Datasheet

© 2014 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 6 of 12
Data Sheet
Feature
Description
Port Grouping
Support for IEEE 802.3ad Link Aggregation Control Protocol (LACP)
Up to 8 groups
Up to 8 ports per group with 16 candidate ports for each (dynamic) 802.3ad link aggregation
Load balance based on source and destination MAC address, or source and destination MAC/IP
VLAN
Support for up to 256 VLANs simultaneously
Port-based and 802.1Q tag-based VLANs
Management VLAN
Guest VLAN
Auto Voice VLAN
Voice traffic is automatically assigned to a voice-specific VLAN and treated with appropriate levels of
QoS
QinQ VLAN
VLANs transparently cross a service provider network while isolating traffic among customers
Generic VLAN
Registration Protocol
(GVRP) and Generic
Attribute Registration
Protocol (GARP)
Protocols for automatically propagating and configuring VLANs in a bridged domain
Head-of-Line (HOL)
Blocking
HOL blocking prevention
Jumbo Frame
Frame sizes up to 9216 supported
Security
ACLs
Drop or rate limit based on source and destination MAC, VLAN ID or IP address, protocol, port,
differentiated services code point (DSCP)/IP precedence, TCP/UDP source and destination ports, 802.1p
priority, Ethernet type, Internet Control Message Protocol (ICMP) packets, IGMP packets, TCP flag
Support up to 512 rules
Port Security
Creates the ability to lock source MAC addresses to ports; limits the number of learned MAC addresses
IEEE 802.1x
(Authenticator Role)
802.1X: RADIUS authentication; guest VLAN; multiple host mode
RADIUS, TACACS+
Supports RADIUS and TACACS authentication; switch functions as a client
MAC Address Filtering
Supported
Storm Control
Broadcast, multicast, and unknown unicast
DoS Protection
DOS attack prevention
STP Bridge Protocol
Data Unit (BPDU) Guard
This security mechanism protects the network from invalid configurations. A port enabled for BPDU
Guard is shut down if a BPDU message is received on that port
Secure Shell (SSH)
Protocol
SSH is a secure replacement for Telnet traffic. SCP also uses SSH. SSH v1 and v2 are supported
Secure Sockets Layer
(SSL)
SSL support: Encrypts all HTTPS traffic, allowing highly secure access to the browser-based
management GUI in the switch
QoS
Priority Levels
8 hardware queues per port
Scheduling
Strict priority and weighted round-robin (WRR) queue assignment based on DSCP and class of service
(802.1p/CoS)
Class of Service
Port-based; 802.1p VLAN priority-based; IPv4/v6 IP precedence, type of service (ToS), and DSCP-
based; Differentiated Services (DiffServ); classification and re-marking ACLs, trusted QoS
Rate Limiting
Ingress policer; egress shaping and rate control; per VLAN, per port, and flow-based
Congestion Avoidance
A TCP congestion avoidance algorithm is required to reduce and prevent global TCP loss
synchronization
Multicast
Internet Group
Management Protocol
(IGMP) Versions 1, 2, and
3 Snooping
IGMP limits bandwidth-intensive multicast traffic to only the requesters; supports 256 multicast groups
IGMP Querier
IGMP querier is used to support a Layer 2 multicast domain of snooping switches in the absence of a
multicast router