User's Manual

Table Of Contents
Users Manual of GS-5220-8P2T2S Managed Switch
15
Robust Layer 2 Features
The GS-5220-8P2T2S can be programmed for advanced switch management function, such as dynamic port link aggregation,
Q-in-Q VLAN, Multiple Spanning Tree Protocol (MSTP), Layer 2/4 QoS, bandwidth control and IGMP/MLD snooping. The
GS-5220-8P2T2S allows the operation of a high-speed trunk combining multiple ports. Supporting 6 trunk groups, it enables a
maximum of up to 12 ports per trunk and supports connection fail-over as well.
Powerful Security
The GS-5220-8P2T2S offers comprehensive layer 2 to layer 4 access control list (ACL) for enforcing security to the edge. It
can be used to restrict network access by denying packets based on source and destination IP address, TCP/UDP port number
or defined typical network applications. Its protection mechanism also comprises 802.1x Port-based and MAC-based user and
device authentication. With the private VLAN function, communication between edge ports can be prevented to ensure user
privacy.
Enhanced Security and Traffic Control
The GS-5220-8P2T2S also provides DHCP Snooping, IP Source Guard and Dynamic ARP Inspection functions to prevent
IP snooping from attack and discard ARP packets with invalid MAC address. The network administrator can now build
highly-secure corporate networks with considerably less time and effort than before.
User-friendly Secure Management
For efficient management, the GS-5220-8P2T2S is equipped with console, web and SNMP management interfaces. With the
built-in web-based management interface, the GS-5220-8P2T2S offers an easy-to-use, platform independent management and
configuration facility. The GS-5220-8P2T2S supports SNMP and it can be managed via any management software based on
the standard SNMP v1 and v2 protocols. For reducing product learning time, the GS-5220-8P2T2S offers Cisco-like command
via Telnet or console port and customer doesn’t need to learn new command from these switches. Moreover, the
GS-5220-8P2T2S offers remote secure management by supporting SSHv2, TLSv1.2, SNMPv3 connection which can encrypt
the packet content at each session.