- IEEE 802.1Q tagged VLAN- Up to 255 VLANs groups, out of 4095 VLAN IDs- Provider Bridging (VLAN Q-in-Q) support (IEEE 802.1ad)- Private VLAN Edge (PVE)- Protocol-based VLAN- MAC-based VLAN- IP Subnet-based VLAN- Voice VLAN- Management VLAN
SupportsSpanning Tree Protocol
- STP, IEEE 802.1D Spanning Tree Protocol- RSTP, IEEE 802.1w Rapid Spanning Tree Protocol- MSTP, IEEE 802.1s Multiple Spanning Tree Protocol- STP BPDU Guard and BPDU filtering
SupportsLink Aggregation
- IEEE 802.3ad Link Aggregation Control Protocol (LACP)- Cisco ether-channel (Static Trunk)- Maximum 5 trunk groups, up to 5 ports per trunk group- Up to 20Gbps bandwidth (full duplex mode)
Provides port mirror (many-to-1)
Port Mirroring to monitor the incoming or outgoing traffic on a particular port
Loop protection to avoid broadcast loops
Layer 3 IP Routing Features
Supports maximum 32 software static routes and route summarization
Quality of Service
Ingress Shaper and Egress Rate Limit per port bandwidth control
8 priority queues on all switch ports
Traffic classification
- IEEE 802.1p CoS- TOS / DSCP / IP Precedence of IPv4/IPv6 packets- IP TCP/UDP port number- Typical network application
Strict priority and Weighted Round Robin (WRR) CoS policies
Traffic-policing policies on the switch port
DSCP remarking
Multicast
Supports IGMP Snooping v1, v2 and v3 for IPv4 multicasting network
Supports MLD Snooping v1 and v2 for IPv6 multicasting network
Querier mode support
IGMP Snooping port filtering
MLD Snooping port filtering
MVR (Multicast VLAN Registration)
Security
Authentication
? IEEE 802.1x Port-based / MAC-based network access authentication- Built-in RADIUS client to co-operate with the RADIUS servers- TACACS+ login users access authentication- RADIUS / TACACS+ users access authentication
Access Control List
? IPv4 / IPv6 IP-based ACL- MAC-based ACL
Source MAC / IP address binding
Port Security for Source MAC address entries filtering
DHCP Snooping to filter distrusted DHCP messages
Dynamic ARP Inspection discards ARP packets with invalid MAC address to IP address binding
IP Source Guard prevents IP spoofing attacks
Auto DoS rule to defend DoS attack
IP address access management to prevent unauthorized intruder
Management
IPv4 and IPv6 dual stack management
Switch Management Interfaces
- Console / Telnet Command Line Interface- Web switch management- SNMP v1, v2c, and v3 switch management- SSH / SSL secure access
User Privilege levels control
System Maintenance
- Configuration upload / download through Web interface- Dual Images- Reset button for system reboot or reset to factory default- Built-in Trivial File Transfer Protocol (TFTP) client
Four RMON groups (history, statistics, alarms, and events)
IPv6 IP Address / NTP / DNS management and ICMPv6
BOOTP and DHCP for IP address assignment
DHCP Relay
DHCP Option82
NTP (Network Time Protocol)
Link Layer Discovery Protocol (LLDP) Protocol and LLDP-MED
Cable Diagnostic technology provides the mechanism to detect and report potential cabling issues
PLANET Smart Discovery Utility for deploy management