two M4 screws into the wall, leaving a space of 4 mm between the wall and the head of the screw.
- Screws do not come with the package. Purchase them as needed.
- Make sure that the distance between the screws is the distance between the wallmount holes (77.8 mm for a 4-port switch and 128.4 mm for an 8-port switch).
- Step 2 Align the wall-mount holes on the back cover of the device with the screws, and hang the device on the screws.
Wiring
Connecting GND
Background Information
Normal GND connection of the device is the important guarantee for device lightning protection and anti-interference. The steps for connecting the GND are as follows:
Procedure
- Step 1 Remove the ground screw on the device and place it properly. Pass the ground screw through the round hole of the OT terminal of the ground cable. Turn the ground screw clockwise with a cross screwdriver to fasten the OT terminal of the ground cable.
- Step 2 Wind the other end of the ground cable into a circle with needle-nose pliers.
- Step 3 Connect the other end of the ground cable to the ground bar, turn the hex nut clockwise with a wrench to fasten the other end of the ground cable to the ground terminal
Connecting Power Cord
Background Information
- Before connecting the power cord, make sure that the device is reliably grounded.
Procedure
- Step 1 Connect one end of the power cord into the power jack of the device accurately.
- Step 2 Connect the other end of the power cord to the external power socket.
Connecting Ethernet Port
The Ethernet port adopts a standard RJ-45 port. With the self-adaptation function, it can be automatically configured to full-duplex/half-duplex operation mode. It supports MDI/MDI-X self-recognition of the cable, therefore, you can use cross-over cable or straight-through cable to connect the terminal device to the network device.
The cable connection of RJ-45 connector conforms to the standard 568B (1-orange white, 2-orange, 3-green white, 4-blue, 5-blue white, 6-green, 7-brown white, 8-brown).
Connecting SFP Ethernet Port
Background Information
warning
-
When installing the SFP optical module, do not touch the gold finger of the SFP optical module.
Do not remove the dust plug of the SFP optical module before connecting the optical fiber. -
Do not directly insert the SFP optical module into the slot while the optical fiber is inserted in it. Unplug the optical fiber before installing it.
Procedure
- Step 1 Wear the antistatic wristband, and confirm that the antistatic wristband is in good contact with your skin and the Device is reliably grounded.
- Step 2 Turn up the handle of the SFP optical module vertically and hold the optical module on both sides with your hands.
- Step 3 Push the optical module gently into the slot in the horizontal direction until the SFP optical module is firmly connected to the slot.
- Step 4 Remove the dust cap of the LC connector of the optical fiber and the dust plug of the SFP optical module.
- Step 5 Connect the LC connector of the optical fiber to the SFP optical module. Figure 4-5 Connect optical fiber
Connecting PoE Ethernet Port
You can directly connect the device PoE Ethernet port to the switch PoE Ethernet port through a network cable to achieve a synchronized network connection and power supply. With Extend Mode disabled, the maximum distance between the switch and the device is about 100 m. When connecting to a non-PoE device, the device needs to be used with an isolated power supply.
Initializing and Adding the Switch
Initializing the Switch
- You can use DoLynk Care app to scan the QR code of the device, and then add and initialize the device when the device is connected to Internet.
- You can log in to the webpage or use ConfigTool to initialize the device and modify the IP address when the device is not connected to Internet.
- Device initialization is required for first-time use or after the switch has been reset.
- DHCP Client is enabled by default. If no IP address is assigned, the default IP address can be used. (See from the device label, usually 192.168.1.110.)
- Device initialization is available only when the switch and the computer are on the same network segment.
- Plan the network segment properly to connect the switch to the network.
- Different models support different methods of local initialization. For details, see from the technical specifications.
Webpage initialization is only supported on select models, and ConfigTool is only supported on select models.
Webpage Initialization
You can log in to the device through webpage for management and operation. For details, see the web operation manual. The device has no initial password. You can set your password according to the webpage prompts when you log in for the first time and initialize the device.
ConfigTool Initialization
Background Information You can initialize devices and modify the IP address of devices by using the ConfigTool. ConfigTool can be downloaded from the Dahua official website, and the link is
Procedure
-
Step 1 Double-click “ConfigTool.exe” to open the tool.
-
Step 2 Tap Search Setting.
-
Step 3 Enter the start IP address and end IP address of the network segment on which you want to search for devices, and then tap OK.
-
Step 4 Tap on the Modify IP page, and search for devices on the network segment that you have arranged.
-
Step 5 Select the devices that need initialization, and then tap Initialize.
-
Step 6 Set and confirm the password of the devices, then enter a valid cell phone number, and tap Next.
-
Step 7 Select the devices whose IP addresses need to be modified, and then tap Modify IP.
-
Step 8 Tap Edit on the Modify IP page.
-
Step 9 Tap Static mode, and then enter target IP, subnet mask, and gateway.
The switch target IP address must be on the same network segment as the computer. Figure 5-6 Modify device IP address (2) -
Step 10 Tap OK.
Adding the Switch
Scan the QR code and add the switch to the DoLynk Care app.
Procedure
- Step 1 Open the DoLynk Care app.
- Step 2 Tap + on the upper-right corner of the Home screen, and scan the QR code of the switch.
- Step 3 If the switch has not been initialized, you need to enter the SC password on the label, and then tap OK . Enter the device password, and then tap OK. If the switch has been initialized, you do not need to enter the SC password. Enter the device password, and then tap OK.
- Step 4 Tap Done.
Select Me > HELP > User’s_Manual in DoLynk Care for more details.
Related Information
Scan the QR code below to get the DoLynk Care app.
- For more details, see DoLynk Care User’s Manual.
Appendix 1 Cybersecurity Recommendations
Cybersecurity is more than just a buzzword: it’s something that pertains to every device that is connected to the internet. IP video surveillance is not immune to cyber risks, but taking basic steps toward protecting and strengthening networks and networked appliances will make them less susceptible to attacks. Below are some tips and recommendations from Dahua on how to create a more secured security system.
Mandatory actions to be taken for basic device network security:
-
Use Strong Passwords
Please refer to the following suggestions to set passwords:- The length should not be less than 8 characters.
- Include at least two types of characters; character types include upper and lower case letters, numbers and symbols.
- Do not contain the account name or the account name in reverse order.
- Do not use continuous characters, such as 123, abc, etc.
- Do not use overlapped characters, such as 111, aaa, etc.
-
Update Firmware and Client Software in Time
- According to the standard procedure in Tech-industry, we recommend to keep your device (such as NVR, DVR, IP camera, etc.) firmware up-to-date to ensure the system is equipped with the latest security patches and fixes. When the device is connected to the public network, it is recommended to enable the “auto-check for updates” function to obtain timely information of firmware updates released by the manufacturer.
- We suggest that you download and use the latest version of client software.
“Nice to have” recommendations to improve your device network security:
-
1. Physical Protection We suggest that you perform physical protection to device, especially storage devices. For example, place the device in a special computer room and cabinet, and implement well-done access control permission and key management to prevent unauthorized personnel from carrying out physical contacts such as damaging hardware, unauthorized connection of removable device (such as USB flash disk, serial port), etc.
- Change Passwords Regularly We suggest that you change passwords regularly to reduce the risk of being guessed or cracked.
- Set and Update Passwords Reset Information Timely The device supports password reset function. Please set up related information for password reset in time, including the end user’s mailbox and password protection questions. If the information changes, please modify it in time. When setting password protection questions, it is suggested not to use those that can be easily guessed.
- Enable Account Lock The account lock feature is enabled by default, and we recommend you to keep it on to guarantee the account security. If an attacker attempts to log in with the wrong password several times, the corresponding account and the source IP address will be locked.
- Change Default HTTP and Other Service Ports We suggest you to change default HTTP and other service ports into any set of numbers between 1024–65535, reducing the risk of outsiders being able to guess which ports you are using.
- Enable HTTPS We suggest you to enable HTTPS, so that you visit Web service through a secure communication channel.
- MAC Address Binding We recommend you to bind the IP and MAC address of the gateway to the device, thus reducing the risk of ARP spoofing.
- Assign Accounts and Privileges Reasonably According to business and management requirements, reasonably add users and assign a minimum set of permissions to them.
- Disable Unnecessary Services and Choose Secure Modes If not needed, it is recommended to turn off some services such as SNMP, SMTP, UPnP, etc., to reduce risks. If necessary, it is highly recommended that you use safe modes, including but not limited to the following services:
* SNMP: Choose SNMP v3, and set up strong encryption passwords and authentication passwords.
* SMTP: Choose TLS to access mailbox server.
* FTP: Choose SFTP, and set up strong passwords.
* AP hotspot: Choose WPA2-PSK encryption mode, and set up strong passwords.
10. Audio and Video Encrypted Transmission If your audio and video data contents are very important or sensitive, we recommend that you use encrypted transmission function, to reduce the risk of audio and video data being stolen during transmission. Reminder: encrypted transmission will cause some loss in transmission efficiency.
11. Secure Auditing
* Check online users: we suggest that you check online users regularly to see if the device is logged in without authorization.
* Check device log: By viewing the logs, you can know the IP addresses that were used to log in to your devices and their key operations.
12. Network Log Due to the limited storage capacity of the device, the stored log is limited. If you need to save the log for a long time, it is recommended that you enable the network log function to ensure that the critical logs are synchronized to the network log server for tracing.
13. Construct a Safe Network Environment In order to better ensure the safety of device and reduce potential cyber risks, we recommend:
* Disable the port mapping function of the router to avoid direct access to the intranet devices from external network.
* The network should be partitioned and isolated according to the actual network needs. If there are no communication requirements between two sub networks, it is suggested to use VLAN, network GAP and other technologies to partition the network, so as to achieve the network isolation effect.
* Establish the 802.1x access authentication system to reduce the risk of unauthorized access to private networks.
* Enable IP/MAC address filtering function to limit the range of hosts allowed to access the device.
More information
Please visit Dahua official website Security Emergency Response Center for security announcements and the latest security recommendations.
ZHEJIANG DAHUA VISION TECHNOLOGY CO., LTD.
- Address: No. 1399, Binxing Road, Binjiang District, Hangzhou, P. R. China |
- Website: www.dahuasecurity.com
- Postcode: 310053
- Email: dhoverseas@dhvisiontech.com
- Tel: +86-571-87688888 28933188
Read User Manual Online (PDF format)
Read User Manual Online (PDF format) >>