Datasheet
Allied Telesis www.alliedtelesis.com
x600-24 AND 48 SERIES | Intelligent Gigabit Layer 3+ Switches
Page 2
Secure
Advanced security features protect your network - from the edge to the core.
Network Access Control (NAC)
NAC allows for unprecedented control over user access to the network, in
order to mitigate threats to network infrastructure. The x600 switches use
802.1x port-based authentication in partnership with standards-compliant
dynamic VLAN assignment, to asses a user’s adherence to network security
policies and either grant authentication or offer remediation.
Furthermore, if multiple users share a port then multi-authentication can be
used. Different users on the same port can be assigned into different VLANs,
and so given different levels of network access. Additionally, a Guest VLAN
can be configured to provide a catch-all for users who aren't authenticated.
Tri-authentication
Authentication options on the x600 also include alternatives to 802.1x port-
based authentication, such as web authentication to enable guest access, and
MAC authentication for end points that do not have an 802.1x supplicant.
All three authentication methods - 802.1x, MAC-based and Web-based, can
be enabled simultaneously on the same port (tri-authentication).
Local RADIUS server
As well as supporting a RADIUS client for remote authentication, the x600
Layer 3+switches have a built in RADIUS server for local authentication.
Further security features
The x600 switches also support a number of features to combat LAN-based
attacks - BPDU Guard, STP Root Guard, DOS attack blocking and ACLs.
Scalable
An extensive range of port-density and uplink-connectivity options.
The choice of 24-port and 48-port versions, coupled with the ability to stack
up to 4 units, means this one switch family can connect anything from a small
workgroup right up to a large business.
The choice of 1 Gigabit or 10 Gigabit uplink ports lets you tailor the uplink
bandwidth to suit your network application. Stacking bandwidth is provided
separately from the 10 Gigabit uplink ports - so a 4-unit stack can have a
massive 160 Gbps of uplink bandwidth.
Hotswappable XFPs provide high-speed, high-capacity fiber uplinks, with up to
40Gbps uplink capacity from each switch to the network core.
The flexibility of the x600 family, coupled with the ability to stack multiple
units, ensures a future-proof network.
Resilient
VCStack provides fast failover for uninterrupted network service. High
availability features ensure traffic flow continues even during outages.
VCStack
Create a VCStack with up to four units. VCStack provides a highly available
system where network resources are spread out across stacked units,
reducing the impact if one of the units fails. Aggregating switch ports on
different units across the stack provides excellent network resiliency.
Ethernet Protected Switched Rings (EPSR)
EPSR and 10 Gigabit Ethernet allow several x600 switches to form a high-
speed protected ring capable of recovery within as little as 50ms. This feature is
perfect for high performance and high availability in enterprise networks.
Control Plane Prioritization (CPP)
Ensure maximum performance and prevent network outages with CPP.
CPP prevents the Control Plane from becoming flooded in the event of a
network storm or Denial of Service (DoS) attack, ensuring critical network
control traffic always reaches its destination.
Thrash Limiting
Monitoring of excessive MAC learning events enables early detection of
storms, allowing the switch to shut down the storm before it spreads through
the network.
High-performing
Non-blocking architecture and superior QoS ensure wire-speed delivery
of all your critical IPv4 and IPv6 traffic.
Wire speed switching
All ports are fully non-blocking, so IPv4 Layer 2 and Layer 3 switching occur
at wire speed. This is ideal for high-end server deployments and when
aggregating gigabit connections.
Aggregation at Layer 2 and Layer 3
A large L3 route table provides support for thousands of IP interfaces,
essential when aggregating complex IP networks.
IPv6
Prepare your network for IPv6, protecting your investment. As well as allowing
wire-speed IPv6 unicast traffic routing and forwarding, IPv6 support enables
switch management via IPv6 protocols, to tunnel IPv6 traffic over IPv4 networks,
and with MLD Snooping, to intelligently manage IPv6 multicast streams.
Industry-leading Quality of Service (QoS)
Comprehensive low-latency wire-speed QoS provides flow-based traffic
management with full classification, prioritization, traffic shaping and min/max
bandwidth profiles. Enjoy boosted network performance and guaranteed
delivery of business-critical Ethernet services and applications. Time-critical
services like voice and video take precedence over non-essential services like
file downloads, maintaining responsiveness of Enterprise applications.
Easy to manage
Industry standard CLI and Network in a Box.
The x600 Layer 3+ switches run the advanced AlliedWare Plus™ Layer
3 Fully Featured Operating System, delivering a rich feature set and an
industry-standard CLI.
In addition to the CLI, the x600 switches feature a
comprehensive GUI for easy access to monitoring and configuration.
Network in a Box
Network in a Box simplifies administration by integrating several network
services into the x600 switch:
• Radius Server checks the identity of users to keep the network safe and
free from uninvited ‘guests’.
• Storm Control ensures a robust and resilient network by managing the
amount of traffic allowed on the network, and dealing with any unexpected
surges.
•DHCP server automates the distribution of network addresses to every
computer.
•And a centralized Timekeeper ensures your network is always working in full
synchronicity.
•Loop Protection guards against accidental wiring mistakes.
Centralising network administration greatly reduces the need for fulltime IT
experts, while increasing security and robustness.










