–Built-in RADIUS client to cooperate with the RADIUS
servers
–DHCP Option 82
–RADIUS/TACACS+ login user access authentication
• Access Control List
–IPv4 IP-based ACL
–IPv4 IP-based ACE
–MAC-based ACL
–MAC-based ACE
• MAC Security
–Static MAC
–MAC Filtering
• Port Security for Source MAC address entries ltering
• DHCP Snooping to lter distrusted DHCP messages
Management
• Switch Management Interface
–Console/Telnet Command Line Interface
–Web switch management
–SNMP v1, v2c and v3
–HTTPs secure access
2
Page 3
GS-4210-16P2S
Robust Layer 2 Features
The GS-4210-16P2S can be programmed for advanced switch management functions
such as dynamic port link aggregation, 802.1Q VLAN, Spanning Tree Protocol (STP),
Rapid Spanning Tree Protocol (RSTP) and Multiple Spanning Tree Protocol (MSTP),
IGMP Querier and IGMP Snooping. Via aggregation of supporting ports, the GS-
4210-16P2S allows the operation of a high-speed trunk to combine with 2 SFP ports
such as a 2Gbps fat pipe and supports fail-over as well. The Link Layer Discovery
Protocol (LLDP) feature is also included and used to discover basic information about
neighboring devices on the local broadcast domain.
Efficient Traffic Control
The GS-4210-16P2S is loaded with robust QoS features and powerful traffic
management to enhance services to business-class data, voice, and video solutions.
The functionality includes broadcast/multicast/unicast storm control, per port bandwidth
control, 802.1p/CoS/IP DSCP QoS priority and remarking. It guarantees the best
performance at VoIP and video stream transmission, and empowers the enterprises to
take full advantages of the limited network resources.
• Built-in Trivial File Transfer Protocol (TFTP) client
• Static and DHCP for IP address assignment
• System Maintenance
–Firmware upload/download via HTTP/TFTP
–Conguration upload/download through HTTP/TFTP
–Hardware reset button for system reboot or reset to
factory default
• SNTP Network Time Protocol
• Link Layer Discovery Protocol (LLDP) Protocol and LLDP-
MED
• SNMP trap for interface Link Up and Link Down notication
• Event message logging to remote Syslog server
• Four RMON groups (history, statistics, alarms and events)
• PLANET Smart Discovery Utility
Enhanced and Secure Management
For efficient management, the GS-4210-16P2S is equipped with console, Web, Telnet and SNMP management interfaces. With the built-in Web-based
management interface, the GS-4210-16P2S offers an easy-to-use, platform-independent management and configuration facility. By supporting standard
Simple Network Management Protocol (SNMP), the switch can be managed via any standard management software. For text-based management, the switch
can be accessed via Telnet and the console port. Moreover, the GS-4210-16P2S offers secure remote management by supporting HTTPS and SNMPv3
connections which encrypt the packet content at each session.
Powerful Security
PLANET GS-4210-16P2S offers comprehensive Layer 2 to Layer 4 Access Control List (ACL) for enforcing security to the edge. It can be used to restrict
network access by denying packets based on source and destination IP address, TCP/UDP ports or defined typical network applications. Its protection
mechanism also comprises 802.1X port-based authentication, which can be deployed with RADIUS to ensure the port level security and block illegal users.
The Port Security allows limiting the number of users on a given port. The network administrators can now construct highly-secured corporate networks with
considerably less time and effort than before.
Flexible Extension Solution
The two mini-GBIC slots built in the GS-4210-16P2S are compatible with the 100BASE-FX / 1000BASE-SX/LX SFP (Small Form-factor Pluggable) fiber
transceiver to uplink to backbone switch and monitor center in long distance. The distance can be extended from 550 meters to 2km (multi-mode ber) or to
10/20/30/40/50/60/70/120 km (single-mode ber or WDM ber). They are well suited for applications within the enterprise data centers and distributions.
3
Page 4
GS-4210-16P2S
Applications
Perfectly-integrated Solution for PoE IP Surveillance
The GS-4210-16P2S brings an ideal, secure surveillance system at a lower total cost. The GS-4210-16P2S provides 16 10/100/1000Mbps 802.3at PoE+
ports able to feed sufficient PoE power for 16 IEEE 802.3at/af PoE IP cameras at the same time. It is also able to connect with one 16-channel NVR or
two 8-channel NVR systems, uplinked to the core switch and the control center. With such a high-performance switch architecture, the recorded video les
from the PoE IP cameras can be saved in the NVR system to enable the administrators to control and monitor the surveillance images both in the local
LAN and the remote sites.
Intranet
12 watts
PoE
PoE
PoE
PoE
PoE
PoE
PoE
1000
Core Switch
PC
PoE IP Cam
Total 16 IP Cameras
NVR
Control Center
1000
1000BASE-SX/LX Fiber-optic
1000BASE-T UTP
PoE
1000BASE-T UTP with PoE
PC
Department/Workgroup PoE Network
Providing 16 PoE in-line power interfaces, the GS-4210-16P2S can easily build a power that can centrally control IP phone system, IP camera system
and wireless AP group for enterprises. The GS-4210-16P2S delivers full ports of 802.3at/af compliant Gigabit Ethernet network connectivity with high-
performance and cost-effective advantages for the increasing number of PoE IP telephones, PoE IP cameras, PoE wireless access points and other
devices applied at the edge of the small or medium enterprise network. The GS-4210-16P2S improves the network efficiency and protects the network
clients with the powerful features:
■ Layer 2 to Layer 4 security
■ QoS / 802.1Q VLAN / static trunk / LACP
■ 802.1x Port-based and MAC-based network access authentication security