User Manual

Page 4
Data sheet
Security
Advanced access control lists (ACLs)
Enables network traic filtering and enhances network control using MAC- and IP-based ACLs;
time-based ACLs allow for greater flexibility with managing network access
IEEE 8021X and RADIUS network logins
Controls port-based access for authentication and accountability
Secure Sockets Layer (SSL)
Encrypts all HTTP traic, allowing safe access to the browser-based management GUI in the switch
Port isolation
The port isolation feature isolates Layer 2 traic for data privacy and security without using
VLANs. This feature can also be used to isolate the hosts in a VLAN from one another
Port security
Combines and extends IEEE 8021X and MAC authentication to provide MAC-based network
access control
ARP attack protection
The ARP detection feature enables access devices to block ARP packets from unauthorized
clients to prevent user spoofing and gateway spoofing attacks
Automatic VLAN assignment
Assigns users automatically to the appropriate VLAN based on their identity, location,
and time of day
STP BPDU port protection
Blocks Bridge Protocol Data Units (BPDUs) on ports that do not require BPDUs, preventing
forged BPDU attacks
STP root guard
Protects the root bridge from malicious attacks or configuration mistakes
Automatic denial-of-service protection
Monitors for malicious attacks and protects the network by blocking the attacks
Management password
Provides security so that only authorized access to the Web browser interface is allowed
Performance
Half-and full-duplex auto-negotiating capability on every port doubles the throughput
of every port
Selectable queue configurations
Allows for increased performance by selecting the number of queues and associated memory
buering that best meet the requirements of the network applications
IGMP snooping
Improves network performance through multicast filtering, instead of flooding traic on all ports
Fiber uplink
Provides greater distance connectivity using Gigabit Ethernet fiber uplinks
Layer 2 switching
Spanning Tree Protocol (STP)
Supports standard IEEE 8021D STP, IEEE 8021w Rapid Spanning Tree Protocol (RSTP)
for faster convergence, and IEEE 8021s Multiple Spanning Tree Protocol (MSTP)
BPDU filtering
Drops BPDU packets when STP is enabled globally but disabled on a specific port