(V3) Datasheet
IGSW-24040T
3
IPv6/IPv4 Dual Stack
Supporting both IPv6 and IPv4 protocols, the IGSW-24040T helps data centers,
campuses, telecoms, and more to experience the IPv6 era with the lowest investment as
its network facilities need not be replaced or overhauled if the IPv6 FTTx edge network is
set up.
Layer 3 IPv4 and IPv6 VLAN Routing for Secure and Flexible Management
The IGSW-24040T offers IPv4/IPv6 VLAN routing feature which allows to crossover
different VLANs and different IP addresses for the purpose of having a highly-secured,
exible management and simpler networking application.
Robust Layer 2 Features
The IGSW-24040T can be programmed for advanced switch management functions such
as dynamic port link aggregation, Q-in-Q VLAN, private VLAN, Multiple Spanning Tree
Protocol (MSTP), Layer 2 to Layer 4 QoS, bandwidth control and IGMP/MLD Snooping.
Via the link aggregation of supporting ports, the IGSW-24040T allows the operation of a
high-speed trunk to combine with multiple ber ports and supports fail-over as well.
Powerful Security
The IGSW-24040T offers a comprehensive layer 2 to layer 4 Access Control List (ACL)
for enforcing security to the edge. It can be used to restrict network access by denying
packets based on source and destination IP address, TCP/UDP ports or defined
typical network applications. Its protection mechanism also comprises 802.1X Port-
based and MAC-based user, and device authentication. With the private VLAN function,
communication between edge ports can be prevented to ensure user privacy. The IGSW-
24040T also provides DHCP Snooping, IP Source Guard and Dynamic ARP Inspection
functions to prevent IP snooping from attack and discard ARP packets with invalid MAC
address. The network administrators can now construct highly-secure corporate networks
with considerably less time and effort than before.
Excellent Trac Control
The IGSW-24040T is loaded with powerful traffic management and QoS features to
enhance connection services by telecoms and ISPs. The QoS features include wire-
speed Layer 4 traffic classifiers and bandwidth limit that are particularly useful for multi-
tenant units, multi-business units, Telco and network service providers’ applications. It
also empowers the industrial environment to take full advantage of the limited network
resources and guarantees the best performance in VoIP and video conferencing
transmission.
– IEEE 802.1x authentication with guest VLAN
– Built-in RADIUS client to cooperate with the RADIUS servers
– RADIUS/TACACS+ users access authentication
• Access Control List
– IP-based Access Control List (ACL)
– MAC-based Access Control List (ACL)
• Source MAC/IP address binding
• DHCP Snooping to lter distrusted DHCP messages
• Dynamic ARP Inspection discards ARP packets with invalid
MAC address to IP address binding
• IP Source Guard prevents IP spoong attacks
• IP address access management to prevent unauthorized
intruder
Management
• IPv4 and IPv6 dual stack management
• Switch Management Interfaces
– Console/Telnet command line interface
– Web switch management
– SNMP v1, v2c, and v3 switch management
– SSH/SSL secure access
• IPv6 address/NTP management
• Built-in Trivial File Transfer Protocol (TFTP) client
• BOOTP and DHCP for IP address assignment
• System Maintenance
– Firmware upload/download via HTTP/TFTP
– Reset button for system reboot or reset to factory default
– Dual images
• DHCP relay and option 82
• User privilege levels control
• NTP (Network Time Protocol)
• Link Layer Discovery Protocol (LLDP) and LLDP-MED
• Network diagnostic
– SFP-DDM (Digital Diagnostic Monitor)
– Cable diagnostic technology provides the mechanism to
detect and report potential cabling issues
– ICMPv6/ICMPv4 remote ping
• SMTP/Syslog remote alarm
• Four RMON groups (history, statistics, alarms and events)
• SNMP trap for interface link up and link down notication
• System Log
• PLANET Smart Discovery Utility for deployment management
LACPMSTP
Q-in-Q LLDPQoS
MLD
IGMP
L2/L4
Managed Switch
L2/L4
Managed Switch