(V3) Datasheet

IGSW-24040T
3
IPv6/IPv4 Dual Stack
Supporting both IPv6 and IPv4 protocols, the IGSW-24040T helps data centers,
campuses, telecoms, and more to experience the IPv6 era with the lowest investment as
its network facilities need not be replaced or overhauled if the IPv6 FTTx edge network is
set up.
Layer 3 IPv4 and IPv6 VLAN Routing for Secure and Flexible Management
The IGSW-24040T offers IPv4/IPv6 VLAN routing feature which allows to crossover
different VLANs and different IP addresses for the purpose of having a highly-secured,
exible management and simpler networking application.
Robust Layer 2 Features
The IGSW-24040T can be programmed for advanced switch management functions such
as dynamic port link aggregation, Q-in-Q VLAN, private VLAN, Multiple Spanning Tree
Protocol (MSTP), Layer 2 to Layer 4 QoS, bandwidth control and IGMP/MLD Snooping.
Via the link aggregation of supporting ports, the IGSW-24040T allows the operation of a
high-speed trunk to combine with multiple ber ports and supports fail-over as well.
Powerful Security
The IGSW-24040T offers a comprehensive layer 2 to layer 4 Access Control List (ACL)
for enforcing security to the edge. It can be used to restrict network access by denying
packets based on source and destination IP address, TCP/UDP ports or defined
typical network applications. Its protection mechanism also comprises 802.1X Port-
based and MAC-based user, and device authentication. With the private VLAN function,
communication between edge ports can be prevented to ensure user privacy. The IGSW-
24040T also provides DHCP Snooping, IP Source Guard and Dynamic ARP Inspection
functions to prevent IP snooping from attack and discard ARP packets with invalid MAC
address. The network administrators can now construct highly-secure corporate networks
with considerably less time and effort than before.
Excellent Trac Control
The IGSW-24040T is loaded with powerful traffic management and QoS features to
enhance connection services by telecoms and ISPs. The QoS features include wire-
speed Layer 4 traffic classifiers and bandwidth limit that are particularly useful for multi-
tenant units, multi-business units, Telco and network service providers’ applications. It
also empowers the industrial environment to take full advantage of the limited network
resources and guarantees the best performance in VoIP and video conferencing
transmission.
IEEE 802.1x authentication with guest VLAN
Built-in RADIUS client to cooperate with the RADIUS servers
RADIUS/TACACS+ users access authentication
Access Control List
IP-based Access Control List (ACL)
MAC-based Access Control List (ACL)
Source MAC/IP address binding
DHCP Snooping to lter distrusted DHCP messages
Dynamic ARP Inspection discards ARP packets with invalid
MAC address to IP address binding
IP Source Guard prevents IP spoong attacks
IP address access management to prevent unauthorized
intruder
Management
IPv4 and IPv6 dual stack management
Switch Management Interfaces
Console/Telnet command line interface
Web switch management
SNMP v1, v2c, and v3 switch management
SSH/SSL secure access
IPv6 address/NTP management
Built-in Trivial File Transfer Protocol (TFTP) client
BOOTP and DHCP for IP address assignment
System Maintenance
Firmware upload/download via HTTP/TFTP
Reset button for system reboot or reset to factory default
Dual images
DHCP relay and option 82
User privilege levels control
NTP (Network Time Protocol)
Link Layer Discovery Protocol (LLDP) and LLDP-MED
Network diagnostic
SFP-DDM (Digital Diagnostic Monitor)
Cable diagnostic technology provides the mechanism to
detect and report potential cabling issues
ICMPv6/ICMPv4 remote ping
SMTP/Syslog remote alarm
Four RMON groups (history, statistics, alarms and events)
SNMP trap for interface link up and link down notication
System Log
PLANET Smart Discovery Utility for deployment management
LACPMSTP
Q-in-Q LLDPQoS
MLD
IGMP
L2/L4
Managed Switch
L2/L4
Managed Switch