Lancom GS-2326 User Manual

Page 1
Network Connectivity
LANCOM GS-2326+
Managed 26-port Gigabit Ethernet switch for reliable networks
The LANCOM GS-2326+ is a reliable component for modern network infrastructures for any industry or application.
It networks up to 26 devices with its 24 Gigabit Ethernet ports and 2 combo ports (Ethernet or fiber-optic).
Equipped with numerous security features and a high-performance hardware platform, it is ideal for the secure
and reliable networking of medium-sized networks.
a
24 Gigabit Ethernet and 2 combo ports (TP/SFP)
a
a
Security with configurable access control on all ports as per IEEE 802.1X
a
Secure remote management through TACACS+, SSH, SSL, and SNMPv3
a
Convenient integration into LANCOM monitoring systems
a
IPv6 and IPv4 support for modern enterprise networks
a
5-year warranty on all components
Page 2
DATASHEET
LANCOM GS-2326+
High power output on 26 ports
The LANCOM GS-2326+ is equipped with 24 Gigabit Ethernet
ports and 2 combo ports (Ethernet or fiber-optic). With a
data throughput of 52 Gbps on the backplane, it offers full
performance even under load. This makes the switch a
high-performance basis for modern network infrastructures
in any industry or field of application.
Configurable access control
The LANCOM GS-2326+ excludes rogue clients from gaining
unauthorized access to the network. This is ensured by
secured access control on all ports as per IEEE 802.1X
(port-based, single, multi, and MAC-based).
Secure remote management
Secure communication protocols such as SSH, SSL and
SNMPv3 mean that the LANCOM GS-2326+ is ideal for
professional remote network management. The switch also
supports the TACACS+ protocol for authentication,
authorization, and accounting. This optimized solution
promises maximum security for multi-site network
management and monitoring.
Integration into LANCOM monitoring systems
The LANCOM GS-2326+ integrates seamlessly into existing
LANCOM network infrastructures. Network events are easy
to monitor with the LANCOM monitoring systems LANCOM
Large Scale Monitor and LANmonitor.
IPv6 and IPv4 support
Thanks to the dual-stack implementation, the LANCOM
GS-2326+ operates in pure IPv4, pure IPv6, or in mixed
networks. Applications such as SSL, SSH, Telnet, and TFTP
can continue to be operated on IPv6 networks. Supported
IPv6 features include stateless auto-configuration, the
discovery of neighboring devices, and MLD snooping.
Page 3
DATASHEET
LANCOM GS-2326+
Quality of Service
Supports eight hardware priority queues to prioritize inbound and outbound trafficPriority queues
Strict priority and weighted round-robin (WRR); queue assignment based on DSCP and class of service (IEEE 802.1p/CoS)Scheduling
Classification
Security
IEEE 802.1X
Access control lists
Isolated Group
Performance
VLAN
Energy efficiency (Green Ethernet)
Energy detection
Layer 2 switching
IGMP multicasts
Port based, IEEE 802.1p VLAN priority; IPv4/IPv6 Precedence; Priority queuing of packets based on DSCP/ToS/DiffServ; classification and re-marking with ACLs, trusted QoS
Ingress policer; egress shaping and rate control; control per VLAN, per port and flow basedRate limiting
SSH to secure incoming/outgoing Telnet connectionsSecure Shell Protocol (SSH)
SSL to encrypt HTTP connections; advanced security for browser-based configuration via web interfaceSecure Sockets Layer (SSL)
IEEE 802.1X access control on all ports; RADIUS for authentication, authorization and accounting with MD5 hashing; guest VLAN; dynamic VLAN assignment
Layer 2 isolation between clients in the same VLAN ('protected ports''); support multiple uplinksPrivate VLAN edge
Locking of MAC addresses to ports; limiting of the number of learned MAC addressesPort security
Blocking access for illegal IP addresses on specific portsIP source guard
Drop or rate limitation of connections based on source and destination MAC addresses, VLAN ID, IP address, protocol, port, DSCP/IP precedence, TCP/UDP source and destination ports, IEEE 802.1p priority, ICMP packets, IGMP packets, TCP flag
Authentication, authorization and accounting of configuration changes by RADIUS or TACACS+RADIUS/TACACS+
Multicast/Broadcast/Unicast storm suppressionStorm Control
Allows certain ports to be designated as protected. All other ports are non-isolated. Traffic between isolated group members ist blocked. Traffic can only be sent from isolated group to non-isolalted group.
Store and forward with latency less than 4 microsecondsSwitching technology
Support of max 8K MAC addressesMAC addresses
Max. 52 Gbps on the backplaneThroughput
38.69 million packets per second (mpps) at 64-byte packetsMaximum packet processing
Supports stacking of up to 16 devices, several switches can be managed via one ip addressSingle IP Management (SIP)
Port based and IEEE 802.1q tag based VLAN with up to 4,096 VLAN and up to 4,000 active VLANs; Supports ingress and egress packet filter in port based VLAN
Jumbo frame support with up to 9k framesJumbo frame support
Energy efficiency according to IEEE 802.3az. Automatically turns off power on Gigabit Ethernet RJ-45 port when detecting link down or Idle of client. Active mode is resumed without loss of any packets when the switch detects the link up
Adjusts the signal strength based on the cable length. Reduces the power consumption for short cableCable length detection
Support of 13 groups containing up to 16 ports each according to IEEE 802.3adLink Aggregation Control Protocol (LACP)
Support for up to 4K VLANs simultaneously (out of 4096 VLAN Ids); matching due to port, IEEE 802.1q tagged VLANs or MAC adressesVLAN
Voice traffic is automatically assigned to a voice-specific VLAN and treated with appropriate levels of QoSVoice VLAN
IGMP v1, v2, v3 to limit bandwidth-intensive multicast traffic to ports with requesters; supports 256 multicast groups; source-specific multicasting
Support of multicast domains of snooping switches in the absence of a multicast routerIGMP querier
IGMP proxy to pass IGMP messages throughIGMP proxy
VLAN registration with GVRP according to IEEE 802.1q for automatic delivery of VLANs in bridged domainsGeneric VLAN registration
Page 4
DATASHEET
LANCOM GS-2326+
Layer 2 switching
Spanning Tree Protokoll (STP) / Rapid STP / Multiple STP
LLDP
IPv6
IPv6 mechanisms
IPv6 services
Interfaces
Ethernet
Standard Spanning Tree according to IEEE 802.1d with fast convergence support of IEEE 802.1w (RSTP); using Multiple Spanning Tree instances by default according to IEEE 802.1s (MSTP)
DHCP relay agent, supporting DHCP option 82DHCP Relay Agent
Automatic discovery of network topology in layer 2 networks (Link Layer Discover Protocol) according to IEEE 802.1AB with LLDP-MED extensions
IPv4 and IPv6 in parallel to support migrationIPv4/IPv6 dual stack
1
IPv6 host mode
1
Dual IPv6/ IPv4 stack
1
IPv6 neighbor and router discovery (ND)
1
IPv6 stateless address auto-configuration
1
Path maximum transmission unit (MTU) discovery
1
Duplicate address detection (DAD)
1
ICMP version6
Prioritization of IPv6 packets in hardwareIPv6 QoS
Drop or rate limiting of IPv6 packets due to ACLs in hardwareIPv6 ACL
MLD snooping to limit multicast packets to ports with receiversMulticast Listener Discovery
Web interface/SSL, Telnet/ SSH, ping, Simple Network Time Protocol (SNTP), Trivial File Transfer Protocol (TFTP), SNMP, RADIUS, SYSLOG, DNS Client, protocol-based VLANs
1
24 TP ports 10/100/1000 mbps
1
2 Combo ports (TP/SFP) with 100/1000 mbps (SFP) and 10/100/1000 mbps (TP)
1
26 concurrent Ethernet ports in total
Management and monitoring
WEBconfig
LANconfig
Large Scale Monitor (LSM)
Port Mirroring
RJ45 configuration port for command line accessConsole port
Integrated web server with setup wizard for the configuration via Internet browsers with HTTP or HTTPS. Web interface with system dashboard, configuration menu, maintenance and monitoring functions
Supported by LANconfig (LANCOM management software): automatic detection, display of device properties, opening of web configuration
The LANCOM Large Scale Monitor (LSM) is a professional tool for monitoring medium-sized to large-scale networks with 25 to 1,000 network components. Designed especially for LANCOM components including WLAN access points, controllers, switches, and routers, this system based on open-source components additionally allows for the monitoring of third-party products such as servers and printers. Problems in the network are clearly displayed in tables or graphical floor plans, and they trigger alert messages via e-mail if certain threshold values are not maintained.
Monitoring application for Microsoft Windows for (remote) surveillance and logging of the device and port statusLANmonitor
Easy setup of ports for QoS and Security based on pre-defined configuration profilesEasy-Configuration-Ports
Traffic can be mirrored from on port to another for investigation with network analyzer or RMON probe. Up to 8 ports can be mirrored to a single mirror port. Single sessions can be selected
Access rights (read/write) can be set up separately, access control listSecurity
SNMP management via SNMPv1, v2c or v3 with support of traps. User-based security model for SNMPv3 (USM)SNMP
Diagnosis from the switch with PING and cable diagnosisDiagnosis
Page 5
DATASHEET
LANCOM GS-2326+
Management and monitoring
Command Line Interface (CLI)
Remote Monitoring
Firmware update
s-flow
Hardware
Housing
Declarations of conformity*
Supported IEEE standards
Configuration and status display from the command line with console application and direct connection to console port, via Telnet or SSH
Integrated RMON software agent supports 4 RMON groups (history, statistics, alarms and events) for enhanced traffic management, monitoring and analysis
1
Update via WEBconfig and browser (HTTP/HTTPS)
1
Update via TFTP and LANconfig
1
Dual firmware image to update during operation
Securely import and export filesSecure Copy
Automatic assignement of the management IP address by DHCPDHCP client
Automatic time settings with Simple Network Time Protocol (SNTP)SNTP
Standard for monitoring of high-speed-networks. Visualization of network use, accounting an analysation to protect your network against dangers
5,50 lbs (2,50 kg)Weight
Internal power supply unit (110–230 V, 50-60 Hz)Power supply
Temperature range 0–40° C; humidity 10–90%; non-condensingEnvironment
Robust metal housing, 19' 1U (442 x 44 x 170,3 mm > W x H x D) with removable mounting brackets, network connectors on the front
None; fanless design without rotating parts, high MTBFFans
26 WattsPower consumption (max)
EN 60950-1, EN 55022, EN 55024CE
FCC Part 15 (CFR47) Class AFCC
You will find all declarations of conformity in the products section of our website at www.lancom-systems.eu*) Note
Link Layer Discovery Protocol (LLDP)IEEE 802.1AB
LLDP-MEDIEEE 802.1AB
Q-in-Q taggingIEEE 802.1ad
MAC BridgingIEEE 802.1d
Spanning TreeIEEE 802.1d
Class of ServiceIEEE 802.1p
VLANIEEE 802.1q
Multiple Spanning Tree Protocol (MSTP)IEEE 802.1s
Rapid Spanning Tree Protocoll (RSTP)IEEE 802.1w
Port Based Network Access ControlIEEE 802.1X
10Base-T EthernetIEEE 802.3
1000Base-TX EthernetIEEE 802.3ab
Link Aggregation Control Protocol (LACP)IEEE 802.3ad
Energy Efficient EthernetIEEE 802.3az
100Base-T EthernetIEEE 802.3u
Page 6
DATASHEET
LANCOM GS-2326+
Supported IEEE standards
Flow ControlIEEE 802.3x
1000Base-X EthernetIEEE 802.3z
Supported RFC standards
Telnet Protocol SpecificationRFC 854
MIB IIRFC 1213
SNMP Generic TrapsRFC 1215
Bridge MIBRFC 1493
Simple Network Time Protocol (SNMP)RFC 1769
Remot Network Monitoring MIB v2 (RMONv2)RFC2021
Interface MIBRFC 2233
SMON MIBRFC 2613
HTTP AuthenticationRFC 2617
Ethernet-Like MIBRFC 2665
IEEE 802.1p and IEEE 802.1q Bridge MIBRFC 2674
Hypertext Transfer Protocol Secure (HTTPS)RFC 2818
Remote Network Monitoring MIB (RMON)RFC 2819
Interface Group MIB using SMIv2RFC 2863
IGMP MIBRFC 2933
MLDv1 MIBRFC 3019
User based Security Model for SNMPv3RFC 3414
View based Access Control Model for SNMPRFC 3415
Ethernet-Like MIBRFC 3635
IEEE 802.3 MAU MIBRFC 3636
Entitiy MIBv3RFC 4133
Bridge MIBRFC 4188
The Secure Shell Protocol Architecture (SSH)RFC 4251
RADIUS Authentication Client MIBRFC 4668
RADIUS Accounting MIBRFC 4670
Multicast Group Membership Discovery MIBRFC 5519
Scope of delivery
Printed Installation Guide (DE/EN)Manual
Serial configuration cable, 1.5mCable
IEC power cordCable
Two 19' brackets for rackmounting19" brackets
Support
5 years, support via hotline and Internet KnowledgeBaseWarranty
LANCOM Warranty Advanced Option S
Accessories
Option to extend the manufacturer´s warranty from 3 to 5 years and replacement of a defective device on the next working day, item no. 10715
LANCOM SFP-SX-LC1, item no. 615561000Base-SX SFP module
Page 7
DATASHEET
LANCOM GS-2326+
Accessories
LANCOM SFP-LX-LC1, item no. 615571000Base-LX SFP module
Item number(s)
61483 (EU)LANCOM GS-2326+ (EU)
61484 (UK)LANCOM GS-2326+ (UK)
www.lancom-systems.de
LANCOM Systems GmbH I Adenauerstr. 20/B2 I 52146 Würselen I Deutschland I E-Mail info@lancom-systems.de
LANCOM, LANCOM Systems and LCOS are registered trademarks. All other names or descriptions used may be trademarks or registered trademarks of their owners. Subject to change without notice. No liability for
technical errors and/or omissions. 05/16
Loading...