ZyXEL Communications GS-2724 User Manual

ł
ł
Multilayer-aware (L2/L3/L4) ACL
ł
Port Security and Enhanced 802.1x
Port Authentication
ł
MAC Freeze and Intrusion Lock
ł
Backup Power System Support
ł
VLAN Stacking (QinQ)
ł
Jumbo Frames Support
Highly Reliable and Affordable Layer 3 Gigabit Switching
Benefits
Empower Gigabit Converged Network
ZyXEL GS-2724 is designed for SMB/SME network to realize multifunctional, Gigabit backbone
connectivity. Not only L2 switching, L3 routing can be handled as well, which makes the GS-2724 a cost-
effective platform for SMB/SME to form a L2/L3 network with just single device. Moreover, wire-speed
gigabit switching architecture as well as impressive performance in VoIP, QoS & security that makes the
GS-2724 a wise investment of building up a future-proof network for your business.
Secure Multi-Services Delivery Quality
To harness the multi-services like VoIP, Video-conferencing & Video streaming in business environment,
the GS-2724 equips with valued-added features to optimize traffic prioritization. Cooperation of eight
priority queues and WRR/SPQ scheduling algorithm can secure quality of time-sensitive applications.
Moreover, different services can be assigned to specific VLAN and configured with different priority for
traffic management. The GS-2724 comes with Multi-layer ACL provides L2/L3/L4 indicators for conducting
policy management on traffic.
24-port Managed L3 Gigabit Switch
gs-2724
Enhance Multi-layer Security Protection
The GS-2724 demonstrates strict security protection. Intrusion lock can prevent intruder. MAC freeze,
static MAC forwarding and MAC filtering can conduct protection based on MAC address. 802.1Q VLAN
can isolate traffic into different virtual LANs to protect business-critical information. Multi-layer ACL
provides L2/L3/L4 indicators for policy management on security protection. Furthermore, 802.1x can
further facilitate the assignment of VLAN and bandwidth.
Specifications
Standard Compliance
• IEEE 802.3 10Base-T Ethernet
• IEEE 802.3u 100Base-Tx Ethernet
• IEEE 802.ab 1000Base-T Ethernet
• IEEE 802.3x Flow control
• IEEE 802.1D Spanning tree protocol
• IEEE 802.1w Rapid Spanning tree protocol
• IEEE 802.1p Class of service, priority protocols
• IEEE 802.1Q VLAN tagging
• IEEE 802.1x Port Authentication
• IEEE 802.3ad LACP aggregation
Performance
• 48 Gbps non-blocking switching fabric
• Switching Forwarding Rate 35.7 Mpps
(1488000pps/1000BASE-T,148800pps/
100BASE-TX)
• Wire-speed performance
MAC and Packet Buffer
• 8 K MAC entries
• 2 MB Packet Buffer
Traffic Management and QoS
• Rate Limiting: Rule-based/Port-based
bandwidth control
• Port-based egress traffic shaping
• Broadcast Storm Control
• IEEE 802.1p with 8 priority queues
• WRR (Weighted Round Robin)/SPQ scheduling
algorithm
• DSCP
• IGMP/IGMP snooping
• Congestion control on all ports
IP Routing and Service Features
• 8 IP routing domains
• 1 K IP address table
• Wire-speed IP forwarding
• RIP v1, v2
• Static Routing
Link Aggregation
• IEEE 802.3ad LACP link aggregation compliant
• Support static manually port trunking
• Up to 6 aggregation groups, 8 ports/per group
randomly selected
Resilient Network
• IEEE 802.1w Rapid Spanning Tree Protocol (RSTP)
• BPS (Backup Power System)
User Security and Authentication
• IEEE 802.1Q tag-based and port-based VLAN
• Support GVRP, automatic VLAN member
registration
• 256 static VLAN, up to 4 K dynamic VLAN
• Full range 4 K PVID support
• Port-base VLAN & VLAN isolation
• IP Classification VLAN
• Intrusion Lock
• MAC Freeze
• MAC filtering per port secures access to each port
• Specific MAC forwarding per port: only specified
MAC addresses can access the network (Port
Security)
• Limited MAC number per port
• IP Filtering
• TCP/UDP Socket Filtering
• BPDU transparency
• 802.1x port-based authentication, compensated
assignment over VLAN and bandwidth for valid
access
Network Administration Security
• User name/password required for
Web/Telnet/local console administrators
• Two-level security by specific SNMP
read/write community
• SSH v1/v2
• SSL/TLS
Network Management
• ZyXEL iStacking™, up to 24 switches managed
by single IP address
• Web-based management
• Telnet CLI
• SNMP v1, v2c
• RS-232c Local console
• IP management: static IP or DHCP client
• RMON four RMON groups 1, 2, 3, 9 (history,
statistics, alarms, and events) for enhanced
traffic management, monitoring, and analysis
• Port mirroring: supports Source/Destination/
Both port mirroring
Intelligent ACL
(L2/L3/L4 Access List Control)
• Based on MAC address
• Based on VLAN
• Based on IP address
• Based on Protocol type
• Based on TCP/UDP type
• Based on DSCP
Loading...
+ 2 hidden pages