User's Manual

Table Of Contents
Users Manual of IGS-5225-16T4S/IGSW-24040T
13
Robust Layer 2 Features
The Industrial L2+ Managed Switch can be programmed for advanced switch management functions such as dynamic port link
aggregation, 802.1Q VLAN and Q-in-Q VLAN, Multiple Spanning Tree protocol (MSTP), loop and BPDU guard, IGMP
snooping, and MLD snooping. Via the link aggregation, the Industrial L2+ Managed Switch allows the operation of a
high-speed trunk to combine with multiple ports, and supports fail-over as well. Also, the Link Layer Discovery Protocol
(LLDP) is the Layer 2 protocol included to help discover basic information about neighboring devices on the local broadcast
domain.
Efficient Traffic Control
The Industrial L2+ Managed Switch is loaded with robust QoS features and powerful traffic management to enhance services to
business-class data, voice, and video solutions. The functionality includes broadcast/multicast storm control, per port
bandwidth control, IP DSCP QoS priority and remarking. They guarantee the best performance for VoIP and video stream
transmission, and empower the enterprises to take full advantage of the limited network resources.
Powerful Security
PLANET Industrial L2+ Managed Switch offer comprehensive IPv4/IPv6 Layer 2 to Layer 4 Access Control List (ACL) for
enforcing security to the edge. They can be used to restrict network access by denying packets based on source and
destination IP address, TCP/UDP ports or defined typical network applications. Their protection mechanism also comprises
802.1X port-based user and device authentication, which can be deployed with RADIUS and TACACS+ to ensure the port level
security and block illegal users. With the protected port function, communication between edge ports can be prevented to
guarantee user privacy. Furthermore, Port security function allows to limit the number of network devices on a given port
Advanced IP Network Protection
The Industrial L2+ Managed Switch also provides DHCP Snooping, IP Source Guard and Dynamic ARP Inspection functions
to prevent IP snooping from attack and discard ARP packets with invalid MAC address. The network administrator can now
build highly-secure corporate networks with considerably less time and effort than before.